This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Cybersecurity Architect is responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.
Job Responsibility:
Plan, research, and design security architecture for IT systems and applications (internally developed as well as vendor supplied) for processing multiple classification levels of data on prem, and cloud
Determine the security controls for above, document appropriately and partner with IT architecture/development stakeholders to implement during early in system development life cycle
Perform security architecture and risk assessment of internally developed or acquired IT systems and applications using best practices including threat modelling
Ensure that security design and controls are consistent with organization's security architecture principals
Provide security recommendations including automated controls, configurations on projects, processes, risk exceptions, corrective action plans, and risk reduction initiatives
Collaborate with the internal and external technology teams to drive the development of strategies and plans for improving both architecture and application security
Establish relationships with cross-functional areas including Business, Technology, and Compliance stakeholders and serve as a SECURITY subject-matter expert
Promote awareness and provide consistent interpretation of security policy to technology and business teams
Manage risk by analyzing the root cause of security issues, determining compensating controls, and driving remediation
Support Global Information Security policies, standards, and initiatives development and implementation by representing in different Citi action groups such as Delegated Action Groups (DAG)
Requirements:
10+ years of experience as a Security Architect or Application Architect with Security knowledge
Good understanding of IT Security frameworks such as NIST SP-800, ISO 27001
Good knowledge of Software Development processes (SLDC/Agile/Iterative/DevOps)
Good understanding of Industry attestations like SWIFT CSP, target 2, CHAPs will be a plus
Experience with Threat Modeling methodologies (e.g., STRIDE, DREAD) and performing threat assessments on applications
Experience developing Reference Security Architecture and Design Patterns to support proactive and automated controls
Experience performing Security Architecture Assessments for one or more IT systems such as Web, Mobile, APIs/Microservices, Cloud (AWS/GCP/Azure/Oracle)
Strong knowledge of iOS & Android Ecosystem with emphasis on security for mobile applications related to authentication/authorization (biometric emphasis), data protection, session management, data validation, and end point protections
Strong understanding of Mobile Payment Systems and supporting ecosystems (i.e. Mastercard / Visa)
Hands on experience with security controls to defend against mobile attack surface related to end point devices, network APIs/Micro services, and network
Good understanding of mobile security trends and threats/vulnerabilities and corresponding risk analysis processes and threat modelling techniques
Must be proficient in applying application security knowledge to improving security in software development phases such as requirements, test cases, assessment, remediation
Demonstrated ability to take ownership and follow up on issues
Demonstrated ability to work in a team and to work well under pressure
Advanced analytical and problem solving skills
Consistently demonstrates clear and concise written and verbal communication
Proficient in interpreting and applying policies, standards and procedures
Demonstrated ability to remain unbiased in a diverse working environment
Nice to have:
Good understanding of Industry attestations like SWIFT CSP, target 2, CHAPs
Demonstrated ability to take ownership and follow up on issues
Advanced analytical and problem solving skills
Strong understanding of Mobile Payment Systems and supporting ecosystems (i.e. Mastercard / Visa)
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.