Estimated team size500–800 peopleModerate confidence
The CISO reports to the Chief Operations Officer or Chief Technology Officer, with direct reporting lines to the Board's Risk Committee for cyber risk oversight. The organization is divided into functional pillars including Cyber Defense, IAM, and GRC.
Major functions
Cyber Defense & OperationsIdentity & Access Management (IAM)Cloud Security EngineeringSecurity Governance, Risk & Compliance (GRC)Digital Asset & Blockchain SecurityThreat Intelligence & Vulnerability Management
Maturity indicators
- Formalized Digital Asset Security Division
- Participation in Financial Services Information Sharing and Analysis Center (FS-ISAC)
- Publicly disclosed Cyber Risk Committee at the Board level
- ISO 27001 certifications for specific business units
As a Systemically Important Financial Institution (SIFI), State Street maintains a high-maturity security posture with heavy emphasis on regulatory compliance and resilience of global payment systems.
Organization figures are CLI estimates, not disclosures. High confidence