State Street Logo

State Street

Technical Patching Lead, VP - Middleware Web Services

Posted 22 Days Ago
Be an Early Applicant
2 Locations
125K-200K Annually
Senior level
2 Locations
125K-200K Annually
Senior level
The role involves managing vulnerability patches for middleware applications, driving risk management, and overseeing compliance and remediation efforts. This includes vendor management and continuous improvement initiatives.
The summary above was generated by AI

Who We are Looking For:

This role will be a member of the Enterprise Patch Vulnerability Management Team.

We are seeking a highly skilled and experienced individual to join our team as a Middleware Vulnerability Lead. In this role, you will be responsible for overseeing the identification, assessment, and remediation of vulnerabilities within our organization's Middleware & Messaging systems. Your expertise will be critical to ensure the security and integrity of our middleware platforms.

What you will be responsible for:

The right person for this role will have strong program management experience, strong communication skills, the ability to deliver multiple high priority projects simultaneously, the ability to drive negotiations across teams with competing priorities and be an advocate for risk management.

Job Responsibilities:

  • Lead the Middleware vulnerability management program, focusing on identifying, assessing, and remediating vulnerabilities across various middleware and messaging platforms, including but not limited to WebSphere, Jboss, Tomcat, WebLogic, IBM HTTP Server, MQ Series, Kafka, Managed File Transfer.

  • Analyze vulnerability scan results and prioritize vulnerabilities based on severity, potential impact, and risk to the organization's data assets.

  • Collaborate with middleware and messaging administrators, system administrators, and IT security teams to develop and implement remediation plans for identified vulnerabilities.

  • Work closely with software development teams to address vulnerabilities in applications and ensure secure coding practices.

  • Implement and maintain middleware security best practices, including access controls, encryption, and data masking, to mitigate the risk of exploitation.

  • Monitor middleware patch management processes and ensure timely deployment of security patches and maintenance updates to address known vulnerabilities.

  • Provide guidance and support to middleware, messaging administrators and other stakeholders on secure configuration, hardening, and maintenance practices.

  • Stay current on emerging threats, vulnerabilities, and best practices related to middleware and messaging security through industry sources, vendor advisories, and professional networks.

  • Document processes, procedures, policies, standards related to middleware and messaging vulnerability management activities.

  • Ensure the Patching & Compliance Program satisfies remediation of cyber risks identified by Global Cyber Security, Corporate Audit, Technology Risk Management and Internal/External Regulators.

  • Drive Continuous Service Improvement by looking at lesson learns and gap analysis and implement improvement plans to automate, document, update and improve daily operation procedures

  • Develop reports using data that is hosted in multiple sources/tools (e.g., spreadsheets, dashboards) and communicate clearly to leadership.

Education & Preferred Qualifications

  • Bachelor's degree in computer science, information technology, or related field.

  • 10+ years of experience in middleware administration and web services production support production environment, with a focus on vulnerability management and patch remediation.

  • Ability to effectively coordinate and communicate between technical teams and business stakeholders with varying technical proficiencies

  • Strong understanding of middleware technologies, including application servers, web servers, messaging systems, and integration platforms.

  • Experience with vulnerability assessment tools, such as ServiceNow Security Ops Module, Qualys, Nessus,etc. patch management systems (Tanium, Ansible Tower), and scripting languages for automation (e.g., Python, PowerShell).

  • Knowledge of industry standard security frameworks, (NIST, COBIT, DORA, CIS, etc.) security principles, threat modeling, and common vulnerabilities affecting middleware applications and environments.

  • Excellent analytical and problem-solving skills with the ability to prioritize and manage multiple tasks in a dynamic environment.

  • Industry certifications such as Certified Information Systems Security Professional (CISSP), CISM, CISA

This position offers the opportunity to play a key role in maintaining the security and resilience of our middleware infrastructure through proactive vulnerability management and patch remediation efforts. If you are passionate about middleware security and possess the technical expertise to address vulnerabilities effectively, we encourage you to apply.

Salary Range:

$125,000 - $200,000 Annual

The range quoted above applies to the role in the location specified. If the candidate would ultimately work outside of the location above, the applicable range could differ.

Job Application Disclosure:

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

State Street's Speak Up Line

Top Skills

Apache Tomcat
Ibm Websphere
Jboss
Middleware Technologies
Powershell
Python

Similar Jobs

13 Hours Ago
Easy Apply
Woburn, MA, USA
Easy Apply
300K-300K
Senior level
300K-300K
Senior level
Machine Learning • Security • Software • Analytics • Defense
The Cyber Principal Investigator will lead teams in developing innovative cyber solutions, conduct technical marketing, and create proposals to address national security challenges.
Top Skills: C/C++MatlabPython
19 Hours Ago
Easy Apply
Hybrid
Boston, MA, USA
Easy Apply
Senior level
Senior level
Fitness • Hardware • Healthtech • Sports • Wearables
Lead and execute the GRC program, working cross-functionally to ensure compliance with regulations, manage risks, and mentor team members.
Top Skills: Ai ToolsGdprIso 27001Nist CsfSoc 2
Yesterday
Easy Apply
Woburn, MA, USA
Easy Apply
Mid level
Mid level
Machine Learning • Security • Software • Analytics • Defense
The Systems Administrator supports IT operations by managing Linux and Windows systems, configuring storage, and providing maintenance and support for production and development environments.
Top Skills: CentosFirewallLinuxMs Active DirectoryNas StorageNetworkingPowershellRed HatUbuntuWindows

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account