![](/images/main_left.jpg) |
Principal Application Security Analyst, SVP - Fort Lauderdale Florida
Company: Hispanic Technology Executive Council Location: Fort Lauderdale, Florida
Posted On: 01/25/2025
Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. Well enable growth and progress together.About Our Team:The Chief Information Security Office (CISO) is home to deeply talented colleagues that work to ensure the safety of Citi's clients', our revenue, our employees and our proprietary data. We manage information security as one end-to end program one with a clear mandate and accountability. Our mission is a program that is fully anchored to modern control and architectural frameworks, is fully aligned with the enterprise architecture of the firm and is deeply integrated into the sectors and functions.About the Role:The Advanced Pentesting team plays a key role within the Cyber Security Engineering and Architecture organization at Citi, providing security testing services to internal businesses, enabling delivery of secure solutions to Citi customers at a rapid pace. The Principal Application Security Analyst position is a cross-functional role that will be responsible for leading analysis and research of new vulnerabilities and exploits, and identification of systemic issues within mission critical Citi applications. The candidate needs to be an innovator, analytical thinker, team player, and an effective communicator, able to bridge business, technology, and security requirements. The successful candidate must be an individual who understands modern software development frameworks, complex enterprise architectures, and keeps up with the ever-evolving cyber security threat landscape.Key Responsibilities: - Perform in-depth analysis and research of new vulnerabilities and exploits. Demonstrate the impact of these through the development of proof-of-concept code.
- Have strong technical writing and presentation skills to articulate research results and proof of concepts to any audience.
- Drive remediation by outlining a defense-in-depth approach to business stakeholders and providing strategic solutions to developers on effective security controls and counter measures.
- Conduct advanced threat modelling and deep-dive vulnerability assessments.
- Have excellent communication (written and verbal) skills to report and articulate the results.
- Review internal tools, testing processes and methodologies within Application Security space and assist in identifying potential opportunities for improvement and automation.
- Design and lead security awareness trainings for development teams.
- Mentor and guide junior security analysts and teams.Qualifications:
|
![](/images/main_right.jpg) |