Federated Hermes · 2 weeks ago
Information Security Engineer
Federated Hermes, Inc., a global leader in active, responsible investing, is seeking an Information Security Engineer to join their Information Security department in Warrendale, Pennsylvania. The role involves conducting security assessments, performing risk analysis, and providing guidance on mitigating controls to ensure compliance with information security standards.
Financial Services
Responsibilities
Conduct formal end to end Information Security Assessments (review of questionnaires, third party security audit reports and evidence, onsite assessments, etc.)
Perform security reviews for technical products, identify gaps in security and assist in providing guidance on mitigating controls
Perform risk analysis on third party capabilities (i.e., threat, vulnerability, and probability of occurrence) whenever an application or system undergoes a major change)
Use third-party risk evaluation tools to monitor and reduce organizational cyber risk associated with third parties
Assess remediation plans and non-compliance acceptances where Information Security standards compliance cannot be achieved. Review services and data in scope of the assessment and analyze security risk ratings
Work on projects as directed by management
Qualification
Required
Familiarity with security architecture frameworks such as SABSA and TOGAF
Familiarity with Threat modelling methodologies such as STRIDE
Familiarity with security frameworks such as NIST800, CIS, ISO27001
Familiarity with independent assurance frameworks such as SOC2
Industry recognized technical certifications are desirable (CISSP, CCSP, CompTIA Security+, GIAC security essentials)
Familiarity with security and privacy regulations impacting financial services such as SOX and GDPR
Prior experience with risk assessments and general understanding of risk management principles
Excellent written and verbal communications skills
Benefits
A competitive total compensation package, including bonus programs designed to recognize and incentivize our employees to do their best every day.
Time off programs including paid vacation, parental leave and a volunteer day to help you stay healthy and connected to the things that are important.
Opportunities to expand your professional network within the firm and the community through participation in programs such as the Women in Investing Employee Resource Business Group and the University Ambassador Program.
Company
Federated Hermes
Federated Hermes is an investment management firm that offers equity, fixed-income, and liquidity management solutions.
Funding
Current Stage
Late StageRecent News
2026-01-13
2025-12-29
Company data provided by crunchbase