Skip to main content

Careers

Penetration Tester

Job Req ID 24776210 Location(s) Budapest, Hungary Job Type Hybrid Job Category Technology
Apply Now

Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.

As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients’ best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.

Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We’ll enable growth and progress together.

Citi's Vulnerability Assessments and Cloud SecOps (VA) is responsible for providing Vulnerability Assessment services to all Citi businesses and technology teams globally. The Penetration Tester role is in the Budapest team which is part of a larger global team responsible for providing vulnerability assessment to all business within Citi.

What you will do:

  • Active collaboration with defensive (Blue) teams, participating and leading purple team exercises.
  • Perform adversary emulation exercises and mimic APT actors.
  • Identifying weaknesses and vulnerabilities within the system and proposing countermeasures.
  • Support the internal Red Team Infrastructure development, and maintenance of the Red Network
  • Testing of the overall security of critical infrastructure components and applications, provide recommendations for corrective actions.
  • Reporting information security vulnerabilities to businesses and vendors.
  • Providing penetration testing services to Citi businesses globally through a comprehensive testing process.
  • Work with industry leading technologies and products.

Your profile:

  • Have at least 2-4 years working relevant experience and at least a Bachelor's Degree.
  • A basic understanding of web application and infrastructure security is a must.

The candidate is expected to already be familiar with the majority of the below tools:

  • Identifying, researching, validating, and exploiting various known and unknown security vulnerabilities on server and client side.
  • Exploitation frameworks, e.g. Metasploit, Cobalt Strike, Sliver, Core Impact, etc.
  • Social Engineering campaigns, e.g. email phishing, phone calls, SET.
  • Vulnerability Assessment tools, e.g. Nessus, Qualys, etc.
  • Penetration testing (application and/or infrastructure).
  • Deep understanding of OSI model.
  • Security devices, e.g. Firewalls, VPN, AAA systems.
  • OS Security, e.g. Unix, Linux, Windows, Cisco, etc.
  • Understanding of common protocols, e.g. LDAP, SMTP, DNS, Routing Protocols.
  • Web application infrastructure, e.g. Application Servers, Web Servers, Databases.

The following requirements are a plus as we are willing to invest in training and development in the security and vulnerability space:

  • Knowledge of tools and processes used to expose common vulnerabilities and implement countermeasures.
  • Experience using open source and vendor vulnerability assessment tools.
  • Understanding enterprise networks.
  • Being familiar with reverse engineering techniques.

In this role you will get a chance to work in a unique environment with diverse technology implementations. Personal development is important, all of our analysts acquire and maintain industry-accredited security certifications (the candidate must have or be willing to obtain the following ones) – GIAC, GDAT, GXPN, GWAPT, GPEN, GCIH, OSCP, OSCE, CREST, GMOB and CEH.

What we can offer you:

By joining Citi Hungary, you will not only be part of a business casual workplace with a hybrid working model (up to 2 days working at home per week), but also receive a competitive compensation package and enjoy a whole host of additional benefits that support you (and your family) to be well, live well and save well:

  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Socially active employee communities with diverse networking opportunities

Alongside these benefits Citi is committed to ensuring our workplace is where everyone feels comfortable coming to work as their whole self every day.  We want the best talent around the world to be energized to join us, motivated to stay, and empowered to thrive. 

Sounds like Citi has everything you need? Then apply to discover the true extent of your capabilities.

#LI-AH4

#LI-BP2

------------------------------------------------------

Job Family Group:

Technology

------------------------------------------------------

Job Family:

Infrastructure

------------------------------------------------------

Time Type:

Full time

------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.

View the "EEO is the Law" poster. View the EEO is the Law Supplement.

View the EEO Policy Statement.

View the Pay Transparency Posting

Apply Now

Saved Jobs

You have no saved jobs

Previously Viewed Jobs

You have no viewed jobs