Information Security Engineer Jobs in New York
Information Security Engineer jobs in New York rank among the most active in the country, with strong demand concentrated in financial services, healthcare, media, and enterprise technology from entry-level analysts through principal engineers and architects. The heaviest hiring happens in New York City, with additional activity in Albany and Buffalo, where institutions like JPMorgan Chase, Citigroup, and IBM maintain large security-focused teams. The most sought-after specializations in New York's market are cloud security, application security, and threat detection and response. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 40+ Information Security Engineer jobs











Company overview
Department Overview:
Risk Management supports Nomura to achieve its business goals by partnering with business units across the firm, providing independent advice to the Board and protecting the firm from exposure to losses as a result of credit, market, operational and other risks.
The Operational Risk Management (ORM) 2LoD function is part of the Risk Management organization and is responsible for:
- Developing operational risk frameworks and policies
- Providing independent oversight over operational risks and challenging First Line of Defense
- Monitoring risk appetite compliance
- Reporting to senior management and committees
Key Responsibilities:
In this role, you will be the second line of defense risk manager overseeing Nomura Information Technology and Information Security (IT & IS), Business Resilience as well as Third Party risks (TPRM). You will focus on:
- Check and Challenge the ICT risk profile of the Americas operations as well as participate in risk management programs for Nomura globally
- Provide independent risk opinions on compliance with relevant regulatory and industry expectations (NIST, FFIEC…)
- Review the risk profile across IT change management, identity and privileged access (IAM/PAM), resilience, vulnerability and patch management, data leakage prevention, etc.
- Review and challenge the 1LoD controls rollout and results.
- Produce and/or contribute to management dashboard, focusing on remediation action when needed.
- Review and Challenge the Business Continuity Management (BCM) program (BCP, testing…).
- Third-Party risk oversight
- Assess independently the adherence to industry and regulatory standards e.g. interagency guidance
- Review the proper tiering of TPs, due diligence standards, monitoring of risk acceptances…
- Independently challenge criticality and materiality designations, with particular focus on material outsourcing and intragroup service arrangements
Required Qualifications:
- 15+ years in a technical role along with exposure to / experience in technology risk management, information security, or IT audit.
- Bachelor's degree in computer science, engineering, or information systems; CISSP, CISA, CISM, CRISC, or CCSP preferred.
- Hands-on technical experience in engaging 1LoD experts on technical issues.
- Experience in proactively sustaining independent check and challenges with first line.
- Understanding of Industry standards and regulatory expectations, with experience implementing or auditing IT and IS risk compliant framework.
Nomura Leadership Behaviors
- Explore Insights & Vision: Identify the underlying causes of problems faced by you or your team and define a clear vision and direction for the future.
- Making Strategic Decisions: Evaluate all the options for resolving the problems and effectively prioritize actions or recommendations.
- Inspire Entrepreneurship in People: Inspire team members through effective communication of ideas and motivate them to actively enhance productivity.
- Elevate Organizational Capability: Engage proactively in professional development and enhance team productivity through the promotion of knowledge sharing.
- Inclusion: Foster a culture of inclusion and psychological safety in the workplace and cultivate a "Risk Culture" (Challenge, Escalate and Respect).
- base pay offered may vary depending on multiple individualized factors, including market location, corporate and functional title and duties, job-related knowledge and advanced degrees, skills, and experience. The total compensation package for this position may also include other elements, including a sign-on bonus, restricted stock units, and discretionary awards in addition to a full range of medical, financial, and/or other benefits (including 401(k) eligibility and various paid time off benefits, such as vacation, sick time, and parental leave), dependent on the position offered. Details of participation in these benefit plans will be provided if an employee receives an offer of employment.
Nomura is an Equal Opportunity Employer
Nearest Major Market: Manhattan
Nearest Secondary Market: New York City
See All 40 Information Security Engineer Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find JobsInformation Security Engineer Jobs by City in New York
Where New York roles are concentrated, by current openings.
Information Security Engineer Job Market in New York
A snapshot from current New York openings, updated as new roles post.
Who's Hiring



Top Industries Hiring
- Technology & Software
- Healthcare & Medical Services
- Education
- Telecommunications
- Banking & Financial Services
What New York Employers Look For
The qualifications that appear most often in information security engineer jobs across New York.
- Bachelor's degree in computer science, information security, or a closely related field
- Certified Information Systems Security Professional or CompTIA Security+ certification preferred
- Hands-on experience with SIEM platforms, firewalls, and intrusion detection systems
- Familiarity with NIST, ISO 27001, or SOC 2 compliance frameworks
- Proficiency in cloud security environments including AWS, Azure, or Google Cloud
- Experience conducting vulnerability assessments, penetration testing, or incident response
Information Security Engineer Jobs in New York: Frequently Asked Questions
How do you become a information security engineer in New York?
Start with a bachelor's degree in computer science, cybersecurity, or information systems, as New York employers consistently require it for engineering-level roles. New York does not issue a state-specific license for information security engineers, so hiring decisions turn on industry certifications such as CISSP, CEH, or CompTIA Security+. Gaining experience in a related role like IT analyst or network administrator, then targeting New York's large financial or healthcare institutions for a security-focused transition, is the most reliable path.
How much do information security engineers make in New York?
Information security engineers in New York earn a median of about $134,660 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $83,110 for the lowest 10% to over $216,220 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire information security engineers in New York?
Employers hiring information security engineers in New York right now include Sumitomo Mitsui Trust Bank, Danaher, and Palantir Technologies, based on current listings on Migrate Mate as of September 2026. New York's dense concentration of financial institutions and global media companies means security engineering roles here frequently carry compliance and regulatory scope beyond what is typical in other states.
Which New York cities have the most information security engineer jobs?
New York, Buffalo, and Albany have the most information security engineer openings in New York. New York City dominates because its financial district, insurance sector, and large healthcare systems each maintain substantial security teams, while Albany draws openings from state government agencies and regulated utilities, and Buffalo's growing tech and banking presence has added consistent demand.
Are there remote information security engineer jobs in New York?
Yes, and more than most fields. About 70% of information security engineer openings tied to New York are remote or hybrid as of September 2026, reflecting how much of the work centers on monitoring dashboards, cloud consoles, and code review rather than physical infrastructure. Threat analysis, security engineering for SaaS products, and cloud security architecture roles are the positions most frequently posted as fully remote.
How can I get hired as a information security engineer in New York with little or no experience?
The most realistic entry path is a junior security analyst or IT security associate role, which many New York financial institutions and large hospital networks use as a feeder into engineering tracks. JPMorgan Chase, New York-Presbyterian, and large state agencies all hire at the associate level, often through early-career programs. A CompTIA Security+ certification and a home lab or capture-the-flag portfolio substitute effectively for commercial experience when applying to these roles.
Where can I find and apply to information security engineer jobs in New York?
You can find and apply to information security engineer jobs in New York on Migrate Mate, which lists current openings from employers hiring in the state right now. Search for roles that match your experience level and specialization, then apply directly to the ones that fit.
See All 40 Information Security Engineer Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find Jobs