Citigroup Inc. | Vulnerability Assessments

1 week ago


Singapore Citigroup Inc. Full time

Duties include being the functional lead for the Adversary Emulation program within Citi’s Red Team. Functional leads develop, design, and execute services within the Red Team as well as work and help other members perform offensive security services. The successful candidate will have verifiable experience in adversary emulation (Red Team), regulatory red team testing (TLTP), and extensive offensive security experience, and understanding risk to the organization and how to properly mitigate that. This role will be one of the keys to maturing out the overall red team program within Citi and needs to understand not only technical capabilities but how to apply these to an organization while recognizing operational requirements.
Responsibilities:
Design and develop adversary emulation exercises (internal, vendor driven, and regulatory)
Developing and applying documentation, processes, and procedures to a program
Experience leveraging advanced exploits within an environment
Conducting Vulnerability Assessments and Penetration Testing (application and/or infrastructure) and articulating security issues to technical and non-technical audience
Identifying, researching, validating, and exploiting various, known, and unknown security vulnerabilities on the server and client side
Red Team testing tools, e.g., Cobalt Strike, Red Team Toolkit.
Vulnerability Assessment tools, e.g., Nessus, Qualys, etc.
Exploitation frameworks, e.g., Metasploit, CANVAS, Core Impact
Social Engineering campaigns, e.g., email phishing, phone calls, SET
Deep understanding of OSI model
Security devices, i.e., Firewalls, VPN, AAA systems
OS Security, e.g., Unix/Linux, Windows, OSX
Understanding of common protocols, e.g., LDAP, SMTP, DNS
Web application infrastructure, e.g., Application Servers, Web Servers, Databases
Web development and programming languages, e.g., Python, Perl, Ruby, Java, .Net
Direct the development and delivery of secure solutions by coordinating with business and technical contacts
Appropriately assess risk when business decisions are made, demonstrating consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.
Qualifications:
7+ years of relevant experience
Proven experience with scripting and programming languages preferred
Proven experience working with regulatory red team frameworks (World wide)
Advanced Microsoft Office skills preferred
Demonstrated ability to collaborate with a variety of analytical groups and service delivery organizations
Advanced analytical and problem solving skills
Consistently demonstrates clear and concise written and verbal communication
Certifications if possible PNPT, OSCP, OSCE, GXPN, GPEN, GCIH, GWAPT, GCFA, or CISSP.
Proficient in interpreting and applying policies, standards and procedures
Demonstrated ability to remain unbiased in a diverse working environment
Education:
Bachelor’s degree/University degree or equivalent experience
Master’s degree preferred
Job Family Group:
Technology
Job Family:
Information Security
Time Type:
Full time
Citi is an equal opportunity and affirmative action employer.
Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review
Accessibility at Citi .
View the
EEO is the Law
poster. View the
EEO is the Law Supplement .
View the
EEO Policy Statement .
View the
Pay Transparency Posting .
#J-18808-Ljbffr



  • Singapore Citigroup Inc. Full time

    The Role: The Vulnerability Assessments Analyst - Red Team, A VP will participate in the Adversary Emulation program by emulating cyber and criminal threat actors targeting Citi. The candidate will conduct Intelligence-led Red Team Testing and Penetration Testing targeting people, process, and technology. The candidate may also conduct regulatory driven Red...


  • Singapore Citigroup Inc. Full time

    Whether you’re at the start of your career or looking to discover your next adventure, your story begins here. At Citi , you’ll have the opportunity to expand your skills and make a difference at one of the world’s most global banks. We’re fully committed to supporting your growth and development from the start with extensive on-the-job training and...


  • Singapore Citigroup Inc. Full time

    The Credit Portfolio Senior Analyst is an intermediate-level position responsible for conducting credit reviews, credit approval and monitoring the portfolio to identify credit migration in coordination with the Risk Management team. The overall objective of this role is to manage Citi's portfolio exposure to clients and counterparties globally....


  • Singapore Citigroup Inc. Full time

    Whether you’re at the start of your career or looking to discover your next adventure, your story begins here. At Citi , you’ll have the opportunity to expand your skills and make a difference at one of the world’s most global banks. We’re fully committed to supporting your growth and development from the start with extensive on-the-job training and...


  • Singapore Citigroup, Inc. Full time

    The Fund Accounting Analyst is an intermediate level position responsible for participating in a variety of fund valuation activities in coordination with the Operations - Transaction Services team. The overall objective of this role is to assist in the calculation of daily and periodic Net Asset Valuations (NAVs) for funds and the distribution of...


  • Singapore Citigroup Inc. Full time

    At Citi, we get to connect millions of people across hundreds of cities and countries every day. And we've been doing it for more than 200 years. We do this through our unparalleled global network. We provide a broad range of financial services and products to our clients – whether they be consumers, corporations, governments, or institutions – to...

  • Citigroup Inc. | VP

    1 week ago


    Singapore Citigroup Inc. Full time

    About the job If you are passionate and curious about security, and want to use your offensive security skills to help keep our firm’s application and infrastructure safe, we want to speak with you. Who You Are You are talented in solving problems and identifying security weaknesses, and you have experience collaborating with engineers who remediate the...


  • Singapore Citigroup Inc. Full time

    Shape your Career with Citi The Private Bank is dedicated to serving the world’s wealthiest individuals and their families. From 52 locations across 20 countries, we offer our services to more than 14,000 ultra-high net worth clients from nearly 100 nations. Our clients include entrepreneurs, business leaders, executives, their heirs and families, whom we...


  • Singapore Citigroup Inc. Full time

    Citi’s Markets business provides world-class solutions and an unmatched global presence. We serve corporates, institutional investors and governments from trading floors in almost 80 countries. The strength of our underwriting, sales and trading and distribution capabilities span asset classes and currencies, providing us with an unmatched ability to meet...


  • Singapore Citigroup Inc. Full time

    At Citi , we get to connect millions of people across hundreds of cities and countries every day. And we've been doing it for more than 200 years. We do this through our unparalleled global network. We provide a broad range of financial services and products to our clients – whether they be consumers, corporations, governments or institutions – to...


  • Singapore Citigroup Inc. Full time

    The Wealth Products and Operations Control Testing Team is responsible for the testing of controls that are designed and owned by Citi’s Wealth Product and Operations departments. The Citi Wealth business delivers a comprehensive wealth solution to clients across the wealth continuum, with integrated advice and execution, as well as traditional and...


  • Singapore Citigroup, Inc. Full time

    AVP, Senior Auditor - IA Cross Markets Risk and Controls Insights (Hybrid)Whether you're at the start of your career or looking to discover your next adventure, your story begins here. At Citi , you'll have the opportunity to expand your skills and make a difference at one of the world's most global banks. We're fully committed to supporting...


  • Singapore Citigroup Inc. Full time

    At Citi , we get to connect millions of people across hundreds of cities and countries every day. And we've been doing it for more than 200 years. We do this through our unparalleled global network. We provide a broad range of financial services and products to our clients – whether they be consumers, corporations, governments or institutions – to...


  • Singapore Citigroup, Inc. Full time

    We live in an increasingly complex world. Companies these days are either born global or are going global at record speed. Business and geopolitics are forging an entirely new dynamic and consumers now expect financial services to be a seamless part of their digital lives. Citi is a bank that's uniquely positioned for this moment. Through our vast...


  • Singapore Citigroup Inc. Full time

    The Wealth Products and Operations Control Testing Team is responsible for the testing of controls that are designed and owned by Citi’s Wealth Product and Operations departments. The Citi Wealth business delivers a comprehensive wealth solution to clients across the wealth continuum, with integrated advice and execution, as well as traditional and...


  • Singapore Citigroup Inc. Full time

    The Contact Center Project & Analytics Manager is responsible to perform client process review & enhancement, project initiation and implementation, data collection & analytics, research and workflow analysis of departmental systems, workforce, client experience and procedures in coordination with the customer service function. Duties would also include...


  • Singapore Citigroup Inc. Full time

    Citi Markets Operations is currently at a pivotal point in its evolution and journey to implement a target operating model. We take pride and are passionate about our People and our culture. We are invested in people and their development. We are transforming and simplifying our operating model creating an exciting environment which encourages diversity of...


  • Singapore Citigroup Inc. Full time

    Wealth Credit Management (WCM) at Citi is a newly formed business line to provide integrated end to end credit underwriting, transaction, and portfolio management in partnership with all the origination businesses of the Private Bank and Wealth Management of Citi. We are looking to hire an experienced professional to contribute to the Credit Management Team...


  • Singapore Citigroup Inc. Full time

    At Citi , we get to connect millions of people across hundreds of cities and countries every day. And we've been doing it for more than 200 years. We do this through our unparalleled global network. We provide a broad range of financial services and products to our clients – whether they be consumers, corporations, governments or institutions – to...


  • Singapore Citigroup Inc. Full time

    Whether you’re at the start of your career or looking to discover your next adventure, your story begins here. At Citi , you’ll have the opportunity to expand your skills and make a difference at one of the world’s most global banks. We’re fully committed to supporting your growth and development from the start with extensive on-the-job training and...