- Company Name
- Jobs via eFinancialCareers
- Job Title
- Managing Director, Cryptography - State Street Corporation
- Job Description
-
**Job Title:** Managing Director, Cryptography
**Role Summary:**
Lead and govern the enterprise‑wide cryptographic strategy, focusing on key and certificate lifecycle management. Ensure confidentiality, integrity, and availability of sensitive data across global operations by defining standards, overseeing governance, and aligning with regulatory and internal security requirements.
**Expectations:**
- Provide strategic direction for cryptographic programs in a complex, global environment.
- Influence cross‑functional teams without direct authority and act as primary escalation point for cryptographic incidents.
- Maintain compliance with NIST, ISO 27001, PCI DSS, and other relevant frameworks.
- Drive automation, KPI/KRI monitoring, and continuous improvement of cryptographic operations.
**Key Responsibilities:**
- Define, enforce, and maintain cryptographic policies, standards, and procedures.
- Govern cryptographic algorithms, cipher suites, and certificate authorities.
- Manage inventory of cryptographic assets (keys, certificates, HSMs).
- Collaborate with ISOs, infrastructure, and application owners to implement secure cryptographic controls.
- Develop/run SOPs, runbooks, and automation scripts for cryptographic processes.
- Establish and track KPIs/KRIs for cryptographic performance and risk.
- Support audit and regulatory engagements; ensure compliance documentation.
- Deliver training and awareness programs for teams handling cryptographic materials.
**Required Skills:**
- Deep expertise in PKI, TLS, HSMs, and key/certificate lifecycle management.
- Proven leadership of large‑scale cryptographic programs in global enterprises.
- Strong knowledge of regulatory frameworks (NIST, ISO 27001, PCI DSS) and cloud‑native key services (AWS KMS, Azure Key Vault).
- Excellent communication, stakeholder management, and influencing abilities.
- Strong organizational, multitasking, and prioritization capabilities.
**Required Education & Certifications:**
- 10+ years in cybersecurity or information protection with a focus on cryptography.
- 10+ years in leadership roles (people and program management).
- 8+ years with key and certificate management tools/platforms.
- Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
- Preferred certifications: CISSP, CISM, CCSP, GIAC GCLD, or equivalent.