Cyber Security Risk Analyst

The Federal Reserve

Quick summary

Work type
On-site
Location
New York, NY
Posted
47 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $166k
$112k most similar roles pay here $207k

This listing doesn't post a salary. Most similar roles pay $139,425–$192,287.

Based on 240 similar postings.

Employer

About The Federal Reserve

The Federal Reserve is the central bank of the United States—one of the world's most influential, trusted and prestigious financial organizations.

The Federal Reserve currently has 34 open roles on FindRole.

Listed pay typically runs $144,950–$198,100 across 28 roles with salary data.

Most-posted roles

View all roles at The Federal Reserve

At a glance

TL;DR · Cyber Security Risk Analyst

As a Cyber Security Assurance Analyst at the Federal Reserve Bank in New York, you will join a dynamic team within the Information Security Function, focusing on assessing risks associated with third-party vendors and integrating security practices into DevSecOps methodologies. Your day-to-day responsibilities include performing cloud application security risk assessments, executing timely and accurate evaluations of SaaS solutions, and embedding within development squads to provide critical security advice during project delivery. You will leverage your expertise in NIST 800-53 for risk management, possess strong skills in application security testing, and support the CI/CD pipeline by integrating security tooling. This role requires experience with DevSecOps culture, managing projects, and resolving security findings efficiently within an agile environment. Essential qualifications include a deep understanding of cloud security, vulnerability assessment, and evaluating third-party vendors for data protection, as well as expertise in securing Gen AI systems. U.S. citizenship is mandatory due to the requirement for national security clearance.

What you'll do

  • Perform cloud application security risk assessments.
  • Execute timely and accurate third-party vendor system evaluations.
  • Embed within development squads to provide real-time security advice.
  • Conduct application security testing for compliance before cloud migration.
  • Integrate security tooling into CI/CD pipelines for continuous improvement.

What we're looking for

  • Experience in executing Cloud and third-party SaaS risk assessments.
  • Expert knowledge of NIST 800-53 for risk management.
  • Strong application security testing skills supporting CI/CD pipelines.
  • Ability to manage projects, resolve findings timely in Agile environments.
  • Proven experience evaluating and securing Gen AI systems with internal models.
  • Demonstrated leadership in DevSecOps culture, working closely with developers.
  • U.S. citizenship required for obtaining National Security Clearance.

More like this

Similar roles

Cyber Security Analyst

Nvidia

Remote (Virginia, VA) +2 3 days ago $160,000$258,750
AWS Azure GCP Kubernetes Python Go Docker MITRE ATT&CK CI/CD Terraform Prometheus Grafana Splunk SIEM SOC Digital_Forensics Malware_Analysis
Remote

Cybersecurity Analyst

Leidos

3363 Dahlgren Va 17 days ago $87,100$157,450
RMF DoD DoN SECNAV OPNAV STIGs Nessus OS hardening Networking concepts System security engineering Technical documentation SIEM Secure coding practices CompTIA Security+ CEH CISSP

Cybersecurity Analyst

Southwest

Remote (Tx-Headquarters-Hdq, US) 5 days ago $98,650$109,600
SIEM MITRE ATT&CK NIST ISO 27001 GDPR CCPA Python Cyber Threat Intelligence Malware Analysis Network Traffic Analysis Log Analysis Incident Response Risk Assessment Collaboration Tools Communication Skills Adversary Modeling Threat Hunting Vulnerability Management Privacy Controls
Remote

Cybersecurity Threat and Exploitation Analyst

Booz Allen Hamilton

San Diego, CA 6 days ago $86,900$198,000
Python PowerShell Risk Management Framework (RMF) Threat Intelligence DevSecOps GitHub Docker CI/CD RedSeal Endpoint Detection and Response Network Engineering Windows Linux Virtual Operating Systems Network Firewalls Web Proxy Intrusion Prevention Systems Vulnerability Scanners Penetration Testing Tools

Cyber Threat Intelligence Analyst

Leidos

9358 Undisclosed Dc Customer Site, US 94 days ago $107,900$195,050
MITRE ATT&CK Threat Intelligence Platform (TIP) Python PowerShell SPL KQL Elastic DSL AWS Azure O365 Cyber Kill Chain Diamond Model of Intrusion Analysis Anomali ThreatConnect MISP
Hybrid

Cyber Threat Intelligence Analyst

Fiserv

Berkeley Heights, NJ 1 day ago $110,000$186,000
MITRE ATTACK SIEM SOAR Google Threat Intelligence Anomali Python SQL Markdown Excel PowerPoint