CrawlJobs Logo

Information Security Technology Analyst - Governance

https://www.citi.com/ Logo

Citi

Location Icon

Location:
Philippines , City of Taguig, Metro Manila

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The Information Security Technology Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.

Job Responsibility:

  • Assist Security Incident Response Teams with incident investigations and aid in technical risk assessments
  • Coordinate with system development and infrastructure units to identify Information Security (IS) risks and the appropriate controls for development, day-to-day operation, and emerging technologies
  • Perform regular assessments based on changes in the threat landscape
  • Monitor vulnerability assessments and ethical hacks, ensuring that issues are addressed for the applications that they support
  • Provide information security support with related activities during systems development (e.g. authentication, encryption)
  • Identify and develop new and improved technical procedures and process control manuals
  • Identify significant IS threats and vulnerabilities
  • Assume informal/formal mentorship role within teams and assist with the coaching and training of new team members
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets

Requirements:

  • 5-8 years of relevant experience
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Bachelor's degree/University degree or equivalent experience

Additional Information:

Job Posted:
October 08, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Information Security Technology Analyst - Governance

Information Security Professional Lead Analyst

The Info Sec Prof Lead Analyst is an intermediate level position responsible for...
Location
Location
Philippines , City of Taguig
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 7+ years of strong data analysis and report development experience
  • 7+ years of experience in information security or related technology experience required
  • At least 7+ years’ experience with Business Intelligence Reporting tools like Cognos, Tableau
  • At least 7+ years’ experience with Databases like Oracle, SQL Server, Microsoft Access
  • Strong Business Intelligence Developer Skills
  • Strong understanding of application development life cycle, CI/CD and DevOps concepts
  • Excellent Excel data analysis and Access database skills
  • Excellent SQL Skills
  • Experience with issue resolution - ability to research, identify and communicate solutions
  • Consistently demonstrates clear and concise written and verbal communication
Job Responsibility
Job Responsibility
  • Design and implement a solution for performance measurements on effectiveness of controls and overall vulnerability assessment program
  • Analyze trends on assets security health posture and report using visualization tools for program review with management and stakeholders
  • Analyze and report aggregated data from multiple data sources
  • Develop data visualization mock-ups for monitoring program data trends and communicate using analytical tools
  • Develop reports for tracking program effectiveness and update power point deck for weekly, monthly and quarterly updates
  • Develop, optimize and provide continuous support for reports and ad-hoc queries from end user
  • Create dashboards with parameters and interactive drill down functionality
  • Analyze trends on assets security health posture and report using visualization tools for program review with management and stakeholders
  • Excellent Analytical Ability - Understand the systems and data flow at a high level to evaluate if appropriate controls are in place for the standards
  • Provide timely, accurate, and actionable reporting on application vulnerability activity, trends, service levels, and areas of concern to senior management
  • Fulltime
Read More
Arrow Right

Security Governance Risk & Compliance (GRC) Analyst

Here at Virtru you’ll help build a cutting edge security compliance program alig...
Location
Location
United States , Washington, DC
Salary
Salary:
130000.00 - 180000.00 USD / Year
virtru.com Logo
Virtru
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5+ years of information security, IT audit and/or IT Risk Management, or GRC Analyst/Engineer experience
  • Deep understanding of at least few of the following: CMMC, NIST 800-53 & 800-171, FedRAMP, SOC 2, PCI, and/or other global privacy compliance frameworks
  • Technical acumen. Strong understanding of modern cloud technologies (AWS, GCP, Azure, etc.) and familiarity with GRC tools (Hyperproof, Vanta, Drata, etc) and SIEM tools (Datadog, Splunk)
  • You’re a relationship builder and have worked with both business and technical risk and understand how to translate risk to various levels of the organization
  • Have experience training and coaching teams to become better security and privacy practitioners
  • Like working on an autonomous agile team
  • Ability to resolve conflicts and drive issues to completion
  • Work independently with little or no supervision while maintaining a high level of efficiency
  • Hands on experience deploying and managing vulnerability scanning/cloud security posture management tools (Wiz, Prismacloud, etc.) to meet security compliance requirements
  • Real-world IR experience participating on security On-Call teams
Job Responsibility
Job Responsibility
  • Manage and implement complex controls frameworks for large systems, consisting of Cloud infrastructure and Software as a Service (SaaS) services (GCP, AWS, GitHub, Okta, etc)
  • Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services
  • Conduct risk assessments across business units and processes. Identify risk findings and recommend remediation and risk mitigation strategies
  • Assist or implement automated controls to support risk mitigation efforts across various business units with stakeholders
  • Incorporate CMMC certification into Virtru’s slate of compliance assessments and ongoing monitoring activities (FedRAMP, SOC 2, PCI)
  • Facilitate the third-party vendor on-boarding and annual review process by evaluating the security of current and prospective partners
  • Participate in incident response (IR) activities, providing risk analysis and remediation support as needed
  • Enhance the team with your individualism, spirit, and love of learning
What we offer
What we offer
  • A Flexible PTO policy
  • A $1,500 annual Learning & Development Stipend
  • Frequent company-sponsored team celebrations
  • Access to an Employee Assistance Program
  • Access to Headspace, a mental health app
  • A flat 3% contribution to your retirement account
  • A high degree of flexibility
  • Competitive compensation
  • Generous parental, medical, and bereavement policies
  • 401K contribution and stock options
  • Fulltime
Read More
Arrow Right

Information Security Identity & Access Management Analyst

The Info Sec Prof Senior Analyst is an intermediate level position responsible f...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant Identity and Access Management experience
  • Applicable Certifications or willingness to earn within 12 months of joining
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Bachelor’s degree/University degree or equivalent experience
Job Responsibility
Job Responsibility
  • Identify potential Identity and Access Management (IAM) risks and make recommendations for enhancement
  • Lead execution of IAM governance procedures, specifically focusing on non-worker identities and IAM resources
  • Collect and analyze security risk evidence and coordinate with internal and external compliance and auditing agencies / officials
  • Develop and operationalize key risk indicators for related IAM topics and governance procedures
  • Produce insights from data that are tailored to specific requirements and audiences
  • Execute meetings and communicate complex security topics and IAM standards and best practices with all levels of the organization
  • Ensure that controls are utilized daily and that non-compliance remediation is addressed
  • Drive technological projects with cross-functional teams that support the expansion of IAM governance
  • Provide IAM consulting services, including interpreting and/or clarifying information security policy, procedures, standards or concepts
  • Assist with defining, implementing, and governing IS standards to align procedures and practices in compliance with Citi standards
What we offer
What we offer
  • Best-in-class benefits
  • Global benefits
  • Equal opportunity employer
  • Fulltime
Read More
Arrow Right

Security Analyst

As a Security Analyst, you will be a key player in our IT security team, focusin...
Location
Location
United States , Tallahassee
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
Job Responsibility
Job Responsibility
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
  • Fulltime
Read More
Arrow Right

Cybersecurity GRC Tool Analyst

Cybersecurity GRC Tool Analyst to analyse the technology requirements of the var...
Location
Location
Canada
Salary
Salary:
97600.00 - 181000.00 CAD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Information Security, Information Technology, Risk Management or a related field, or equivalent experience
  • CISSP, ISO 27001 Lead Implementer, or similar certification
  • GRC platform certifications (e.g., Archer Certified Professional, ServiceNow GRC, Drata Admin, OneTrust Certified)
  • ITIL Foundation (a plus)
  • 5-7 years of experience in Information Security, IT Governance, or Risk Management
  • 5+ years of experience working with GRC platforms (e.g., Archer, ServiceNow GRC, AuditBoard, Drata, OneTrust, or similar)
  • Expert at working with Governance Risk & Compliance platforms
  • Strong understanding of cybersecurity and compliance frameworks (e.g., NIST CSF, ISO 27001)
  • Experience with basic integrations and workflow configurations
  • Strong organizational skills and attention to detail
Job Responsibility
Job Responsibility
  • Administer and maintain the GRC platform, including configurations, workflows, and reporting dashboards
  • Support the integration of the GRC tool with key enterprise systems (e.g., asset inventory, ticketing systems, vulnerability management tools)
  • Collaborate with cybersecurity, policy, risk, compliance, and IT teams to capture business requirements and translate them into functional tool capabilities
  • Assist in onboarding and managing control frameworks (e.g., ISO 27001, SOC 2, NIST CSF, FedRAMP) within the platform
  • Monitor data quality, ensure accurate reporting, and maintain platform integrity
  • Support control owners and stakeholders in using the GRC platform for assessments, evidence collection, and tracking remediation activities
  • Maintain user roles and permissions, ensuring proper access management
  • Document processes, workflows, and platform configurations
  • Provide training and guidance to end users on tool functionality and best practices
  • Coordinate with tool vendors for issue resolution, upgrades, and enhancements
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive benefits suite supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Chicago
Salary
Salary:
105000.00 - 120000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Princeton
Salary
Salary:
115000.00 - 126000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Los Angeles
Salary
Salary:
115000.00 - 126000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process
  • Lead internal data collections in response to audits, investigations or internal reviews
  • Lead process for maintaining enterprise data map
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement
  • Prepare and deliver training, guidance, and communications to staff
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right