Technical Cyber Security Advisory, Vice President at State Street | England, GB | Rezi

Technical Cyber Security Advisory, Vice President at State Street

Technical Cyber Security Advisory, Vice President

State Street · England, GB

3 weeks ago

Technical Cyber Security Advisory, Vice President

State Street · England, GB

23 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

Serve as a senior cyber advisor across the bank, collaborating with business, technology, risk, and compliance teams to implement practical security improvements and enhance cyber resilience. This vital role determines technical cyber requirements and provides implementation guidance to keep the bank secure in a dynamic threat landscape.

Responsibilities

  • Provide senior cyber advisory and constructive challenge to business, technology, and cyber teams on cyber security matters.
  • Review complex cyber issues and support solution design, including findings from offensive security testing, vulnerability management, incident lessons learned, and architecture reviews.
  • Translate security insights into practical risk-based remediation plans that reduce risk exposure for the organization.
  • Lead or materially contribute to regulatory alignment activities, including impact assessments, evidence reviews, responses to supervisory queries, readiness reviews, and remediation tracking.
  • Drive change across the bank by identifying recurring control weaknesses, root causes, and opportunities to simplify or improve cyber processes, governance, metrics, and accountability.
  • Prepare clear briefings, papers, risk narratives, and executive updates for senior stakeholders, governance forums, legal entity committees, and Regional CISO leadership.
  • Act as a regional point of orchestration for cross-functional cyber activities, ensuring issues are owned, prioritised, and progressed through to measurable outcomes.
  • Support client, business, and external engagement where specialist cyber input is required, presenting the bank's cyber posture and improvement activity in a clear and credible manner.

Requirements

  • Strong technical candidate with hands-on experience able to translate complex technical solutions to senior technology and business stakeholders.
  • Technical cyber knowledge with credibility to engage senior engineers, architects, offensive security specialists, risk teams, and senior business stakeholders.
  • Practical offensive security awareness, including attack paths, common enterprise weaknesses, penetration testing outputs, red/purple team findings, exploitability, and risk-based remediation.
  • Security solution architecture knowledge across cloud, identity and access management, network security, application security, endpoint, data protection, third-party connectivity, and resilience controls.
  • Strong influencing and change leadership skills, with the confidence to challenge constructively and bring teams together around executable solutions.
  • Ability to convert regulatory expectations and audit findings into pragmatic implementation plans that work in a complex banking environment.
  • Excellent written and verbal communication skills, including the ability to explain technical risk in concise, business-relevant language.
  • Sound judgement, ownership mindset, and the ability to balance risk reduction, regulatory expectations, business delivery, and operational practicality.
  • Some travel may be required for regional stakeholder, client, industry, or regulatory engagement.
  • The role may occasionally support urgent cyber, regulatory, or incident-related activity outside standard working hours.
  • Must be able to handle confidential and sensitive information appropriately.

Skills

  • Offensive security
  • Cyber risk
  • Security solution architecture
  • Cloud security
  • Identity and Access Management (IAM)
  • Network security
  • Application security
  • Endpoint security
  • Data protection
  • Third-party connectivity
  • Resilience controls
  • Influencing skills
  • Change leadership
  • Regulatory alignment
  • Risk management
  • MITRE ATT&CK
  • NIST CSF
  • ISO 27001
  • CIS Controls
  • Threat-led penetration testing
  • Vulnerability management
  • SIEM/SOAR
  • EDR
  • Secure architecture design

Location

  • London

Work Type

  • Hybrid
  • UK business hours
  • Flexibility required

Experience Level

  • Vice President
  • 10-15 years of experience in cyber security, technology risk, security architecture, offensive security, cyber consulting, operational resilience, or a related financial services role.

Education Level

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, Risk Management, or a related discipline preferred; equivalent industry experience will always be considered.

Benefits

  • Inclusive development opportunities
  • Flexible work-life support
  • Paid volunteer days
  • Vibrant employee networks

About the Company

  • Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability.
  • We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.
  • We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential.
  • As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most.
  • Join us in shaping the future.

Equal Opportunity

  • As an Equal Opportunity Employer, we consider all qualified applicants for all positions without regard to race, creed, color, religion, national origin, ancestry, ethnicity, age, disability, genetic information, sex, sexual orientation, gender identity or expression, citizenship, marital status, domestic partnership or civil union status, familial status, military and veteran status, and other characteristics protected by applicable law.