Envestnet Taps National Security Vet to Guard $7.4T Wealth Platform
- $7.4 trillion: The value of the wealth management platform Envestnet is safeguarding.
- 25 years: Rich Friedberg's experience in cybersecurity spanning financial services and national security.
- 1/3 of financial advisors: The portion relying on Envestnet's platform.
Experts would likely conclude that Envestnet's appointment of Rich Friedberg as CISO reflects a strategic shift toward integrating cybersecurity deeply into business operations, positioning it as a growth enabler rather than just a defensive measure.
Envestnet Taps National Security Vet to Guard $7.4T Wealth Platform
BERWYN, PA โ February 19, 2026 โ Envestnet, a central pillar in the financial advisory world, today announced the appointment of Rich Friedberg as its new Chief Information Security Officer (CISO). The move sends a clear signal to the industry: in an era of escalating digital threats, protecting the firm's $7.4 trillion wealth management platform is not just a priority, but a core strategic imperative.
Friedberg, a cybersecurity leader with over 25 years of experience spanning financial services and national security, steps into the role at a critical juncture for the WealthTech sector. His appointment is framed by Envestnet as a direct investment in enterprise resilience and a commitment to embedding security into the very DNA of its innovation pipeline.
A Strategic Shift Beyond the Firewall
For leading financial technology firms, cybersecurity has evolved far beyond a reactive, IT-centric function. Envestnet's leadership is positioning this hire as a proactive move to integrate security into the heart of its business strategy, framing it as an enabler of growth rather than a constraint on innovation.
"Trust is the foundation of wealth management, and security is foundational to trust," said Chris Todd, Chief Executive Officer of Envestnet, in a statement. "Rich brings deep expertise aligning cybersecurity with enterprise risk, regulatory expectations, and board-level governance. His ability to position security as both a strategic enabler and disciplined risk function will strengthen our platform and support our next phase of growth."
This perspective reflects a broader industry trend where the CISO is increasingly seen as a key business partner. Friedberg's mandate is not merely to build higher walls around the company's data but to help engineer a more resilient and trustworthy ecosystem for the more than one-third of all financial advisors who rely on its platform. This involves reframing security from a siloed technical department into a core discipline that permeates product development, corporate strategy, and risk management.
The Architect of Modern Cyber Defense
Friedbergโs extensive background suggests he is uniquely qualified for this strategic role. His career is a tapestry of high-stakes security leadership in both the private and public sectors. Most recently, he served as CISO at Live Oak Bank, where he was noted for modernizing security through AI-enabled and automated approaches. He previously held senior security roles at Blackbaud and was the CISO for Capital One's massive card business.
However, it is his tenure at Carnegie Mellon University's prestigious CERT Program that particularly stands out. As Deputy Director of the CERT Coordination Center, Friedberg supported the missions of numerous U.S. government agencies, leading national-level incident response and threat intelligence initiatives. This experience, operating at the highest levels of cyber defense, provides him with a unique perspective on the sophisticated threat actors targeting critical financial infrastructure.
Friedberg's own philosophy aligns with this forward-thinking approach. "Envestnet operates at the center of the wealth management ecosystem, where trust, data stewardship, and operational resilience are paramount," he stated. "My focus is simple: embed security early, align governance with enterprise risk, eliminate unnecessary complexity, and use AI-driven automation to deliver security at speed. When security is integrated into strategy and engineering from day one, it accelerates innovation and protects enterprise value."
His academic contributions, including nearly a decade as adjunct faculty for Carnegie Mellon's CISO Executive Program, further cement his status as a thought leader shaping the next generation of security executives.
Navigating the Evolving WealthTech Threat Landscape
The timing of Friedberg's appointment is anything but coincidental. The WealthTech industry is grappling with a rapidly evolving and increasingly perilous threat landscape. The very technologies driving innovation, such as artificial intelligence, are being weaponized by attackers. Sophisticated threats like AI-generated deepfake fraud, which can mimic a client's voice to authorize fraudulent transactions, are no longer theoretical.
Furthermore, the interconnected nature of modern finance, heavily reliant on third-party integrations and APIs, creates a sprawling attack surface. A vulnerability in a single vendor can create a cascading crisis across the ecosystem. This reality is compounded by relentless ransomware attacks and heightened scrutiny from regulatory bodies like the SEC and FINRA, which are placing a strong emphasis on cybersecurity governance and operational resilience in their 2026 examination priorities.
Bringing in a CISO with Friedbergโs background is a direct response to this environment. His experience in incident response and his focus on AI-driven defense are tailored to combat these modern threats, aiming to keep Envestnet ahead of a constantly shifting adversary.
Integrating Security into the Core of 'Adaptive WealthTech'
Envestnet's decision to have Friedberg report directly to Chief Technology Officer (CTO) Bhaskar Peddhapati is a significant structural choice. This reporting line, increasingly common in technology-first companies, is designed to foster a deep, collaborative relationship between security and engineering. The goal is to build a "secure-by-design" culture where security is not an afterthought or a final hurdle before a product launch, but an integral part of the development lifecycle.
This structure is essential to fulfilling the promise of Envestnet's 'Adaptive WealthTech' vision. To be truly adaptive, the platform must be able to innovate and scale rapidly without compromising the security of the immense volume of sensitive client data it stewards. By embedding security directly into platform engineering, the company aims to accelerate, not inhibit, its ability to roll out new features and leverage emerging technologies like generative AI.
This appointment is ultimately about reinforcing the trust that underpins the relationship between financial advisors and their clients. For the thousands of wealth managers who build their businesses on Envestnet's technology, the assurance of a resilient and secure platform is paramount. By investing in top-tier leadership and a deeply integrated security strategy, Envestnet is working to solidify that trust and set a new standard for cybersecurity in the digital wealth management era.
