Define and steward State Street’s enterprise AI security architecture, including secure-by-default patterns for AI platforms, GenAI tooling, AI agents, and data pipelines.
Establish architecture standards, guardrails, and reference designs for AI systems across cloud and on-prem environments.
Embed security, privacy, and compliance requirements directly into AI and software engineering lifecycle processes.
Partner with Enterprise Architecture and Engineering to ensure AI security scales across product teams with minimal friction.
Establish and mature AI threat modeling practices, aligned to real-world attacker behavior and regulatory scrutiny.
Lead identification and mitigation of AI-specific risks including model abuse, data poisoning, OSS corruption, prompt injection, model inversion, and emerging adversarial AI threats.
Drive defensible architecture decisions supported by measurable risk reduction and operational outcomes.
Integrate AI security into DevSecOps pipelines, automating preventative, detective, and responsive controls.
Enable secure AI adoption through paved-road platforms, automation, and architectural simplification.
Partner with engineering teams to accelerate AI reviews and approvals through tooling and policy-as-code approaches.
Lead security architecture for emerging AI capabilities, including AI agents, automation frameworks, and developer assist tooling.
Collaborate with crypto and platform teams on post-quantum readiness considerations as they relate to AI systems and long-lived data.
Continuously evaluate new AI security technologies and patterns to strengthen the firm’s defensive posture.
Drive data-driven security architecture decisions, using metrics to identify risk concentration, architectural friction, and opportunities to reduce security burden.
Ensure architecture standards align with and support regulatory expectations (FFIEC, NIST, ISO, NYDFS, GDPR, etc.).
Contribute to incident response preparedness for AI-related events, including misuse and systemic failures.
Serve as a trusted technical advisor to the CISO, CIO, architecture leadership, and senior engineering leaders.
Deliver concise executive briefings on AI security posture, emerging risks, and architectural tradeoffs.
Support regulatory, audit, and client discussions with credible, defensible technical narratives.
Build and lead a high-performing AI Security Architecture team.
Act as a multiplier for security engineering, product security, and platform teams through coaching and architectural leadership.
Foster a culture focused on customer trust, innovation, and continuous improvement.
Requirements
Bachelor’s degree in Computer Science, Information Security, Engineering, or related field