> Markdown version of [/jobs/ext/2551013-security-testing-delivery-lead](https://www.wearedevelopers.com/jobs/ext/2551013-security-testing-delivery-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Testing Delivery Lead - **Company:** State Street - **Location:** United States - **Experience:** Expert - **Salary:** $120,000.0 - $202,500.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Confluence, JIRA, CompTIA Security+, Cyber Security, Information Systems, Atlassian Tools - **Published:** August 19, 2026 - **Apply:** https://www.dice.com/job-detail/2cee087c-34b5-4848-98d4-1c95155ed47d ## About the Role * Strong project management and execution skills, with the ability to drive multiple complex workstreams simultaneously * Ability to bring structure, discipline, and transparency to fast-moving cybersecurity and regulatory efforts * Experience tracking delivery through tools such as Jira and Confluence, with strong attention to detail and follow-through on actions and dependencies * Ability to identify risks, escalate issues appropriately, and proactively clear blockers to maintain momentum * Strong organizational and prioritization skills, including the ability to load balance work and optimize team capacity across competing demands * Comfortable managing challenging stakeholders and influencing teams across organizational boundaries to achieve timely outcomes * Familiarity with cybersecurity testing or regulatory-driven security programs is preferred * Financial services or other regulated industry experience is preferred but not required, * At least 4 years of experience in technical program management, cybersecurity program delivery, security testing coordination, or related operational roles * Demonstrated experience managing complex cross-functional initiatives involving technical teams, risk stakeholders, and program governance partners * Experience with Jira, Confluence, and other workflow or program tracking tools * Experience supporting cybersecurity, technology risk, audit, or remediation programs is preferred * Familiarity with penetration testing, threat-led penetration testing, or security assurance activities is preferred but not required * Bachelor's degree in information systems, cybersecurity, business, or a related field is preferred * Relevant project management, risk, or cybersecurity certifications are a plus but not required ## Description We are seeking a Senior Security Testing Delivery Lead to help drive the execution, coordination, and operational management of State Street's regulatory security testing and assurance activities. This role is ideal for a strong technical program leader who can bring structure, discipline, and momentum to complex cybersecurity remediation and validation efforts. The analyst will work closely with testing teams, remediation owners, Lines of Defense, and program stakeholders to keep testing activities aligned, on track, and effectively governed across multiple concurrent workstreams. This individual will serve as a key partner in managing the day-to-day operations of the team, ensuring progress is transparent, blockers are addressed quickly, and stakeholders remain aligned on priorities, testing outcomes, and remediation implications. The role requires someone who is highly organized, comfortable working through ambiguity, confident managing challenging stakeholders, and able to connect detailed execution activities to broader regulatory and program management objectives. What you will be responsible for As a Senior Security Testing Delivery Lead, you will: * Support the end-to-end coordination of regulatory cybersecurity remediation testing activities, from planning through execution, reporting, and follow-up * Drive day-to-day team execution by facilitating stand-ups, managing dependencies, removing blockers, and maintaining visibility into delivery progress across active workstreams * Own and maintain Jira and Confluence spaces used to track testing progress, action items, stakeholder decisions, and key program artifacts * Coordinate closely with remediation owners, Lines of Defense, and program management stakeholders to ensure testing activities remain aligned with broader remediation timelines and regulatory commitments * Manage stakeholder engagement related to test plans, testing feedback, and validation reports, including navigating complex or challenging partner groups * Prioritize and load balance testing demand across team resources to support efficient execution and timely delivery * Coordinate overlap between regulatory retesting efforts and Network Penetration Testing findings, including managing handoffs and ensuring appropriate follow-up when tangential findings are identified ## Related Videos - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [42 x 2 Canvases Later: Two Years, Two Minds, Many Lessons](https://www.wearedevelopers.com/videos/1458-42-x-2-canvases-later-two-years-two-minds-many-lessons) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [A Founder's Journey : From Startup Chaos to Purposeful Growth](https://www.wearedevelopers.com/videos/1926-a-founder-s-journey-from-startup-chaos-to-purposeful-growth) - [Collaboration Quantified: Lessons from Open Source Developer Networks](https://www.wearedevelopers.com/videos/1422-collaboration-quantified-lessons-from-open-source-developer-networks) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How to create a test plan for software testing](https://www.wearedevelopers.com/magazine/56-how-to-create-a-test-plan-for-software-testing) - [What is a Test Plan: Guide to Test Planning](https://www.wearedevelopers.com/magazine/191-what-is-a-test-plan-guide-to-test-planning) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)