Citi Logo

Citi

Senior Penetration Tester - VP (Hybrid)

Posted 8 Days Ago
Be an Early Applicant
Singapore
Senior level
Singapore
Senior level
The Info Sec Tech Lead Analyst will be responsible for conducting vulnerability assessments on various applications, providing strategic security solutions, and articulating results to stakeholders. Candidates should have a background in both development and security, and be willing to obtain industry-recognized security certifications.
The summary above was generated by AI

Are you interested in growing your career in Cyber Security?

Whether you’re an application developer looking to make the switch into the challenging, yet rewarding, world of information security, or you’re a rock star white-hat hacker, Citi is the place for you. Our team of world class, talented individuals, who are passionate about security, put their skills to the test every day on a global scale. At Citi you’ll be exposed to all sorts of technologies, so hunger for knowledge and research is greatly appreciated and rewarded.

If your background is enterprise software development with expertise in technologies such as: Java, JavaScript (React, Node.js), .NET (ASP.NET, C#, Webflow, MVC, WebAPI), Application Infrastructure (Web/Application Servers, Databases, Middleware Components), and Cloud Computing (Google Cloud Platform, AWS, Azure) running Microservices Architecture based applications on containers, then our application penetration testing team is the right place for you!

If your background is penetration testing with expertise in application security such as: hands-on ethical hacking using security tools (Burp Suite, AppScan), knowledge of OWASP Top 10, CWE/SANS Top 25, Threat Modeling, understanding application architecture, design and functionalities with an interest in performing code reviews, then our application penetration testing team is the right place for you!

This team specializes in conducting deep-dive vulnerability assessments on a variety of Citi applications (Web, Mobile, Thick Client, and APIs) by manually identifying, researching, validating, and exploiting various known and unknown application security vulnerabilities. Core responsibilities include:

  • Act as a subject matter expert in offensive information security performing white-box application reviews, programming, networking, operating systems, and databases.

  • Drive remediation by outlining a defense-in-depth approach to business stakeholders and providing strategic solutions to developers on effective security controls and counter measures.

  • Have strong technical writing and presentation skills to report and articulate the vulnerability assessment results to any audience.

  • Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement and automation.

  • Must have or be willing to obtain Industry-accredited security certifications such as: GIAC GWAPT, GPEN, GXPN, OSCP and/or CISSP

An ideal candidate will have both a development and security background. However, irrespective of your current role, if you have a bachelor’s degree with a minimum of 5 years of experience and meet most of the above listed requirements, then don't miss this opportunity to join our growing team of expert ethical hackers. Apply today!

------------------------------------------------------

Job Family Group:

Technology

------------------------------------------------------

Job Family:

Information Security

------------------------------------------------------

Time Type:

Full time

------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.

View the "EEO is the Law" poster. View the EEO is the Law Supplement.

View the EEO Policy Statement.

View the Pay Transparency Posting

Similar Jobs

18 Hours Ago
Singapore, SGP
Junior
Junior
Fintech • Mobile • Payments • Software • Financial Services
The Service Management Technician supports users with access management issues, resolves IT access tickets in Jira, manages service automation projects, and maintains documentation. This role emphasizes strong communication and customer service skills, problem-solving and technical project management experience.
Top Skills: Atlassian ProductsJIRA
18 Hours Ago
Hybrid
Singapore, SGP
Senior level
Senior level
Fintech • Mobile • Payments • Software • Financial Services
As a Senior Presales Consultant at Wise, you will leverage your expertise to design scalable payment solutions, collaborate across teams, deliver product demonstrations, and engage with both technical and executive audiences in banks and enterprises to drive revenue and enhance Wise's market positioning.
2 Days Ago
Easy Apply
Hybrid
Singapore, SGP
Easy Apply
Mid level
Mid level
Cloud • Information Technology • Security • Software
As a Support Engineer at Sonar, you will assist customers in integrating and deploying our solutions while advocating best software engineering practices. The role involves driving technical issue resolutions, collaborating with sales to enhance customer experience, and providing feedback to product teams to shape product evolution.

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account