Security Incident Management Lead

4 weeks ago


Tampa, United States 00002 Citibank, N.A. Full time

About Citi

Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.

As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients’ best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.

Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We’ll enable growth and progress together.

The Info Sec Prof Lead Analyst is an intermediate level position responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.

Opportunity

Citigroup's Security Operations Center is seeking a highly skilled Security Incident Management Lead to support critical efforts aimed at protecting Citigroup's infrastructure, assets, clients and stakeholders. This is a demanding role with enterprise-wide exposure and responsibility. You will serve both as a subject matter expert and as an ambassador for the security incident management team. You will be assigned to the Security Incident Management Team, and will collaborate closely with a talented cadre of security specialists as they respond to data breaches and other security incidents that impact Citigroup. Your observations and recommendations will impact security decisions across the organization, and play an important part in maturing Citigroup's defense-in-depth cyber operations.

Responsibilities:

As a Security Incident Management Lead, your primary responsibility is to manage risk throughout the security incident lifecycle. Related activities include, but are not limited to:

Work as part of a best in class ‘follow the sun’ security incident response team. Lead and manage incident response activities to ensure that requisite triage, containment, and eradication are completed within targeted timeframes. Ensure that the security incident record is complete, accurate and fit for purpose. Collect and analyze evidence including investigative findings and prepare to coordinate with internal and external compliance and audit personnel. Execute incident response meetings and communicate complex security topics; exhibit good judgment and discretion when initiating escalations to all levels of the organization. Ensure that controls are utilized daily and that non-compliance remediation is addressed by appropriate selection. Provide IS consulting services, including interpreting and/or clarifying information security policy, procedures, standards or concepts. Assist with defining and implementing information security standards to align procedures and practices in pursuit of compliance with Citigroup standards. Validate compliance with information security policies, practices, and procedures, and resolve a variety of information security related issues in coordination with the relevant business(es). Assume both informal and formal mentorship roles within the team, and assist with coaching and training of new team members. Act as an authority for cyber security incidents, with the ability to reliably identify and escalate threats with appropriate urgency. Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.

Requirements:

Stay current with the evolving landscape of cyber threat activities and cybersecurity best practices Work independently with minimal oversight Adapt to changing requirements in a fast paced environment Multitask and meet deadlines despite competing priorities Navigate operational impediments in order to complete time sensitive tasks Identify and document any opportunities for process improvement Be a reliable team player. Practice mutual respect at all times Establish trust and build strong partnerships Resolve conflict in a constructive manner and use as an opportunity to develop team unity Prioritize collective success ahead of individual ambition Strong communicator. Establish clear narratives to describe observations, ideas and recommendations Motivate colleagues and partners to cooperate and support as needed Exert influence, both verbally and in writing, through all levels of the organization

Qualifications:

Relevant professional certifications issued by GIAC, AWS, etc., preferably GCCC, GCIH, CEH, ECSA.  General Industry knowledge of reporting obligations pertaining to local and national laws and regulatory bodies such as OCC, SEC, ECB, MAS Working knowledge of common security models (Defense-in-Depth) and frameworks (MITRE Attack, Cyber Kill Chain, STIX) Working knowledge of VERIS taxonomy Working knowledge of OSI model Working knowledge of security and/or incident response in cloud environments Working knowledge of software development best practices, including agile methods Familiar with Atlassian tools Previous experience working in highly regulated environment Previous experience in a fusion center and/or exposure to large scale incident response Prior experience with information technology and/or information security in the financial services industry Prior experience with cloud environments ( AWS, GCP, Azure) Working knowledge of how computer applications, systems, and networks are managed and secured. Working knowledge of common security threats and vulnerabilities, attack vectors, and adversary tactics, techniques, and procedures (TTP's) Proficient threat intelligence supported by a clear understanding of Cyber Adversarial levels , their motives and capabilities.

Other

Must have flexibility to work outside of normal business hours when necessary

​​​ Education and Experience

Bachelor’s degree in computer science, Computer Engineering, Information Security, Digital Forensics Sciences, or other IT related field however Master's degree is preferred. 5+ years of professional experience in cybersecurity and/or information security or demonstrated equivalent capability. Previous experience with cyber investigations and/or incident response Working Knowledge of CIS Top 18, NIST 800-53 and NIST 800-61 Proven experience of enterprise-wide stakeholder interaction and management

------------------------------------------------------

Job Family Group:

Technology

------------------------------------------------------

Job Family:

Information Security

------------------------------------------------------

Time Type:

Full time

------------------------------------------------------

Primary Location:

Tampa Florida United States

------------------------------------------------------

Primary Location Full Time Salary Range:

$113, - $170,


In addition to salary, Citi’s offerings may also include, for eligible employees, discretionary and formulaic incentive and retention awards. Citi offers competitive employee benefits, including: medical, dental & vision coverage; 401(k); life, accident, and disability insurance; and wellness programs. Citi also offers paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays. For additional information regarding Citi employee benefits, please visit Available offerings may vary by jurisdiction, job level, and date of hire.

------------------------------------------------------

Anticipated Posting Close Date:

Jun 25, 2024

------------------------------------------------------

Citi is an equal opportunity and affirmative action employer.

Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review .



  • Tampa, United States Citi Full time

    **About Citi** Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking,...


  • Tampa, Florida, United States FEDITC - Federal IT Consulting Full time

    FEDITC, LLC is a rapidly growing company that provides support to the Department of Defense and other intelligence agencies globally. FEDITC develops essential national security systems worldwide to directly assist the Warfighter, DoD Leadership, and the nation. We take pride in delivering these services.Overview of the Position:FEDITC is in search of a...


  • Tampa, Florida, United States Feditc LLC Full time

    Job DetailsLevel Senior Job Location MacDill AFB - Tampa, FL Position Type Full Time Education Level 4 Year Degree Description FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, &...

  • Emergency Security

    4 weeks ago


    Tampa, Florida, United States GardaWorld Security Security Services US Full time

    Command Center OperatorCompensation: $22.00 / hourShift:Must have open availability for any shiftThe Command Center Operator will primarily be responsible for receiving non-emergency telephone calls, accessing and manipulating video surveillance and access control systems, and coordinating responses to security and safety incidents. They will provide timely...


  • Tampa, United States Dtcc Full time

    Job Description Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic and encouraging team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We're committed to helping our employees grow and succeed. We believe that you...


  • Tampa, United States JPMorgan Chase & Co Full time

    **JOB DESCRIPTION** As an Incident Manager in the Payments organizations, you will be empowered to lead, manage, and contribute significantly to the success of the team including cross line of business partners. **Job responsibilities**: - Assist in the leadership of North America / Latin American Payment Incident Management Team including staff...

  • Emergency Security

    1 month ago


    Tampa, United States GardaWorld Security Security Services US Full time

    **Command Center Operator** Compensation: $22.00 / hour Shift**:*Must have open availability for any shift** The Command Center Operator will primarily be responsible for receiving non-emergency telephone calls, accessing and manipulating video surveillance and access control systems, and coordinating responses to security and safety incidents. They will...

  • Emergency Dispatcher

    4 weeks ago


    Tampa, United States GardaWorld Security Security Services US Full time

    **Command Center Operator** Compensation: $22.00 / hour Shift**:*Must have open availability for any shift** The Command Center Operator will primarily be responsible for receiving non-emergency telephone calls, accessing and manipulating video surveillance and access control systems, and coordinating responses to security and safety incidents. They will...


  • Tampa, United States GardaWorld Security Security Services US Full time

    **Command Center Operator** Compensation: $22.00 / hour Shift**:*Must have open availability for any shift** Location : Tampa, FL 33610 The Command Center Operator will primarily be responsible for receiving non-emergency telephone calls, accessing and manipulating video surveillance and access control systems, and coordinating responses to security and...


  • Tampa, United States TekStream Solutions Full time

    A TekStream client, one of the largest wellness company in its class, is in search of a Lead Security Technician located in Florida and open to 30% travel to various facilities within their territory. Some of things you’ll be doing…Configuring, maintaining and troubleshooting of enterprise level security system access control, video systems, and...


  • Tampa, United States TekStream Solutions Full time

    A TekStream client, one of the largest wellness company in its class, is in search of a Lead Security Technician located in Florida and open to 30% travel to various facilities within their territory. Some of things you’ll be doing…Configuring, maintaining and troubleshooting of enterprise level security system access control, video systems, and...


  • Tampa, United States Nation Security of South Florida Full time

    **Security Officer's Responsibilities**: - Ensure the safety and security of physical facilities, systems, and personnel - Provide guidance and supervision to personnel working in hazardous areas - Investigate incidents and criminal activities - Conduct surveillance of property and individuals to maintain safety - Monitor and maintain surveillance...

  • Cctv Security Guard

    3 weeks ago


    Tampa, United States Cerberus Risk Management Full time

    Job Summary: **Duties**: - Patrol premises regularly to maintain order and establish a security presence - Monitor and authorize entrance of vehicles or people in the property - Remove wrongdoers or trespassers from the area - Secure all exits, doors, and windows after end of operations - Investigate people for suspicious activity or possessions - Respond...

  • SOC Security Analyst

    4 weeks ago


    Tampa, Florida, United States Saxon Global Full time

    Job Description: Position Title: SOC Security Analyst (Microsoft Server Support, Tanium Security, SIEM) Overview: We are seeking a skilled SOC Security Analyst with specialized expertise in Microsoft server support, Tanium security, and SIEM (Security Information and Event Management) technologies. In this role, you will be responsible for leveraging your...

  • SOC Security Analyst

    2 months ago


    Tampa, United States Saxon Global Full time

    Job Description: Position Title: SOC Security Analyst (Microsoft Server Support, Tanium Security, SIEM) Overview: We are seeking a skilled SOC Security Analyst with specialized expertise in Microsoft server support, Tanium security, and SIEM (Security Information and Event Management) technologies. In this role, you will be responsible for leveraging your...

  • SOC Security Analyst

    1 month ago


    Tampa, United States Saxon Global Full time

    Job Description: Position Title: SOC Security Analyst (Microsoft Server Support, Tanium Security, SIEM) Overview: We are seeking a skilled SOC Security Analyst with specialized expertise in Microsoft server support, Tanium security, and SIEM (Security Information and Event Management) technologies. In this role, you will be responsible for leveraging your...


  • Tampa, United States City of Tampa Florida Full time

    Introduction This is highly responsible work in system and security administration across a variety of computer platforms and departments. Nature Of Work The Lead Cyber Security Operations Analyst plays a crucial role in safeguarding the integrity, confidentiality, and availability of sensitive information within the City of Tampa's digital infrastructure....


  • Tampa, United States Inner Parish Security Corporation Full time

    Unarmed Security Officers **Inner Parish Security Corporation (IPSC)** is recruiting for a security gig! **IPSC** is recruiting for security officers with excellent **customer service** and **security skills** to join our highly-regarded team. **Pay is $14-15 per hour, paid weekly**. **Overnight** **Must be at least 25 years old, have a valid driver's...


  • Tampa, United States Parallel Full time $64,464 - $77,316

    Everyone is welcome here. Each of us is unique, and that’s what makes us amazing. We believe in inclusiveness and celebrating each person’s individuality, because there’s power in bringing people with different points of view and life experiences together. That’s why we provide equal employment opportunities (EEO). All applicants are considered...


  • Tampa, United States Axelon Full time

    Cyber Security professional to support the bank's global Incident Response capabilities. This role requires a heavy focus on all areas of the Security Incident Management lifecycle process, requiring 2-5 years of experience. Candidate will provide oversight of various security incident investigations: including the investigation of suspicious or malicious IT...