Enterprise Integration Security Architect

State Street
Quincy, MA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$120,000.0 - $202,500.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Application Integration Architecture User Authentication Microsoft Azure Software as a Service Cloud Engineering Cyber Security Software Design Patterns Electronic Data Interchange (EDI) Middleware File Transfer
+33 more
IBM WebSphere MQ Internet Security Information Systems Security Architecture Professional Key Management Enterprise Messaging Systems OAuth Public Key Infrastructure RabbitMQ Openid Connect Cloud Services Zero Trust Network Access JSON Web Token Sherwood Applied Business Security Architecture Security Assertion Markup Language (SAML) Software Engineering Data Streaming Systems Integration Tokenization Azure Service Bus Software Security Apigee Togaf Event Driven Architecture Kubernetes Information Technology Enterprise Integration Integration Frameworks Apache Kafka Cloud Integration Api Gateway Serverless Computing Mulesoft Microservices

Job description

We are looking for an Enterprise Integration Security Architect. You will be responsible for designing and governing security architectures for enterprise integrations, APIs, messaging platforms, event-driven architectures, managed file transfer services, and third-party connectivity solutions. You will partner with application development, cloud engineering, infrastructure, data, and cybersecurity teams to ensure secure, resilient, and scalable integration patterns are implemented across the enterprise.

Why This Role Is Important To Us

The team you will be joining is part of the Security Architecture organization, a function that is critical to protecting the firm’s applications, data, cloud platforms, and technology services. As organizations increasingly rely on APIs, cloud services, third-party platforms, and event-driven architectures, this role is responsible for ensuring integration security controls are built into enterprise technology solutions, reducing cyber risk while enabling business innovation and digital transformation.

What You Will Be Responsible For

As an Enterprise Integration Security Architect, you will:

  • Design and maintain security architectures, standards, and reference patterns for APIs, messaging platforms, event streaming services, file transfers, and third-party integrations.
  • Conduct security architecture reviews for enterprise integration solutions across cloud, SaaS, hybrid, and on-premises environments.
  • Define security requirements for API gateways, service-to-service communications, machine identities, partner connectivity, and integration platforms.
  • Provide subject matter expertise on authentication, authorization, encryption, tokenization, secrets management, and secure integration design patterns.
  • Partner with engineering and architecture teams to embed security controls into enterprise integration platforms and services.
  • Assess integration security risks and recommend mitigation strategies aligned with enterprise security standards and regulatory requirements.
  • Evaluate emerging integration technologies and industry trends to support future-state architecture and secure technology adoption.

Requirements

  • Deep expertise in API security, application integration, messaging security, and service-to-service communications.
  • Strong understanding of modern integration architectures including APIs, microservices, event-driven architectures, cloud integrations, and SaaS connectivity.
  • Experience with authentication and authorization frameworks including OAuth 2.0, OpenID Connect, SAML, JWT, mTLS, and machine-to-machine authentication.
  • Strong analytical, problem-solving, and risk assessment skills with the ability to develop practical, scalable security solutions.
  • Strong communication and stakeholder management skills with the ability to collaborate across architecture, engineering, cloud, and business teams., * Degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related discipline.
  • 14 years or more of experience in security architecture, application security, integration architecture, middleware technologies, or related technology disciplines with at least 8 years of hands-on cybersecurity experience preferred.
  • Demonstrated experience designing and securing enterprise integration platforms, APIs, messaging environments, and cloud-native services.
  • Deep expertise in API security, OAuth, OpenID Connect, SAML, JWT, mTLS, PKI, secrets management, and machine identity security.
  • Experience with enterprise messaging and integration technologies such as IBM MQ, Kafka, Solace, Event Hubs, RabbitMQ, MuleSoft, Apigee, Kong, Azure Integration Services, or equivalent platforms.
  • Strong understanding of cloud-native architectures, microservices, containers, Kubernetes, serverless technologies, and modern application architectures.
  • Experience conducting security architecture reviews, threat modeling, and risk assessments for integration and data exchange solutions.
  • Knowledge of Zero Trust principles, data protection requirements, encryption technologies, and secure communication architectures.
  • Professional certifications such as CISSP, CCSP, GIAC, TOGAF, SABSA, AWS Security Specialty, Azure Security Engineer, or equivalent certifications are highly desirable.
  • Experience within financial services or other highly regulated industries is preferred., * Experience supporting enterprise API programs, cloud transformation initiatives, and third-party connectivity solutions.
  • Ability to work effectively with application, cloud, infrastructure, engineering, and cybersecurity teams in a global environment.
  • Limited travel may be required based on business needs.

Benefits & conditions

3.43.4 out of 5 stars Quincy, MA Hybrid work $120,000 - $202,500 a year - Full-time, Pulled from the full job description

  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • Dental insurance
  • Employee assistance program
  • Disability insurance, Shift: Standard business hours with flexibility to support global stakeholders across multiple time zones.

Salary Range: $120,000 - $202,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.

Employees are eligible to participate in State Street’s comprehensive benefits program, which includes: our retirement savings plan (401K) with company match; insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages; paid-time off including vacation, sick leave, short term disability, and family care responsibilities; access to our Employee Assistance Program; incentive compensation including eligibility for annual performance-based awards (excluding certain sales roles subject to sales incentive plans); and, eligibility for certain tax advantaged savings plans., We are committed to fostering an environment where every employee feels valued and empowered to reach their full potential. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most. Join us in shaping the future.

About the company

Across the globe, institutional investors rely on us to help them manage risk, respond to challenges, and drive performance and profitability. We keep our clients at the heart of everything we do, and smart, engaged employees are essential to our continued success.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

1:33 min

Recapping vital capability shifts across security and enterprise infrastructure

Sergej Reznik Sergej Reznik · Europe 2026 Virtual

46 sec

Brokering third-party APIs with OAuth federation

Deepu Deepu · WWC 2025

Videos

See all

Related articles

See all