The Info Security Tech Sr Analyst is an intermediate level position responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.
Responsibilities:
- Assist Security Incident Response Teams with incident investigations and aid in technical risk assessments
- Coordinate with system development and infrastructure units to identify Information Security (IS) risks and the appropriate controls for development, day-to-day operation, and emerging technologies
- Perform regular assessments based on changes in the threat landscape
- Monitor vulnerability assessments and ethical hacks, ensuring that issues are addressed for the applications that they support
- Provide information security support with related activities during systems development (e.g. authentication, encryption)
- Identify and develop new and improved technical procedures and process control manuals
- Identify significant IS threats and vulnerabilities
- Assume informal/formal mentorship role within teams and assist with the coaching and training of new team members
- Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.
Qualifications:
- 5-8 years of relevant experience
- Consistently demonstrates clear and concise written and verbal communication
- Proven influencing and relationship management skills
- Proven analytical skills
Education:
- Bachelor’s degree/University degree or equivalent experience
Key Responsibilities
- Work with production support teams to identify all observability requirements for development, testing and production, including:
- Gather monitoring, analytics requirements, including both dashboard and report visualizations
- Develop a solution using existing tools for meeting these requirements
- Implementing these solutions, including documentation and knowledge transfer.
- Perform post-deployment testing of solutions in individual environments.
- Troubleshooting incidents and problems in a timely resolution as defined in SLAs.
- Capacity, Performance and Stability validations.
Must-have Skills:
3+ years’ relevant industry experience in:
- Bachelor's Degree(Engineering, Mathematics, or IT related field) or equivalent work experience.
- Experience with critical production support, upgrades, and project lifecycle/ SDLC processes.
- Well versed with creating Python scripting and/or Shell scripting.
- Knowledgeable in Observability fundamentals and principles
Desired Skills:
- Well versed in AppDynamics or similar Observability Platform.
- Conversant in Linux-based environments (preferably RHEL) that includes being conversant in terminal commands and developing shell scripts.
- Familiarity with IT Service Management processes and tools such as a Service Now.
- Exposure to one or more of the following:
- Splunk queries/processing language
- Platforms such as Angular or Tomcat
- BI product such as Tableau
- Autosys scheduling and promotion.
- Github/Bitbucket for source code management
No scheduled on call requirements, but some ad-hoc requirements to resolve critical issues during weekends and outside working hours expected.
Job Family Group: Technology
Job Family: Information Security
Time Type: Full time
Citi is an equal opportunity and affirmative action employer. Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.