Threat Assurance Analyst

State Street

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Quincy, MA
Salary
$90,000–$157,500 / yr
Employment
Full-time
Posted
63 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $153k
This role $124k
$77k most similar roles pay here $208k

This role pays less than 75% of similar roles. Most pay $123,954–$182,750 — the shaded band above. At the midpoint, this role pays about $124k versus about $153k for comparable roles.

Based on 240 similar postings.

Employer

About State Street

State Street Corporation is one of the world''s largest custodian banks and asset managers, providing investment servicing, investment management, and investment research to institutional investors. Industry: Financial Services & Asset Custody

State Street currently has 266 open roles on FindRole.

Listed pay typically runs $120,000–$202,500 across 190 roles with salary data.

Most-posted roles

View all roles at State Street

At a glance

TL;DR · Threat Assurance Analyst

The Threat Assurance Analyst (AVP) joins the Assurance Analysis team, which operates at the intersection of threat intelligence, testing, and controls. In this role, you will source and transform data from internal and external partners to interpret enterprise posture and provide assurance insights for cyber leadership. You will engage with control owners to map policies to frameworks like MITRE ATT&CK, collaborate with Red and Purple teams to map testing results to internal models, and work with Blue Team partners to enrich data. Key responsibilities include maintaining dashboards, designing AI-assisted workflows, and developing assurance tooling. The role requires proficiency in Python, SQL, and Power BI, alongside experience in cyber data analytics. You will translate complex technical policies into threat impact while ensuring all mapping logic and analytical decisions are documented for auditability.

What you'll do

  • Map technical control policies to industry frameworks like MITRE ATT&CK.
  • Translate testing results from Red and Purple teams into internal data models.
  • Interpret defensive strengths and shortfalls by analyzing testing outcomes alongside control data.
  • Maintain dashboards and data models to inform stakeholders of enterprise security posture.
  • Design and implement AI-assisted workflows to accelerate analysis while ensuring data accuracy.
  • Collaborate with product and data teams to develop and mature assurance tooling.
  • Communicate threat-informed insights and defensive coverage to both technical and leadership audiences.
  • Create and maintain detailed documentation for data sources, mapping logic, and analytical decisions.

What we're looking for

  • Bachelor's degree in a related field.
  • 3–5 years of experience in a cyber security role.
  • Familiarity with the MITRE ATT&CK framework.
  • Experience with Python, SQL, and Power BI.
  • Strong communication skills to tailor technical information for various audiences.
  • Disciplined approach to producing clear documentation for auditability and governance.
  • Exposure to penetration testing and technical controls (preferred).
  • Hands-on or oversight experience with technical control platforms like SIEM, EDR, DLP, or Proxy (preferred).
  • Industry certifications such as CompTIA or SANS/GIAC (preferred).

More like this

Similar roles

Information Security Risk Analyst

Lam Research

Tualatin, OR 79 days ago
SIEM Microsoft Sentinel Splunk KQL SPL SQL Python PowerShell MITRE ATT&CK UEBA Azure AWS Cloud Platform Entra ID Logic Apps MISP STIX/TAXII Threat Hunting Incident Response

Cyber Risk Analyst

Fiserv

Alpharetta, GA +1 9 days ago
Python SQL LLMs Generative AI Prompt Engineering API) development Git GitHub NIST) Cybersecurity Framework NIST AI Risk Management Framework Cybersecurity Risk Management Governance, Risk, and Compliance Data Analytics Workflow Automation Agile
2+ yrs exp

Senior Applied Threat Intelligence Analysts

Microsoft

64 days ago $102,100–$202,200
Cyber Threat Intelligence Microsoft Sentinel Microsoft Defender XDR MITRE ATT&CK Python PowerShell C# C++ AI Large Language Models Reverse-engineering Cyber Kill Chain Diamond Model Network Protocols Anomaly Detection Vulnerability Research
6+ yrs exp Hybrid

Cyber Intel Analyst

Leidos

Washington, DC 18 days ago $87,100–$157,450
MITRE ATT&CK SIEM EDR Python PowerShell Bash Splunk KQL Elastic DSL AWS Azure O365 Threat Intelligence Platforms DFIR TCP/IP DNS HTTP/S IDS/IPS
4+ yrs exp Hybrid

Cyber Intelligence Fusion Analyst

Leidos

Alexandria, VA 30 days ago $107,900–$195,050
SIEM EDR MITRE ATT&CK Cyber Kill Chain Splunk Microsoft Sentinel Microsoft Defender for Endpoint Wireshark Python PowerShell SQL KQL SPL Lucene Linux Unix PCAP NetFlow OSINT Cyber Threat Intelligence Incident Response Threat Hunting
8+ yrs exp