AVP - Applications Vulnerability Assessment Sr. Analyst (Hybrid) ROHQ - Global Functions Technology
City of Taguig, Philippines
Job Req ID 22593414Overview
Citi’s technology team is growing at lightning speed, and we’re looking for talented technologists to help build the future of global banking. Our teams are creating innovations used across the globe – we’re changing the way people bank and how the world does business. Citi’s technology team supports business operations in 100+ countries, across multiple lines of business spanning both Institutional and retail businesses. The group works to optimize the IT environment by standardizing production platforms, reducing complexity, and introducing innovative solutions that provide new business capabilities, reduce total cost of ownership, and create a competitive advantage for Citi. Join an environment with a laser focus on growth and progress, and take your career to the next level through the power of Citi’s unmatched globality and vast expertise.
Success Profile
As one of the world’s most global banks, Citi gives you the tools to be a trailblazer. We’re not just building technology, we’re building the future of banking. With thousands of employees located around the globe, we are an international team encompassing a broad range of teams, roles, and cultures, and we invite you to come and join us!
- Creative
- Analytical
- Collaborative
- Productive
- Adaptable
- Relationship Expertise
Responsibilities
The Apps Support/ Vulnerability Sr Analyst is a seasoned professional role. Applies in-depth disciplinary knowledge, contributing to the development of new techniques and the improvement of processes and work-flow for the area or function. Integrates subject matter and industry expertise within a defined area. Requires in-depth understanding of how areas collectively integrate within the sub-function as well as coordinate and contribute to the objectives of the function and overall business. Evaluates moderately complex and variable issues with substantial potential impact, where development of an approach/taking of an action involves weighing various alternatives and balancing potentially conflicting situations using multiple sources of information. Requires good analytical skills in order to filter, prioritize and validate potentially complex and dynamic material from multiple sources. Strong communication and diplomacy skills are required. Regularly assumes informal/formal leadership role within teams. Involved in coaching and training of new recruits. Significant impact in terms of project size, geography, etc. by influencing decisions through advice, counsel and/or facilitating services to others in area of specialization. Work and performance of all teams in the area are directly affected by the performance of the individual.
Responsibilities:
- The Application Vulnerability Senior Analyst provides technical and business support for users of Citi Applications. This includes providing quick resolutions to application vulnerability (VA/CVM/ SBT) issues, driving stability, efficiency and effectiveness improvements to help us and the business succeed.
- Maintains applications vulnerability plan that have completed the development stage/ CART process and are running in the daily operations of the firm.
- Manages, maintains and supports vulnerability tester to do AVA/LVA/CIVA/IVA. Connects with vendors, focusing on stability, quality and functionality against service level expectations.
- Regularly monitors the VA schedule and works with application manager and vendor to have VA scheduled on time.
- Develop and maintain vulnerability assessment documentation.
- Identifies ways to improve resolutions to vulnerabilities found in the application.
- Assess risk and impact of application vulnerability issues and escalate to business and technology management in a timely manner.
- Ensures that VA process and monitoring is in place and functioning correctly
- Formulates and defines scope and objectives for complex application vulnerability issues and problem resolution
- Reviews and develops issues resolution plan aliasing with App Manager.
- Partners with appropriate development and production support areas to prioritize vulnerability fixes and support tooling requirements.
- Participate in application releases, from development, testing and deployment into production.
- Engages in open issues analysis to ensure successful plan to remediate the issues
- Identifies risks, vulnerabilities and security issues; communicates impact.
- Ensures essential procedures are followed and helps to define operating standards and processes.
- Act as a liaison between App manager/vendors, interfacing internal technology groups like SSO.
- Expected to be able to raise problems to appropriate technology and business teams, while adhering to Service Level Agreements.
- Acts as advisor or coach to others with focus on VA.
- Provides evaluative judgment based on analysis of factual information in complicated and unique situations.
- Directly impacts the business by ensuring the quality of work provided by self and others; impacts own team and closely related work teams.
- Exhibits sound and comprehensive communication and diplomacy skills to exchange complex information.
- Active involvement in and ownership of Support Project items, covering Stability, Efficiency, and Effectiveness initiatives.
- Performs other duties and functions as assigned.
- Has the ability to operate with a limited level of direct supervision.
- Can exercise independence of judgement and autonomy.
- Acts as SME to senior stakeholders and /or other team members.
- Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.
Qualifications:
- 5-8 years experience in an Application Vulnerability Assessment/ Vulnerability testing/ Ethical hacker/ Penetration testing role
- Familiar and good understanding of top 10 OWASP issues and path to resolutions
- Ability to act as champion to drive vulnerability assessment issues
- Good understanding to static code analysis, penetration testing
- Good Understanding of agile processes like Kanban/ Scrum
- Effective written and verbal communications including ability to explain technical issues in simple terms that non-IT staff can understand.
- Consistently demonstrates clear and concise written and verbal communication skills
- Ability to communicate appropriately to relevant stakeholder
- Demonstrated analytical skills
- Issue tracking and reporting using tools
- Knowledge/ experience of problem Management Tools.
- Experience with some programming languages and willingness/ability to learn.
- Advanced execution capabilities and ability to adjust quickly to changes and re-prioritization
- Effectively share information with other support team members and with other technology teams
- Ability to plan and organize workload
Education:
- Bachelor’s/University degree or equivalent experience
#hybrid
Exposure to penetration testing, or CREST certification will be a plus
Prior experience in Application support and maintenance will be advantages.
-------------------------------------------------
Job Family Group:
Technology-------------------------------------------------
Job Family:
Applications Support------------------------------------------------------
Time Type:
Full time------------------------------------------------------
Citi is an equal opportunity and affirmative action employer.
Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.
View the "EEO is the Law" poster. View the EEO is the Law Supplement.
View the EEO Policy Statement.
View the Pay Transparency Posting
-
Join our team
of 220,000+
strong diverse employees -
Socially minded employees volunteering in communities across 90 countries
-
Meaningful career opportunities thanks to a physical presence in over 95 markets
We foster a culture that embraces all individuals and encourages diverse perspectives, where you can make an impact and grow your career. At Citi, we value colleagues that demonstrate high professional standards, a strong sense of integrity and generosity, intellectual curiosity, and rigor. We recognize the importance of owning your career, with the commitment that if you do, we promise to meet you more than half way.
Innovation Through Diversity
-
Citi has an immense network with over 200,000 colleagues across 6 continents in over 100 countries and has been able to serve over 200 million clients for over 200 years. Gain insights into how our firm draws from a diverse pool of ideas and talent to transform ideas into strategies and deliver diverse opportunities to our colleagues.
Success Stories
Featured Career Areas
Saved Jobs
You have no saved jobs
Previously Viewed Jobs
You have no viewed jobs