Cyber Security Specialist - Multiple Levels
Federal Reserve SystemAbout the role
Company
Federal Reserve Bank of AtlantaAs an employee of the Atlanta Fed, you will help support our mission of promoting the stability and efficiency of the U.S. economy and financial system. Your work will affect the economy of the Southeast, the United States, and the world. The work we do here is important, and how we do it is just as important as what we do. We live our values of integrity, excellence, and respect every day. We do the right thing, we do things right, and we treat people right. A career at the Federal Reserve Bank of Atlanta gives you the chance to do work that touches lives and helps communities prosper.In addition to competitive compensation, we offer a comprehensive benefits package that includes tuition assistance, generous paid time off, top-notch health care benefits, child and family care leave, professional development opportunities, a 401(k) match, pension, and more. All brought together in a flexible work environment where you can truly find balance.
Position Summary:
You will conduct cybersecurity risk management examinations at Significant Service Providers (SSPs) under the Federal Reserve's supervisory authority. Responsible for assessing SSP cybersecurity practices, operational resilience programs, and information technology infrastructures to ensure they are operating in a safe and sound manner and complying with applicable banking laws, regulations, and policy statements. Will participate on national examinations for information security and cybersecurity in addition to executing the Federal Banking Agencies’ SSP strategies. You will report to the Director of Examinations.
We are hiring at multiple levels (Associate, Specialist, Sr. Specialist, Lead) depending on your relevant experience.
We are a dynamic hybrid workplace environment that requires at least 2 days a week in the office.
Key Responsibilities:
Lead or contribute to cybersecurity examinations to determine the effectiveness of a SSP’s cybersecurity program and validate remediation efforts of identified issues.
Lead or contribute on Federal Reserve System and local cyber security initiatives related to training, committees, and development of policy statements to enhance the supervision of SSPs.
Support development of supervisory plans for relevant cybersecurity areas and effective risk-based supervision factoring in size and complexity of target firms.
Lead or assist to ongoing supervisory work across the SSPs to understand and analyze micro (institution specific), horizontal (industry wide/peer) and macro (financial system supervision) cybersecurity risks.
Prepare informative, well supported supervisory products and work papers, and effectively communicate highly complex and problematic supervisory findings and required actions to senior management and boards of directors.
Prepare and deliver written analyses and presentations on SSP specific industry trends and emerging risks that translate potential risk exposures and supervisory implications.
Develop and maintain ongoing relationships with supervisory personnel at the Board of Governors and Reserve Banks, across other regulatory agencies, as well as senior management and directors of SSPs to ensure strong communication of supervisory expectations and exercise influence to promote safety and sound practices.
Maintain a global awareness of relevant regulations, laws, emerging issues, trends, and ongoing developments in the financial services industry, including new security threats and techniques.
Foster a professional environment by seeking and accepting coaching from more senior staff
Qualifications:
Education: Bachelor's Degree; degree in a related field of Information Technology, Cybersecurity, Computer Science, or Information Systems is preferred.
Experience: Work experience and equivalent academic studies will be evaluated to determine your level of eligibility for either the Associate, Specialist, Sr. Specialist or Lead. Experience in regulatory/government agencies or financial services preferred. Regulatory agency examiner commission is preferred, but not required.
Functional Knowledge:
Knowledge or experience in at least some of the following:
Risk management
Vendor risk management
Cybersecurity response and resilience
Cloud security
Data governance and security
Endpoint and server technologies
Intrusion detection and prevention systems
Identity access management and access control
Threat and vulnerability management
Effective written and verbal (including presentation and negotiation) communication ski
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s