Job Description:
Citi as the leading global bank is present in 100+ countries, 55 of which are in Europe, Middle East and Africa (EMEA) region. Citi prides itself on being a diverse meritocracy where talent is recognized and promoted. Citi hosts its most critical data within the corporate network and as such Data Loss Protection security forms a significant control within our security posture. Citi’s engineering is responsible for strategy, engineering and delivery of core security products covering all of Citi’s enterprise environments.
Citi Data Security engineering is responsible for strategy, engineering and delivery of core security products covering all of Citi’s enterprise environments. Reporting to the global owner for Data Loss Protection, the candidate's primary responsibility will be to engineer DLP focused tools, products, standards and solutions within the Data Security domain. Design, develop, test, customize and troubleshoot DLP security systems and solutions to ensure protection of IT assets, business functions and requirements. Additional responsibilities include the evaluation of cutting edge DLP technologies, determining their suitability to solve enterprise technology challenges that will deliver competitive advantages for Citi. The candidate must be familiar with information security concepts and products and have existing knowledge of cloud based services and concepts as they related to DLP. Work with all disciplines and product owners to integrate DLP security solutions with existing Citi and future Citi computing environments. Ensure that all security products meet or exceed Citi internal and regulatory requirements. Produce documentation of processes and procedures for the usage of the toolset. Follow the Technology Development Life Cycle in the development of all security tools.
Responsibilities:
Design, development and maintain Data Loss Protection security related toolsets and solutions specific to cloud and SASE DLP solutions.
Develop SASE DLP engineering and product development.
Drive the integration of on-prem and SASE DLP infrastructures.
Develop in-line toolsets (CASB) to execute DLP inspection of SaaS repositories and file stores.
Work with engineering and architecture teams to identify business opportunities for cloud based DLP solutions.
Provide 3rd level support for owned security products
Contribute and lead where required on DLP security related matters outside of current scope
Collaborate with peers and operational partners on all aspects of DLP security
Drive the adoption of security toolsets and assist with deployment projects
Provide the best in class security products
Identify opportunities to tighten security posture, identify and keep track of deficiencies
Identify problem causality, business impact and root causes
Identify controls and processes that can be automated
Coordinate risk and control matters relating to the security and operating postures
Serve as a technology subject matter expert for internal and external stakeholders and provide direction for all firm mandated controls and compliance initiatives, all projects within the group and in creating a technology domain road-map
Ensure that all integration of functions meet business goals
Define necessary system enhancements to deploy new products and process enhancements
Recommend product customization for system integration
Exhibit knowledge of how own specialty area contributes to the business and apply knowledge of competitors, products and services
Advise or mentor junior team members
Impact the engineering function by influencing decisions through advice, counsel or facilitating services
Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgement regarding personal behaviour, conduct and business practices, and escalating, managing and reporting control issues with transparency
Work as a partner to ensure system hygiene and proper vulnerability management.
Qualifications:
6+ years of relevant experience in an Engineering role
Fluent English knowledge
Strong working knowledge of cloud DLP technologies as applied to O365
Proven experience with Secure Access Service Edge (SASE) DLP implementations.
Proven experience with enterprise class Data Loss Protection technologies.
Proven experience with integrating DLP technologies with cloud SaaS platforms.
Experience of migrating large scale infrastructures.
Knowledge of risk based DLP technology approaches and their integration into enterprise ecosystems.
Sound security engineering principles to serve as background to understanding the working of the systems and controls that are in place
Proficiency in platform security concepts, granular understanding of platform mechanics and platform interoperability
Affinity to produce high quality documentation of processes and procedures for the usage of the toolset
Excellent analytical, organizational and communication skills
Experience working in Financial Services or a large complex and/or global environment
Consistently demonstrates clear and concise written and verbal communication
Demonstrated analytic/diagnostic skills
Ability to work in a matrix environment and partner with virtual teams
Ability to work independently, multi-task, and take ownership of various parts of a project or initiative
Ability to work under pressure and manage to tight deadlines or unexpected changes in expectations or requirements
Proven track record of operational process change and improvement
Able to manage expectations up and down the management chain
Professional and assertive communication
Must be able to work independently as well as in mixed team environments
Ability to follow issues through to resolution on a timely basis
Ability to work under pressure and with tight deadlines
Ability to deliver quality output
Attention to detail
Strong problem solving initiative
Motivated individual and customer focused
Strong adherence to control framework, internal and regulatory requirements
Understanding of testing frameworks and QA
Proficient in standard Operating Systems including Windows and Linux, and coding in Powershell and Bash
Education:
Minimum Bachelor’s degree/University degree or equivalent experienceJob Family Group:
Technology
Job Family:
Systems & Engineering
Time Type:
Full time
Primary Location:
Tampa Florida United States
Primary Location Salary Range:
$113,840.00 - $170,760.00
Citi is an equal opportunity and affirmative action employer.
Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Citigroup Inc. and its subsidiaries ("Citi”) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi (https://www.citigroup.com/citi/accessibility/application-accessibility.htm) .
View the "EEO is the Law (https://www.dol.gov/sites/dolgov/files/ofccp/regs/compliance/posters/pdf/eeopost.pdf) " poster. View the EEO is the Law Supplement (https://www.dol.gov/sites/dolgov/files/ofccp/regs/compliance/posters/pdf/OFCCP_EEO_Supplement_Final_JRF_QA_508c.pdf) .
View the EEO Policy Statement (http://citi.com/citi/diversity/assets/pdf/eeo_aa_policy.pdf) .
View the Pay Transparency Posting (https://www.dol.gov/sites/dolgov/files/ofccp/pdf/pay-transp_%20English_formattedESQA508c.pdf)
Citi is an equal opportunity and affirmative action employer.
Minority/Female/Veteran/Individuals with Disabilities/Sexual Orientation/Gender Identity.