Senior Application Security Analyst

3 days ago


Singapore Citi Full time
Senior Application Security Analyst (VP)

Citi is a global leader in financial services, and we're seeking a highly skilled Senior Application Security Analyst to join our team. As a Senior Application Security Analyst, you will play a critical role in ensuring the security and integrity of our applications and systems.

Key Responsibilities:
  • Perform analysis and execution of scans for Software Composition Analysis findings, mobile scanning vulnerabilities, and other security threats.
  • Review and validate automated testing results and prioritize actions that resolve issues based on overall risk.
  • Perform manual source code review for security vulnerabilities and analyze source code to mitigate identified weaknesses and vulnerabilities within the system.
  • Identify opportunities to automate and standardize information security controls and for the supported groups.
  • Collaborate with application teams to ensure that any identified security vulnerabilities are remediated in a timely manner.
  • Manage and execute security assessments for multiple projects simultaneously and ensure project timelines are met.
  • Research and explore new testing tools and methodologies.
  • Act as a mentor to junior team members and actively participate in research and knowledge sharing discussions with broader Vulnerability Assessments organization.
Requirements:
  • At least 5 years of relevant experience in web development, source code review, or application security testing.
  • Basic understanding of application security and associated vulnerabilities.
  • Development background in Java/J2EE, C#,.NET in an enterprise environment.
  • Development experience with modern JavaScript frameworks, Python, JSON, Lambda.
  • Good understanding of the Software Development Life Cycle - including unit testing, code scanning.
  • Experience using ALM and CICD tools like Bitbucket, GitHub, Jenkins, udeploy, BMC RLM, tekton or related tools in an agile methodology.
  • Familiarity with static analysis (source code review) and application pen-testing techniques.
  • Experience using commercial enterprise automated security testing tools such as Checkmarx, Snyk, AppScan Source, Fortify, Veracode, Blackduck, Sonatype, Contrast, Seeker, NowSecure.
  • Knowledge with mobile platforms and languages including Android, Kotlin, Objective-C, Swift.
  • Experience using or testing cloud platforms (AWS, Google, Azure, etc.).
  • Proven influencing and relationship management skills.
  • Consistently demonstrates clear and concise written and verbal communication.
  • Professional certifications, such as CISSP, CSSLP, GIAC, CEH, or willingness to obtain.
Education:
  • Bachelor's degree in technology, Computer Science, Engineering, or related field.
  • Master's degree is a plus.
About Citi:

Citi is a preeminent banking partner for institutions with cross-border needs, a global leader in wealth management and a valued personal bank in its home market of the United States. Citi does business in more than 160 countries and jurisdictions, providing corporations, governments, investors, institutions, and individuals with a broad range of financial products and services.

Citi is an equal opportunity and affirmative action employer. Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.



  • Singapore MyCareersFuture Full time

    Roles & Responsibilities Summary A pivotal role in the APAC Security Operations Center (SOC) responsible for operation, maintenance, and monitoring of Security portfolio. This role performs security event management functions - monitoring, detection, triage of security events and alerts in SIEM and associated monitoring systems. Provides mentoring,...


  • Singapore LUMEN TECHNOLOGIES SINGAPORE PTE. LTD. Full time

    Roles & ResponsibilitiesSummaryA pivotal role in the APAC Security Operations Center (SOC) responsible for operation, maintenance, and monitoring of Security portfolio. This role performs security event management functions - monitoring, detection, triage of security events and alerts in SIEM and associated monitoring systems. Provides mentoring, training...


  • Singapore AIA Singapore Private Limited Full time

    At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone. As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier,...


  • Singapore UNITED OVERSEAS BANK LIMITED Full time

    Job Title: Cyber Security Senior AnalystUnited Overseas Bank Limited is seeking a highly skilled Cyber Security Senior Analyst to join our team. As a key member of our Security Operation Center, you will play a critical role in protecting our organization from cyber threats.Key Responsibilities:Perform in-depth analysis of security incidents and events to...


  • Singapore UNITED OVERSEAS BANK LIMITED Full time

    Job Title: Cyber Security Senior AnalystUNITED OVERSEAS BANK LIMITED is seeking a highly skilled Cyber Security Senior Analyst to join our team. As a key member of our Security Operation Center (SOC), you will play a critical role in protecting our organization from cyber threats.Key Responsibilities:Perform in-depth analysis of security incidents and events...


  • Singapore Citi Full time

    Senior Application Security Analyst (VP) As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and, in our clients', best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission...


  • Singapore MyCareersFuture Full time

    About the RoleThe National Institute of Education (NIE) is seeking a highly skilled Senior IT Security Analyst to join its Division of Academic Computing & Information Services (ACIS). As a key member of the team, you will play a critical role in ensuring the security and integrity of the Institute's IT systems and data.Key ResponsibilitiesLead incident...


  • Singapore MyCareersFuture Full time

    Roles & Responsibilities Senior Application Security Analyst (VP) As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and, in our clients, best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology ...

  • Security Analyst, IT

    2 weeks ago


    Singapore UST GLOBAL (SINGAPORE) PTE. LIMITED Full time

    Roles & ResponsibilitiesWe are seekiSOC L1 Engineer who will be part of our growing Global Operations & Delivery team, which monitors, investigates, and resolves security incidents, violations, and suspicing a ous activities. Our global Operations group takes innovative approaches and uses the most cutting-edge technologies to transform the operations of our...


  • Singapore NANYANG TECHNOLOGICAL UNIVERSITY Full time

    About the RoleWe are seeking a highly skilled Senior IT Security Analyst to join our team at Nanyang Technological University. As a key member of our Information Security team, you will play a critical role in protecting our digital assets and ensuring the confidentiality, integrity, and availability of our data.Key ResponsibilitiesIncident Response...


  • Singapore Citi Full time

    About Citi:Citi is a leading global bank with a presence in over 160 countries and jurisdictions. We provide a wide range of financial products and services to consumers, corporations, governments, and institutions. Our goal is to deliver exceptional customer experiences and drive business growth while maintaining the highest standards of integrity and...

  • Security Analyst

    2 weeks ago


    Singapore MyCareersFuture Full time

    Roles & Responsibilities Requirement Minimum of (3) three years direct Information Security experience in a security engineer, architect, consultant or a similar role, preferably with incident management experience in a SOC environment. Strong practical experience in Cyber security: Cyber kill chain, TTP, threat intelligence, malware triage. Strong...

  • IT Security Analyst

    4 months ago


    Singapore INNOVATIVE CONSULTING PTE. LTD. Full time

    Roles & ResponsibilitiesThe security analyst is responsible for analysing cybersecurity events, improving threat detection capabilities and procedures. If an event results in a security incident, the analyst will work with the relevant stakeholders to respond and contain the incident.Key Responsibilities:- Improving threat detection capabilities, driving...


  • Singapore LYNEER CORP (SINGAPORE) PTE. LTD. Full time

    Job DescriptionLYNEER CORP (SINGAPORE) PTE. LTD. is seeking a highly skilled Senior Application System Analyst to join our team.Key Responsibilities:Collaborate with Head Office, regional business sponsors, and IT stakeholders to create a technology roadmap that meets program objectives.Support the setup of IT workstreams for Wholesale Banking, Private...


  • Singapore KATZ SECURITY PTE. LTD. Part time

    Katz Security Pte Ltd looking to recruit Security Supervisors (SS) and Senior Security Officers (SSO) for the following sites:1) Night Shift Security Supervisor (SS) needed at Government Building located within walking distance of Paya Lebar MRT Station.  Starting salary at $3,300 per month2) Senior Security Officer (SSO) needed at Government Building...


  • Singapore TD Bank Group Full time

    Job Title: Information Security AnalystWe are seeking a highly skilled Information Security Analyst to join our team at TD Bank Group. As an Information Security Analyst, you will play a critical role in ensuring the security and integrity of our systems and data.Job Summary:The Information Security Analyst will be responsible for:Conducting real-time...

  • Security Analyst

    2 weeks ago


    Singapore R SYSTEMS (SINGAPORE) PTE LIMITED Full time

    Roles & ResponsibilitiesRequirement Minimum of (3) three years direct Information Security experience in a security engineer, architect, consultant or a similar role, preferably with incident management experience in a SOC environment. Strong practical experience in Cyber security: Cyber kill chain, TTP, threat intelligence, malware triage. Strong...


  • Singapore CITIBANK N.A. Full time

    About the RoleCitibank N.A. is seeking a highly skilled and experienced Senior Application Security Specialist to join our team in Singapore. As a key member of our Application Penetration Testing team, you will be responsible for conducting vulnerability assessments on various Citi applications, identifying and exploiting security vulnerabilities, and...


  • Singapore STELLAR LINK PARTNERS PTE. LTD. Full time

    About the RoleWe are seeking a highly skilled Senior Cyber Security Operations Analyst to join our team at Stellar Link Partners Pte. Ltd. as a Cyber Security Operation Center Senior Analyst AVP. This is a full-time and permanent position.Key Responsibilities:Lead the Hunt: Spearhead proactive threat detection and analysis, sifting through data (alerts,...


  • Singapore MyCareersFuture Full time

    About the RoleThe National Institute of Education (NIE) is seeking a highly skilled Senior IT Security Analyst to join our Division of Academic Computing & Information Services (ACIS). As a key member of our team, you will play a critical role in ensuring the security and integrity of our IT systems and data.Key ResponsibilitiesIncident Response...