Technical Patching Lead, VP - Midrange/Mainframe

State Street Corporation Princeton , NJ 08544

Posted 3 days ago

Who We are Looking For:

This role will be member of the Global Infrastructure Operations Continuous Service Improvement (CSI) team as part of 247365 Production Management organization. An organization that delivers highly secure, reliable, efficient infrastructure technology operations services that are focused on the needs of all State Street business. Responsible for delivering continuous improvement across various infrastructure operations towers by supporting the ITIL framework to improve processes, which ultimately improve our business.

We are seeking a skilled Mainframe and Midrange Vulnerability Remediation Specialist to join our team, responsible for identifying, prioritizing, and addressing vulnerabilities within our mainframe and midrange systems. The ideal candidate will have a strong background in mainframe and midrange technologies, experience in vulnerability management, and a proactive approach to enhancing system security.

What you will be responsible for:

The right person for this role will have a strong track record of program management experience, the demonstrated ability to deliver multiple high priority projects simultaneously, the ability to drive alignment across teams with competing priorities and be a strong advocate for risk management.

Job Responsibilities:

  • Individual will play a direct role in vendor management, overseeing the scheduling and implementation of the patching activities across all platforms.

  • Support and Drive remediation of cyber risks identified by Global Cyber Security, Corporate Audit, Technology Risk Management and Regulators.

  • Participate in engineering and technical solutioning to strengthen controls and improve effectiveness of the Patching & Compliance Program.

  • Participate in the continuous improvement of the existing and the development of new automation solutions to enhance effectiveness of the program.

  • Ensure the Patching & Compliance Program satisfies all Internal & External Regulatory and Compliance standards

  • Support Regulatory and Audit inquiries providing insight to the Patching & Compliance Program and detailed evidence when requested.

  • Provide Information Technology risk management and compliance support to ensure effective identification, measurement, control and management of the relevant risks

  • Identify and manage IT risk by maintaining effective internal controls and escalating as appropriate any deficiencies to management and/or applicable technology governance boards.

  • Drive Continuous Service Improvement by looking at lesson learns and gap analysis and implement improvement plans to document, update and improve daily operation procedures

  • Develop reports using data that is hosted in multiple sources/tools (e.g., spreadsheets, dashboards) and communicate clearly to leadership and other cyber security teams

  • Engage with Application engineering leads and SRE/IT teams to coordinate vulnerability remediation from technical and policy compliance perspectives

  • Track and monitor key milestones or after significant change in the environment to identify network, infrastructure, and configuration vulnerabilities

  • Perform ad-hoc data remediation, clean-ups, and reporting using large complex data sets for high-priority security remediations

  • Conduct regular assessments and scans of mainframe and midrange systems (e.g., IBM z/OS, IBM i, UNIX/Linux) to identify vulnerabilities, security weaknesses, and misconfigurations.

  • Collaborate with system administrators, security analysts, and IT teams to prioritize and remediate identified vulnerabilities based on risk assessment and business impact.

  • Research security advisories, vendor patches, and industry best practices related to mainframe and midrange systems to stay informed about emerging threats and patches.

  • Develop and maintain patch management processes, procedures, and automation scripts to facilitate timely and efficient patch deployment across mainframe and midrange environments.

  • Coordinate with system vendors, support teams, and stakeholders to test and validate patches for compatibility, functionality, and performance before deployment in production environments.

  • Monitor patch deployment progress, track remediation status, and maintain accurate records of patching activities and compliance.

  • Provide technical guidance and support to IT teams and stakeholders regarding patching procedures, mainframe and midrange system security best practices, and mitigation strategies for identified vulnerabilities.

  • Perform root cause analysis of security incidents and breaches related to mainframe and midrange system vulnerabilities and implement corrective actions to prevent recurrence.

  • Conduct vulnerability trend analysis and reporting to identify common vulnerabilities, recurring issues, and areas for improvement in the patch management process.

  • Stay abreast of emerging technologies, security trends, and industry developments in mainframe and midrange system security to continuously enhance the organization's security posture.

What we value

  • Bachelor's degree in computer science, information technology, or related field.

  • 10+ years of experience in mainframe and midrange systems administration,

  • with a focus on vulnerability management and remediation.

  • Ability to effectively coordinate and communicate between technical teams and business stakeholders with varying technical proficiencies

  • Strong understanding of mainframe and midrange technologies, including IBM z/OS, IBM i (AS/400), and UNIX/Linux systems.

  • Experience with vulnerability assessment tools, patch management systems, and scripting languages for automation (e.g., JCL, Shell scripting).

  • Knowledge of security principles, encryption, access controls, and audit mechanisms related to mainframe and midrange systems.

  • Excellent analytical and problem-solving skills with the ability to prioritize and manage multiple tasks in a dynamic environment.

  • Effective communication skills with the ability to collaborate across teams and convey technical information to non-technical stakeholders.

  • Industry certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or IBM Certified System Administrator are a plus.

This position offers the opportunity to play a critical role in maintaining the security and resilience of our mainframe and midrange systems through proactive vulnerability management and remediation efforts. If you are passionate about mainframe and midrange system security and possess the technical expertise to address vulnerabilities effectively, we encourage you to apply.

Salary Range:

$130,000 - $212,500 Annual

The range quoted above applies to the role in the primary location specified. If the candidate would ultimately work outside of the primary location above, the applicable range could differ.


icon no score

See how you match
to the job

Find your dream job anywhere
with the LiveCareer app.
Mobile App Icon
Download the
LiveCareer app and find
your dream job anywhere
App Store Icon Google Play Icon
lc_ad

Boost your job search productivity with our
free Chrome Extension!

lc_apply_tool GET EXTENSION

Similar Jobs

Want to see jobs matched to your resume? Upload One Now! Remove

Technical Patching Lead, VP - Midrange/Mainframe

State Street Corporation