CrawlJobs Logo

Information Security Tech Sr Lead Analyst

https://www.citi.com/ Logo

Citi

Location Icon

Location:
United States, Fort Lauderdale

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

176000.00 - 201014.21 USD / Year

Job Description:

Citi seeks an Information Security Tech Sr Lead Analyst to perform IT vulnerability assessments, penetration testing, and threat modeling for Citi applications. The role includes conducting offensive information security reviews, developing security controls, and driving remediation processes while contributing to internal process improvements and researching new vulnerabilities.

Job Responsibility:

  • Perform IT vulnerability assessments, penetration testing and threat modeling for Citi applications including Web, Mobile, Thick Client, and APIs
  • Manually identify, research, validate, and exploit known and unknown application security vulnerabilities
  • Conduct offensive information security including white-box application reviews, dynamic analysis, secure source code review, programming, networking, operating systems, and databases
  • Perform mobile application testing including intercepting servers, bypassing validation, reverse engineering, and analyzing data storage in mobile devices
  • Devise information security controls and remediations of vulnerabilities
  • Drive remediation by outlining a defense-in-depth approach to stakeholders and provide solutions to developers on effective security controls and counter measures
  • Use technical writing and presentation skills to report and articulate the vulnerability assessment results to technical and non-technical audiences
  • Contribute to review of internal processes and activities
  • Assist in identifying opportunities for improvement and automation
  • Analyze and research new vulnerabilities and exploits
  • Develop proof of concepts to characterize exploitability and impact.

Requirements:

  • Bachelor’s degree, or foreign equivalent, in Computer Science, Information Technology, Information Security or related field
  • 5 years of progressive, post-baccalaureate experience as an Information Security Analyst, Information Security Engineer, Software Engineer, Software Developer, Technical Lead, or related position involving information security vulnerability assessment, secure coding practice, source code audit, and remediation efforts
  • Application vulnerability assessments
  • Secure source code review
  • Mobile application testing including intercepting servers, bypassing validation by creating custom script (frida, cycript) to hook mobile application function, reverse engineering, and analyzing data storage in mobile devices
  • Networking, operating systems, and databases
  • Programming languages Java, C, and C#
  • Proof of concept development
  • Verbal and written communication on security issues
  • At least 4 years of experience must include penetration testing and threat modeling
  • Offensive information security including white-box application reviews, dynamic analysis
  • Devising information security controls and remediations of vulnerabilities
  • Research of new vulnerabilities and threats
  • Financial services industry experience.
What we offer:
  • Medical, dental, and vision coverage
  • 401(k)
  • Life, accident, and disability insurance
  • Wellness programs
  • Paid time off packages including vacation, sick leave, and paid holidays
  • Discretionary and formulaic incentive and retention awards.

Additional Information:

Job Posted:
May 29, 2025

Expiration:
July 11, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.