×
Register Here to Apply for Jobs or Post Jobs. X

Information Security Specialist

Job in New York, New York County, New York, 10261, USA
Listing for: Federal Reserve Bank of New York
Full Time position
Listed on 2026-07-31
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant
Salary/Wage Range or Industry Benchmark: 170000 - 230000 USD Yearly USD 170000.00 230000.00 YEAR
Job Description & How to Apply Below
Location: New York

Company

Federal Reserve Bank of New York

When you work at the New York Fed, you have the opportunity to make an impact in our communities and across the nation. Our mission-driven, curious, and dedicated colleagues apply their diverse perspectives and unique talents to support the strength of the U.S. economy and stability of the global financial system.

At the Bank, we work full-time onsite with our teams. We believe being physically together allows us to draw on our collective strengths, while recognizing that the ability to work flexibly from time to time remains important to achieving our mission.

Our Unique Work:

Information Security New York (ISNY) is responsible for developing, executing, and maintaining a superior information security program that promotes resiliency by identifying and mitigating cyber risks and threats through risk-based consultation, advice, and direction for controls, designs, and investments for the entire Bank.

Within Information Security, the Cyber Security Assurance Department (CSA) is responsible for assessing risks associated with 3rd party vendors systems, software, IoT devices, ICs, technology processes, or outsourcing arrangements handling, processing, or storing Federal Reserve data. The team works directly with the business, providing guidance and managing risks. The department is also responsible for the integration of security practices into Dev Sec Ops  methodology, performing application security testing and working directly on security tooling integration as part of the CI/CD pipeline.

The engagement and guidance to the product development teams are implemented through CSA analysts being embedded in the development squads to provide security advice during development and by managing the Security Champion Program in the Bank ensuring each product team has developers trained in security matters.

How You’ll Make an Impact as a Cyber Security Assurance Analyst

You will work in a dynamic team environment and play an important role in helping the Federal Reserve carry out its responsibilities. The Cyber Security Risk Analyst will be responsible for risk assessments, Cloud mitigations, security application testing, thread modeling security design review and overall information systems risk management. The role is an individual contributor who will work closely with technology squads to flawlessly deliver technological projects to the business customers.

The candidate will be required to perform risk assessments which include application security testing focusing on Cloud migration workloads with specific focus on the mission critical systems supporting Markets operations. The position resides in the Information Security Function and reports to Cyber Security Assurance Manager.

Role’s objectives are:
  • Perform Cloud application security risk assessments.
  • Execute assessments timely and accurately.
  • Manage relationship with the business unit assigned.
  • Embed within the development squad to provide timely security advice.
  • Preform application security testing ensuring only compliant workloads move to the Cloud.
  • Support development squads in implementing security tooling in the CI/CD pipeline.
The Unique Skill Sets We’re Looking For:
  • Background in application development with focus on security control implementation is key to be successful in this role.
  • Ability to review application code and assist developers with vulnerability remediation including in depth issue contextualization.
  • Experience in executing assessments in the Cloud and against third party SaaS solutions.
  • Knowledge of performing risk management based on NIST 800-53.
  • Experience in determining vulnerability risk impact on key objectives and critical processes; ability to link risk management programs and initiatives to inform critical business strategies and processes.
  • Experience in thriving in the Dev Sec Ops  culture and working closely with developers on delivering business value in agile quick release environment.
  • Demonstrated leadership experience, managing projects, strong decision making and execution abilities.
  • Strong experience managing and timely resolving security findings in the Agile management practice.
  • Applica…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary