Raymond James
Lead Application Security Architect
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Raymond James
Raymond James Financial, Inc. is a diversified financial services holding company based in St. Petersburg, Florida. Founded in 1962, the company provides a wide range of services including securities brokerage, investment banking, financial advisory, asset management, trust services, and retail banking to both individual and institutional clients globally. The firm operates through four main segments: the Private Client Group, which offers wealth management through approximately 8,700 financial advisors; Capital Markets, focusing on investment banking activities; Asset Management Group, which includes asset management and trust services; and Banking, providing retail banking solutions. Raymond James has a strong track record, achieving 139 consecutive profitable quarters and ranking among the Fortune 500 companies. With a revenue of around $11 billion annually, it is one of the largest public companies in the Tampa Bay area.
Security at Raymond James
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Raymond James' AppSec philosophy emphasizes a corporate cybersecurity commitment, utilizing dedicated IT security and privacy teams for threat intelligence, and employing technology to monitor, defend, and protect their infrastructure 24/7. They focus on application security and vulnerability management. However, explicit statements on developer enablement, risk philosophy, or specific pain points/goals are not publicly available.”
Security Team
Key public-facing individuals include Jeff Palmiero, Technical Vice President and Application Performance Management Architect, and Christian Alfano-Nerey, Senior Site Reliability Engineer. Raymond James posts jobs across corporate, technology, and operations. However, explicit AppSec organizational structure, reporting lines, team size estimates, or details on a Security Champions program are not publicly available.
Key Initiatives
Raymond James utilizes Dynatrace Application Security, which has significantly reduced high and critical vulnerabilities. They also mention application security concepts like SAST, DAST, IAST, SCA, and vulnerability management as areas of focus, and employ encryption, VPNs, and penetration/vulnerability testing. However, details on a Security Champions program, specific internal processes for vulnerability management (SLAs, ticketing, MTTR), or comprehensive "Shift Left"practices are not publicly available.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.