Jobs and Careers
ST

Staff Perimeter Defense Engineer

State Street
United Statesfull_timeVerifiedPosted 31 Jul 2026
💰 $202,500/yr($120,000/yr$202,500/yr)

About the role

Who we are looking for

We are looking for a Staff Perimeter Defense Engineer reporting into the Defensive Engineering leadership team within Global Cyber Security (GCS). You will lead the strategy, architecture, and engineering of perimeter security capabilities, helping protect the organization from external threats targeting enterprise networks, internet-facing services, applications, and remote access environments.

Why this role is important to us

The team you will be joining is part of Defensive Engineering within Global Cyber Security, a function that is critical to the company's cybersecurity strategy. As cyber threats continue to evolve, strong perimeter defenses remain essential to protecting the firm's critical systems, applications, and data. This role will drive the technologies, controls, and security capabilities needed to strengthen the organization's defensive posture and reduce risk.

What you will be responsible for

As a Staff Perimeter Security Defense Engineer, you will:

  • Define and drive the enterprise perimeter security strategy, architecture, and roadmap.
  • Lead the evaluation, implementation, and continuous improvement of perimeter security controls and technologies.
  • Partner with Network Engineering, Infrastructure, Cloud, and Application teams to design and deploy secure network and internet-facing architectures.
  • Collaborate with the Cyber Defense Center (CDC) to enhance detection, investigation, threat hunting, and response capabilities for network and perimeter-based attacks.
  • Lead security initiatives involving next-generation firewalls, web application firewalls (WAF), DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust technologies.
  • Drive integration of perimeter security platforms with SIEM, SOAR, threat intelligence, and security analytics solutions.
  • Develop security standards, architecture patterns, and implementation guidance for perimeter security technologies.
  • Lead proof-of-concepts, product evaluations, and vendor assessments for network and perimeter security solutions.
  • Track and report key metrics related to threat prevention, attack surface reduction, control effectiveness, and risk reduction.
  • Serve as a subject matter expert for perimeter security and defensive engineering initiatives.

What we value

These skills will help you succeed in this role:

  • Experience with perimeter security technologies such as Zscaler, Palo Alto Networks, Cloudflare, F5, or similar platforms.
  • Strong understanding of network security, perimeter defense, segmentation, secure access, and Zero Trust architectures.
  • Experience securing internet-facing applications, APIs, and remote access services.
  • Familiarity with technologies such as WAF, DDoS protection, ZTNA, SSE, SASE, VPN, and network access controls.
  • Experience integrating security platforms with SIEM, SOAR, and threat intelligence solutions.
  • Strong analytical, troubleshooting, automation, and problem-solving skills.
  • Excellent communication and stakeholder management skills.

Education & Preferred Qualifications

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related field, or equivalent practical experience.
  • 8+ years of experience in cybersecurity, network security, security engineering, or security architecture.
  • 5+ years of hands-on experience designing and implementing perimeter security technologies and controls.
  • Experience working in financial services or other regulated industries preferred.
  • Relevant certifications such as CISSP, CCSP, PCNSE, CCNP Security, or equivalent preferred.

Additional Requirements

  • Experience developing security strategies, roadmaps, and architecture standards.
  • Experience assessing emerging threats and translating risks into security controls and engineering priorities.
  • Familiarity with cloud and hybrid network security architectures.
  • Strong collaboration skills and ability to work across Cyber Security, Infrastructure, Cloud, and Engineering organizations.

Work Requirement

  • Hybrid work model in accordance with company policy.
  • Ability to collaborate effectively with global teams across multiple time zones.
  • Standard business hours with flexibility to support critical security incidents and initiatives when required.

Salary Range:

$120,000 - $202,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could diffe

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

State Street

View company profile →