This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
This is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks on a 24x7 basis. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.
Job Responsibility:
Actively monitoring, researching, and assessing security events to identify and analyze web application attacks and digital fraud
Specialized in detecting and responding to threats such as Account Takeovers (ATO), Distributed Denial of Service (DDoS) attacks, common web application vulnerabilities (e.g., Cross-Site Scripting, SQL injection, command injection), and anomalies in financial transactions
Follow pre-defined actions to handle BAU and high severity issues including escalating to other support groups
Execute daily ad hoc tasks or lead small projects as needed
Perform assessment as well as troubleshooting to help isolate technical issues with the integration of fraud monitoring technologies
Identify areas for tuning use cases to enhance monitoring value
Engage with Fraud Policy, Operations, Strategy and other teams for early detection, prevention, and mitigation of detected fraudulent activities
Requirements:
5-8 years of relevant experience in SOC
Relevant experience in cyber fraud is a plus
Following Certifications will be considered a plus: [CISSP, GWAPT and CFE]
Bachelor's degree/University degree or equivalent experience
Strong knowledge of current Digital Fraud trends including common Account Takeover techniques
Deep understanding of Application Layer Protocols (HTTP) and OWASP Top 10, including detection of common web application vulnerabilities
Knowledge of cutting-edge threats and technologies affecting Web Applications
Experience with vulnerability assessment as well as penetration testing
Experience with any scripting language and Splunk
Understanding of various operating systems (Windows/UNIX), and web technologies (focusing on Internet security)
Experience with Big Data Technologies, ETL Tools, Data Warehouse and Business Intelligence technologies
Consistently demonstrates clear and concise written and verbal communication
Proven influencing and relationship management skills
Proven strong analytical skills
Attentive to detail and possess a strong investigative mindset
A good team player, self-driven and able to act as individual contributor
Nice to have:
Relevant experience in cyber fraud is a plus
Following Certifications will be considered a plus: [CISSP, GWAPT and CFE]
Experience with vulnerability assessment as well as penetration testing
Experience with any scripting language and Splunk
Understanding of various operating systems (Windows/UNIX), and web technologies (focusing on Internet security)
Experience with Big Data Technologies, ETL Tools, Data Warehouse and Business Intelligence technologies