State Street is looking to enhance the security, efficiency, and scalability of its enterprise cryptographic infrastructure by integrating key management systems (KMS) and hardware security modules (HSMs) with enterprise applications, cloud environments, IoT, and DevSecOps workflows.
Requirements
- Minimum of 5+ years of experience utilizing one or more high-level languages such as Python, Ruby, PowerShell, Bash, or Java for pipeline development and system to system integrations.
- Strong understanding of KMS concepts, key management lifecycle, hardware security modules (HSMs), and cryptographic principles and algorithms (AES, RSA, ECC).
- Strong understanding of DevOps practices such as Continuous Integration/Continuous Delivery (CI/CD) and Infrastructure as Code (IaC).
- Proven experience in developing, deploying, configuring, and managing software within cloud platforms such as AWS and Azure and their container services (EKS, AKS, GKE).
- Proven experience developing and deploying microservices, including experience with API design, service discovery, and communication patterns (e.g., REST, messaging queues) with a focus on data security.
- Experience with one or more infrastructure automation and management tools such as Terraform, Ansible, and Chef or equivalent.
- Direct experience with one or more key management systems (KMS) such as HashiCorp Vault, AWS KMS, Azure Key Vault, or OCI KMS.
Responsibilities
- Design and implement integrations between cryptographic key management systems and enterprise applications, cloud platforms, and security tools.
- Develop and maintain APIs, microservices, and automation scripts to streamline cryptographic operations.
- Enable seamless integration with multi-cloud key management services (AWS KMS, Azure Key Vault, OCI KMS).
- Collaborate with security architects, application teams, and DevSecOps engineers to embed encryption management into CI/CD pipelines.
- Automate key lifecycle processes for key generation, rotation, distribution, revocation, and decommissioning.
- Build monitoring and alerting mechanisms to detect cryptographic anomalies and improve operational efficiency.
- Ensure automation and integrations align with cryptographic policies, compliance, and regulations (PCI DSS, GDPR, FIPS 140-2/3), and security best practices.
Other
- Bachelor's degree in Computer Science, Information Security, or a related field or equivalent work experience.
- Minimum of 8+ years of experience in software development, with a focus on integration and security within a financial institution or other highly regulated industries.
- Strong problem solving and analytical skills.
- Ability to effectively drive results, provide feedback/direction, and manage and build relationships with leaders and team members in a geographically dispersed team environment.
- Strong organizational, multi-tasking, and prioritizing skills.
- Certifications such as CISSP, CISM, AWS Security Specialty, HashiCorp Certified Vault Associate or CCSK.
- Familiarity with security frameworks such as NIST 800-57, ISO 27001 or PCI DSS.