This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Citi's Vulnerability Assessments is responsible for providing vulnerability assessment services to all Citi businesses and technology teams globally. The duties of an Analyst will include manual and automated testing through a defined testing process. The Analyst will be identifying weaknesses and vulnerabilities within the Citi infrastructure and applications. Recommend countermeasures to business contacts and developers to resolve identified issues during ethical hacking. Commercial and open-source vulnerability assessment tools/utilities are leveraged during these assessments. The analyst role is in the Budapest team, which is part of a larger global team responsible for providing vulnerability assessment to all business within Citi.
Job Responsibility:
Providing vulnerability assessment services to Citi businesses globally through a comprehensive testing process
Perform vulnerability scanning tasks by using commercial and open-source vulnerability assessment tools/utilities
Identifying weaknesses and vulnerabilities within the system and proposing countermeasures.
Scanning and discovering rouge hosts, networks, and devices
Testing of the overall security of critical infrastructure components and applications to ensure they comply with internal policies, security architecture best practices, and industry standards
Data-driven reporting information security vulnerabilities to businesses and senior management
Risk based analysis of collected vulnerability data to define focus areas
Requirements:
3-5 years’ work experience in IT
Bachelor’s/University degree or equivalent experience
Proficient with Microsoft Office products including Word and Excel, Power Point
Strong reporting and data visualisation skills
Scripting skills to automate reporting
Being able to identify patterns and trends in the collected vulnerability data
Good communications and presentation skills (written and verbal) with strong sense of responsibility and ability to communicate with all levels of staff and management are also essential
Must have good work ethic to follow documented process
Familiarity with Vulnerability Assessment tools, e.g. Nessus, Qualys, etc
Understanding of OSI model
Knowledge of SQL queries
OS Security, e.g. Unix, Linux, Windows
Understanding of common protocols, e.g. HTTP, SMTP, DNS etc.
Nice to have:
Articulating security issues to technical and non-technical audience
Understanding enterprise networks
What we offer:
Cafeteria Program
Home Office Allowance (for colleagues working in hybrid work models)
Paid Parental Leave Program (maternity and paternity leave)
Private Medical Care Program and onsite medical rooms at our offices
Pension Plan Contribution to voluntary pension fund
Group Life Insurance
Employee Assistance Program
Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
Flexible work arrangements to support you in managing work - life balance
Career progression opportunities across geographies and business lines
Socially active employee communities with diverse networking opportunities