Jobs and Careers
ST

GRC - Cybersecurity Regulatory Compliance Lead ,Managing Director

State Street
United Statesfull_timeVerifiedPosted 20 Mar 2025
💰 $282,500/yr($170,000/yr$282,500/yr)

About the role

We are currently seeking an experienced Cybersecurity Regulatory Compliance Lead to develop and oversee robust processes for managing regulatory compliance across State Street.

The ideal candidate will have over 10 years’ experience in regulatory compliance, a strong understanding of global regulatory environments, and a proven ability to design and implement effective frameworks and processes.

This role will work cross-functionally to ensure adherence to regulatory requirements, manage regulatory risks and issues and foster a culture of proactive compliance.

About the Cybersecurity GRC Team

The Governance Risk & Compliance team is an exciting and growing area of cybersecurity with unique insight into the whole spectrum of our cybersecurity activity at State Street.  The Governance Risk & Compliance team is involved in the identification and management of cyber risk and non-compliance across State Street,  suggesting improvements and anticipating future needs to respond quickly to changes to deliver incremental value to our business.  As a member of the Cybersecurity GRC Team, you will have a significant opportunity in making a difference on the team, within the cybersecurity organization, as well as across State Street overall.


What you will be responsible for

  • Operating Model and RACI development
    • Define and implement an operating model for regulatory compliances processes.
    • Create and maintain a RACI matrix that clarifies roles and responsibilities across key functions, such as cybersecurity, legal, risk and compliance teams.

  • Regulatory Request Intake Process
    • Design and implement a scalable intake process to facilitate and prioritize incoming regulatory requests.
    • Ensure the process includes clear timelines, ownership and criteria for prioritization
    • Establish tools and dashboards to track and manage the status of requests so that they can be reported to senior cybersecurity management

  • Regulatory Change Management
    • Develop a process to track and manage regulatory changes
    • Conduct impact assessments to evaluate organizational readiness and identify potential risks.
    • Ensure timely communication of changes to stakeholders, with actionable steps for implementation

  • Industry Change Management
    • Monitor updates to industry frameworks and methodologies (e.g., NIST, ISO, COBIT) to ensure alignment.
    • Establish a process to evaluate and integrate relevant changes into State Street policies.

  • Regulatory Findings Management
    • Build a process to manage regulatory findings within Archer (State Streets Risk Management platform)
    • Ensure findings are tracked, remediated and closed in a timely manner with appropriate oversight
    • Provide regular reporting on findings status and trends to the GCS leadership team

What we value

  • Strategic thinkers with attention to detail
  • Ability to work in a fast paced, complex environment with cross functional teams
  • Strong leadership and problem solving skills
  • Effective communicators who excel at building alignment across teams
  • Commitment to continuous improvement and compliance excellence.

Preferred Qualifications

  • 10+ years' experience in financial services industry with knowledge/experience in compliance, regulatory matters
  • Strong familiarity with global regulatory bodies, such as FED, FCA, MAS, HKMA, APRA and others
  • Experience working with industry frameworks (E.g., NIST, CSF, COBIT)
  • Strong attention to detail, organizational skills, program management skills, and a commitment to ensuring that information is consistently provided is accurate, complete and to the highest standard
  • Excellent interpersonal, leadership, organizational, negotiation, and communication (verbal and written) skills.
  • Client service skills -must demonstrate the judgment and ability to closely partner with and advise business and technology leaders (and other stakeholders) on regulatory interactions
  • Ability to learn new products, services, businesses while supporting them.
  • Ability to develop a mentoring, inclusive culture for both experienced team members and junior staff
  • Strong analytical skills, solid judgment, and

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

State Street

View company profile →