IT Security, Officer

State Street•Quincy, MA
•$70,000 - $115,000•Hybrid

About The Position

The role is part of GCS Security Administration Services, a function essential to protecting the company’s information, systems, clients, and employees. The GCS Information Security Officer will be responsible for administering infrastructure applications, implementing and maintaining application security rules, provisioning and modifying user access, monitoring security configurations, supporting periodic access reviews, troubleshooting access-related issues, documenting changes, and coordinating remediation to ensure compliance with established policies and control requirements.

Requirements

  • Strong understanding of identity and access management concepts, including least privilege, segregation of duties, role-based access control, and access lifecycle processes.
  • Ability to analyze access request details, identify missing or inconsistent information, and take appropriate follow-up action.
  • Strong attention to detail and commitment to accurate documentation, evidence retention, and audit-ready processing.
  • Working knowledge of PowerShell and scripting concepts, with the ability to create, interpret, or modify scripts that support access administration, reporting, and automation.
  • Ability to manage multiple request queues and priorities in a deadline-driven operational environment.
  • Strong written and verbal communication skills, including the ability to explain access requirements and request outcomes clearly to technical and non-technical stakeholders.
  • Sound judgment when handling confidential information, privileged access, and security-sensitive requests.
  • Collaborative mindset with the ability to work effectively across Global Cybersecurity, IAM, application support, business operations, and technology teams.
  • Continuous improvement mindset with interest in automation, process simplification, and control enhancement.
  • Experience in security administration, identity and access management, application support, service desk operations, or technology risk/control functions.
  • Familiarity with IAM platforms, ticketing systems, application entitlement models and access certification processes.
  • Three or more years of experience in security administration, identity and access management, user provisioning, technology operations or a comparable control-focused function.
  • Working knowledge of identity lifecycle management, access provisioning and deprovisioning, privileged access, role-based access control, segregation of duties and access certification.
  • Excellent problem-solving abilities and clear communication skills to work across technical and business departments.
  • Availability for shift coverage and on-call support.

Nice To Haves

  • 3-5 years hands-on experience administering RACF within an IBM z/OS environment.
  • PowerShell or scripting experience strongly preferred; familiarity with Python, JavaScript, batch scripting, or automation tools is a plus.
  • Experience using identity governance, service-management, or access request platform such as SailPoint, ServiceNow or an equivalent solution.

Responsibilities

  • Support the secure and timely fulfillment of access requests by ensuring each request is properly authorized, accurately completed, and appropriately documented.
  • Process user access requests for additions, modifications and removals according to procedures, service levels and controls.
  • Administer and verify user IDs, entitlements, roles, and security group memberships.
  • Provision access to applications not fully automated or integrated with enterprise platforms.
  • Maintain audit-ready records of approvals, actions, evidence, and resolutions.
  • Monitor work queues and escalate requests that lack required information or approvals.
  • Work with stakeholders to clarify requirements and resolve access issues.
  • Support access reviews, entitlement cleanup, orphaned account remediation, and identity and access management controls.
  • Use PowerShell and other scripting tools to validate data, generate reports, automate tasks, and improve operations.
  • Follow security and data-handling standards for confidential or restricted information.

Benefits

  • retirement savings plan (401K) with company match
  • insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
  • paid-time off including vacation, sick leave, short term disability, and family care responsibilities
  • access to our Employee Assistance Program
  • incentive compensation including eligibility for annual performance-based awards
  • eligibility for certain tax advantaged savings plans
  • inclusive development opportunities
  • flexible work-life support
  • paid volunteer days
  • vibrant employee networks
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service