CrawlJobs Logo

Cybersecurity Architect

https://www.citi.com/ Logo

Citi

Location Icon

Location:
Canada, Mississauga

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Cybersecurity Architect is responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.

Job Responsibility:

  • Plan, research, and design security architecture for IT systems and applications (internally developed as well as vendor supplied) for processing multiple classification levels of data on prem, and cloud
  • Determine the security controls for above, document appropriately and partner with IT architecture/development stakeholders to implement during early in system development life cycle
  • Perform security architecture and risk assessment of internally developed or acquired IT systems and applications using best practices including threat modelling
  • Ensure that security design and controls are consistent with organization's security architecture principals
  • Provide security recommendations including automated controls, configurations on projects, processes, risk exceptions, corrective action plans, and risk reduction initiatives
  • Collaborate with the internal and external technology teams to drive the development of strategies and plans for improving both architecture and application security
  • Establish relationships with cross-functional areas including Business, Technology, and Compliance stakeholders and serve as a SECURITY subject-matter expert
  • Promote awareness and provide consistent interpretation of security policy to technology and business teams
  • Manage risk by analyzing the root cause of security issues, determining compensating controls, and driving remediation
  • Support Global Information Security policies, standards, and initiatives development and implementation by representing in different Citi action groups such as Delegated Action Groups (DAG)

Requirements:

  • 10+ years of experience as a Security Architect or Application Architect with Security knowledge
  • Good understanding of IT Security frameworks such as NIST SP-800, ISO 27001
  • Good knowledge of Software Development processes (SLDC/Agile/Iterative/DevOps)
  • Good understanding of Industry attestations like SWIFT CSP, target 2, CHAPs will be a plus
  • Experience with Threat Modeling methodologies (e.g., STRIDE, DREAD) and performing threat assessments on applications
  • Experience developing Reference Security Architecture and Design Patterns to support proactive and automated controls
  • Experience performing Security Architecture Assessments for one or more IT systems such as Web, Mobile, APIs/Microservices, Cloud (AWS/GCP/Azure/Oracle)
  • Strong knowledge of iOS & Android Ecosystem with emphasis on security for mobile applications related to authentication/authorization (biometric emphasis), data protection, session management, data validation, and end point protections
  • Strong understanding of Mobile Payment Systems and supporting ecosystems (i.e. Mastercard / Visa)
  • Hands on experience with security controls to defend against mobile attack surface related to end point devices, network APIs/Micro services, and network
  • Good understanding of mobile security trends and threats/vulnerabilities and corresponding risk analysis processes and threat modelling techniques
  • Must be proficient in applying application security knowledge to improving security in software development phases such as requirements, test cases, assessment, remediation
  • Demonstrated ability to take ownership and follow up on issues
  • Demonstrated ability to work in a team and to work well under pressure
  • Advanced analytical and problem solving skills
  • Consistently demonstrates clear and concise written and verbal communication
  • Proficient in interpreting and applying policies, standards and procedures
  • Demonstrated ability to remain unbiased in a diverse working environment

Nice to have:

  • Good understanding of Industry attestations like SWIFT CSP, target 2, CHAPs
  • Demonstrated ability to take ownership and follow up on issues
  • Advanced analytical and problem solving skills
  • Strong understanding of Mobile Payment Systems and supporting ecosystems (i.e. Mastercard / Visa)

Additional Information:

Job Posted:
July 03, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.