Senior Staff SaaS Security, Defensive Engineering

State Street

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Boston, MABerwyn, PAClifton, NJAustin, TX
Salary
$120,000–$202,500 / yr
Posted
2 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $195k
This role $161k
$106k most similar roles pay here $250k

This role pays less than 72% of similar roles. Most pay $159,000–$231,625 — the shaded band above. At the midpoint, this role pays about $161k versus about $195k for comparable roles.

Based on 240 similar postings.

Employer

About State Street

State Street Corporation is one of the world''s largest custodian banks and asset managers, providing investment servicing, investment management, and investment research to institutional investors. Industry: Financial Services & Asset Custody

State Street currently has 185 open roles on FindRole.

Listed pay typically runs $120,000–$202,500 across 180 roles with salary data.

Most-posted roles

View all roles at State Street

At a glance

TL;DR · Senior Staff SaaS Security, Defensive Engineering

Senior Staff SaaS Security, Defensive Engineering joins the Defensive Engineering organization to lead the deployment, integration, and operationalization of SaaS security platforms and controls. This role focuses on driving visibility, governance, and protection across the enterprise SaaS ecosystem by managing SSPM and threat monitoring capabilities. The individual will partner with application owners to onboard systems, implement security controls, and remediate risks while designing automation workflows for telemetry collection. Key responsibilities include developing security standards, architecture documentation, and tracking metrics like coverage and posture findings. Required expertise includes hands-on experience with SSPM, CASB, and SaaS threat protection platforms like Obsidian Security. The role requires deep knowledge of OAuth, SSO/SAML, API permissions, and identity-based threats such as account takeover and privilege escalation to solve complex security challenges within a regulated environment using scripting and automation for operational efficiency.

What you'll do

  • Lead the deployment, integration, and operationalization of SSPM and SaaS threat monitoring capabilities.
  • Partner with application owners to onboard SaaS applications and implement security controls.
  • Design and maintain integrations, telemetry collection, and automation workflows for risk visibility.
  • Develop and maintain SaaS security standards, architecture documentation, and operational procedures.
  • Track and report key metrics regarding application coverage, posture findings, and remediation progress.
  • Mitigate risks related to account takeover, privilege escalation, OAuth abuse, and data exposure.

What we're looking for

  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • 8+ years of experience in information security, with a focus on SaaS, cloud, or identity security.
  • 5+ years of hands-on experience with SSPM, CASB, SaaS threat protection, or related security platforms.
  • Experience onboarding enterprise SaaS applications and implementing security controls through API integrations and governance frameworks.
  • Proficiency in scripting and automation for platform integration and operational efficiency.
  • Strong knowledge of OAuth, SSO/SAML, API permissions, and security models used by modern SaaS platforms.
  • Experience in financial services or other regulated industries (preferred).
  • Relevant cloud or information security certifications (preferred).

More like this

Similar roles

Senior Staff Software Security Engineer

Robinhood

Bellevue, WA +1 20 days ago $247,000$290,000
Identity & Access Management (IAM) Cryptography Cloud Security Infrastructure Security AI Security LLM Detection & Response Security Architecture Production Systems Automation

Senior Security Engineer

Apple Inc

Seattle, WA 2 days ago $175,000$308,500
Threat Modeling Cloud-Native Architecture Kubernetes Python Java Go Swift Distributed Systems Artificial Intelligence Machine Learning Security Review Vulnerability Discovery
10+ yrs exp

Senior Security Engineer

Apple Inc

Seattle, WA 30 days ago $175,000$308,500
Threat Modeling Python Java Go Swift Kubernetes Cloud-Native Architecture Distributed Systems Container Orchestration Artificial Intelligence Machine Learning Security Review Vulnerability Discovery Multi-tenant System Design
10+ yrs exp

Senior Security Engineer

Chime

New York, NY +1 111 days ago
Python Go Ruby AWS GCP Terraform infrastructure-as-code API Mobile Security Penetration Testing Threat Modeling SDLC GRC AI Automation
2+ yrs exp Hybrid

Senior Security Engineer

CoStar Group

Arlington, VA +1 84 days ago $115,000$203,000
AWS SaaS Security AI Security NGFW CASB SSE Python PowerShell Terraform Azure DevOps infrastructure-as-code SSO OAuth Network Security Threat Modeling Routing
5+ yrs exp