Information Security Specialist

Federal Reserve Bank of PhiladelphiaNew York, NY
Onsite

About The Position

The Information Security (ISNY) department is responsible for developing, executing, and maintaining a superior information security program that promotes resiliency by identifying and mitigating cyber risks and threats through risk-based consultation, advice, and direction for controls, designs, and investments for the entire Bank. Within Information Security, the Cyber Security Assurance Department (CSA) is responsible for assessing risks associated with 3rd party vendors systems, software, IoT devices, ICS, technology processes, or outsourcing arrangements handling, processing, or storing Federal Reserve data. The team works directly with the business, providing guidance and managing risks. The department is also responsible for the integration of security practices into DevSecOps methodology, performing application security testing and working directly on security tooling integration as part of the CI/CD pipeline. The engagement and guidance to the product development teams are implemented through CSA analysts being embedded in the development squads to provide security advice during development and by managing the Security Champion Program in the Bank ensuring each product team has developers trained in security matters.

Requirements

  • Background in application development with focus on security control implementation.
  • Ability to review application code and assist developers with vulnerability remediation including in-depth issue contextualization.
  • Experience in executing assessments in the Cloud and against third-party SaaS solutions.
  • Knowledge of performing risk management based on NIST 800-53.
  • Experience in determining vulnerability risk impact on key objectives and critical processes; ability to link risk management programs and initiatives to inform critical business strategies and processes.
  • Experience in thriving in the DevSecOps culture and working closely with developers on delivering business value in an agile quick release environment.
  • Demonstrated leadership experience, managing projects, strong decision making and execution abilities.
  • Strong experience managing and timely resolving security findings in the Agile management practice.
  • Application security testing skills supporting CI/CD pipeline.
  • Experience evaluating 3rd party vendors supporting Banks processes with focus on data protection.
  • Proven ability evaluating and securing Gen AI systems with internal and embedded models.
  • Possession of or the ability to obtain and maintain National Security Clearance, which includes U.S. Citizenship when required.

Responsibilities

  • Perform Cloud application security risk assessments.
  • Execute assessments timely and accurately.
  • Manage relationship with the business unit assigned.
  • Embed within the development squad to provide timely security advice.
  • Perform application security testing ensuring only compliant workloads move to the Cloud.
  • Support development squads in implementing security tooling in the CI/CD pipeline.
  • Work closely with technology squads to flawlessly deliver technological projects to the business customers.
  • Perform risk assessments which include application security testing focusing on Cloud migration workloads with specific focus on the mission critical systems supporting Markets operations.

Benefits

  • Educational assistance
  • Career development tools
  • Stretch opportunities
  • Parental leave
  • Adoption assistance
  • Back-up dependent and elder care
  • College planning resources
  • Comprehensive insurance plans
  • Leave policies
  • Onsite Health & Wellness Center
  • Onsite Fitness Center
  • Pension plan
  • 401(k) with generous match
  • Financial planning resources
  • Subsidized public transportation program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service