CrawlJobs Logo

Application Security Tech Lead

https://www.citi.com/ Logo

Citi

Location Icon

Location:
United Kingdom, London

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

The position is a cross-functional role that will be responsible for various Application Security program initiatives. The successful candidate must be an individual who understands modern software development trends, understands engineering-led software security practices, and keeps up with the evolving cyber security threat landscape. The individual will work closely with SDLC program to contribute to defining application security testing standards and policies. Responsibilities include defining testing services and methodologies (be they tool-based and/or manual) in the early SSDLC lifecycle. The primary focus will address testing needs within development organizations striving for continuous deployment and using automated security tooling including SAST, DAST, SCA, ASPM, Secrets Scanning, etc.

Job Responsibility:

  • Establish/manage multiple security programs that support the security testing requirements at the bank
  • Forge and maintain strong working relationships with development functions/teams, product delivery teams, project management, third party management, enterprise architecture, audit teams, etc.
  • Participate in security and technology strategic planning to ensure identified risk governance is incorporated into the CISO enterprise strategy
  • In partnership with business sectors, run delegate action groups to provide recommendations to strengthen development processes and security testing
  • Appropriately assess risk and provide software security advice when business decisions are made
  • Interface with Application Security Program Team to oversee Program Projects and Initiatives and make strategic recommendations to senior manager on standards and policy changes

Requirements:

  • Bachelor's Degree with 4 - 6 years' experience in web application development or application code review
  • Experience as a technical lead or manager
  • Knowledge of cloud computing concepts and DevOps tools (OpenShift, Kubernetes, Docker, Chef, etc)
  • Experience using or testing cloud platforms (AWS, Google, Azure, etc) and security in/of the cloud
  • Understanding of security, web-based and infrastructure vulnerabilities
  • Experience in source code management, build and deployment technologies such as RLM, Ueploy, Jenkins, Artifactory, Maven, GitHub, etc
  • Experience conducting vulnerability assessments and articulating security issues to technical and non-technical audience
  • Understanding of Snyk, Checkmarx, CDXGen, Dependency Track, Fortify, GitHub Advance Security, Sonatype or Black Duck platform is a plus
  • Knowledge of tools and processes used to expose common vulnerabilities and implement countermeasures
  • Excellent communication skills (written and verbal)
  • Demonstrated knowledge of recognized security industry standards and leading practices (e.g., FFIEC, NIST, C2M2, ISO)
  • Relevant professional certifications: GIAC, CISA, CISM, CRISC, CISSP or equivalent desired
  • Effective strategic planning and execution abilities with exceptional planning, organization
  • Advanced and functional understanding of Security industry operations, technologies and processes

Nice to have:

  • Master’s degree preferred
  • Understanding of Snyk, Checkmarx, CDXGen, Dependency Track, Fortify, GitHub Advance Security, Sonatype or Black Duck platform
  • Relevant professional certifications: GIAC, CISA, CISM, CRISC, CISSP or equivalent

Additional Information:

Job Posted:
April 30, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Application Security Tech Lead

Java Backend and Public Cloud Network Tech Lead

The Applications Development Technology Lead Analyst is a senior level position ...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong hands-on Java development experience (Java 11/Spring Boot 3.x)
  • Experience implementing secure REST services/microservices
  • Experience with databases (MongoDB, SQL and Oracle)
  • Experience with Security - OAuth 2.0 and OpenID Connect with JWT Bearer Tokens and Identity Framework. X509 Cert Security / Windows Security with Java applications, trust chain security and SAML (SSO)
  • Experience with logging, analytics and system monitoring solutions
  • Experience with one of the following workflow engines (Camunda, BPM, jBPM)
  • Experience with test driven development and automated UI testing frameworks
  • Familiarity with Domain Driven Design and Event Driven Architecture
Job Responsibility
Job Responsibility
  • Partner with multiple management teams to ensure appropriate integration of functions to meet goals as well as identify and define necessary system enhancements to deploy new products and process improvements
  • Resolve variety of high impact problems/projects through in-depth evaluation of complex business processes, system processes, and industry standards
  • Provide expertise in area and advanced knowledge of applications programming and ensure application design adheres to the overall architecture blueprint
  • Utilize advanced knowledge of system flow and develop standards for coding, testing, debugging, and implementation
  • Develop comprehensive knowledge of how areas of business, such as architecture and infrastructure, integrate to accomplish business goals
  • Provide in-depth analysis with interpretive thinking to define issues and develop innovative solutions
  • Serve as advisor or coach to mid-level developers and analysts, allocating work as necessary
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets
  • Fulltime
Read More
Arrow Right

Apps Sup Tech Lead Analyst

The Apps Sup Tech Lead Analyst is a strategic professional who provides expertis...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years experience
  • Practical problem solving and strategic thinking skills
  • Demonstrated leadership, interpersonal skills and relationship building skills
  • Service oriented attitude
  • Ability to work in a fast-paced environment
  • Experience working or leading requirement gathering efforts for multiple large development projects at one-time
  • Proficient using basic technical tools and systems
  • Good interpersonal and communication skills
Job Responsibility
Job Responsibility
  • Partner with multiple technology teams to ensure appropriate integration of functions to meet goals
  • Identify and define necessary system enhancements
  • Analyze existing system logic, identify problems, and recommend and implement solutions
  • Provide expertise in area and an advanced level of understanding of the principles of apps support
  • Formulate and define systems scope and objectives for complex, high impact application enhancements and problem resolution through in-depth analysis
  • Partner with multiple technology areas and management teams to ensure appropriate integration of functions to meet goals
  • Work closely with Product Owners, Business Analysts and Systems Analysts to determine and document Systems impacts and support requirements
  • Consider the implications of the application of technology to the current environment
  • Identify risks, vulnerabilities and security issues
  • Communicate impact and propose risk mitigation options
  • Fulltime
Read More
Arrow Right

Java Backend and Public Cloud Network Tech Lead

Full Stack Developer within the Network Infrastructure Team, playing a pivotal r...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong hands-on Java development experience (Java 11/Spring Boot 3.x)
  • Experience implementing secure REST services/microservices
  • Experience with databases (MongoDB, SQL and Oracle)
  • Experience with Security - OAuth 2.0 and OpenID Connect with JWT Bearer Tokens and Identity Framework
  • X509 Cert Security / Windows Security with Java applications, trust chain security and SAML (SSO)
  • Experience with logging, analytics and system monitoring solutions
  • Experience with one of the following workflow engines (Camunda, BPM, jBPM)
  • Experience with test driven development and automated UI testing frameworks
  • Familiarity with Domain Driven Design and Event Driven Architecture
Job Responsibility
Job Responsibility
  • Engineering Excellence: Follow engineering best practices and industry standards using modern tooling that enables CI/CD and favors automation, auditability, automated testing, infrastructure and policy as code
  • Design and Build: Deliver tooling and capabilities needed to enable our cloud first strategy
  • Innovate and Automate: Enhance the existing platform to enable a fast and reliable deployment of hybrid cloud resources
  • Partner and Collaborate: Establish partnerships across the broader Citi technology landscape to align with business growth initiatives and priorities
  • Champion Compliance: Drive compliance with applicable standards, policies, and regulations, always assessing risk with Citi's reputation, clients, and assets in mind
  • Fulltime
Read More
Arrow Right

Java Backend and Public Cloud Network Tech Lead

Full Stack Developer within the Network Infrastructure Team to play a pivotal ro...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong hands-on Java development experience (Java 11/Spring Boot 3.x)
  • Experience implementing secure REST services/microservices
  • Experience with databases (MongoDB, SQL and Oracle)
  • Experience with Security - OAuth 2.0 and OpenID Connect with JWT Bearer Tokens and Identity Framework
  • X509 Cert Security / Windows Security with Java applications, trust chain security and SAML (SSO)
  • Experience with logging, analytics and system monitoring solutions
  • Experience with one of the following workflow engines (Camunda, BPM, jBPM)
  • Experience with test driven development and automated UI testing frameworks
  • Familiarity with Domain Driven Design and Event Driven Architecture
Job Responsibility
Job Responsibility
  • Engineering Excellence: Follow engineering best practices and industry standards using modern tooling that enables CI/CD and favors automation, auditability, automated testing, infrastructure and policy as code
  • Design and Build: Deliver tooling and capabilities needed to enable our cloud first strategy
  • Innovate and Automate: Enhance the existing platform to enable a fast and reliable deployment of hybrid cloud resources
  • Partner and Collaborate: Establish partnerships across the broader Citi technology landscape to align with business growth initiatives and priorities
  • Champion Compliance: Drive compliance with applicable standards, policies, and regulations, always assessing risk with Citi's reputation, clients, and assets in mind
  • Fulltime
Read More
Arrow Right

Java Backend and Public Cloud Network Tech Lead

Join Citi's Cloud Technology Services (CTS) team as a Full Stack Developer withi...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong hands-on Java development experience (Java 11/Spring Boot 3.x)
  • Experience implementing secure REST services/microservices
  • Experience with databases (MongoDB, SQL and Oracle)
  • Experience with Security - OAuth 2.0 and OpenID Connect with JWT Bearer Tokens and Identity Framework. X509 Cert Security / Windows Security with Java applications, trust chain security and SAML (SSO)
  • Experience with logging, analytics and system monitoring solutions
  • Experience with one of the following workflow engines (Camunda, BPM, jBPM)
  • Experience with test driven development and automated UI testing frameworks
  • Familiarity with Domain Driven Design and Event Driven Architecture
Job Responsibility
Job Responsibility
  • Follow engineering best practices and industry standards using modern tooling that enables CI/CD and favors automation, auditability, automated testing, infrastructure and policy as code
  • Deliver tooling and capabilities needed to enable our cloud first strategy
  • Enhance the existing platform to enable a fast and reliable deployment of hybrid cloud resources
  • Establish partnerships across the broader Citi technology landscape to align with business growth initiatives and priorities
  • Drive compliance with applicable standards, policies, and regulations, always assessing risk with Citi's reputation, clients, and assets in mind
What we offer
What we offer
  • Global benefits designed to support employee well-being, growth, and work-life balance
  • Fulltime
Read More
Arrow Right

Tech Lead – Scala/Spark

We are seeking a Spark, Big Data - ETL Tech Lead for Commercial Card’s Global Da...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or master’s degree in computer science, Information Technology, or equivalent
  • Minimum 10 years of Proven experience in developing and managing big data solutions using Apache Spark. Having strong hold on Spark-core, Spark-SQL & Spark Streaming
  • Minimum 6 years of experience in leading globally distributed teams successfully
  • Strong programming skills in Scala, Java, or Python
  • Hands on experience on Technologies like Apache Hive, Apache Kafka, HBase, Couchbase, Sqoop, Flume etc.
  • Proficiency in SQL and experience with relational (Oracle/PL-SQL) and NoSQL databases like mongoDB
  • Demonstrated people and technical management skills
  • Demonstrated excellent software development skills. Strong experiences in implementation of complex file transformations like positional, xmls
  • Experience in building enterprise system with focus on recovery, stability, reliability, scalability and performance
  • Experience in working on Kafka, JMS / MQ applications
Job Responsibility
Job Responsibility
  • Lead the design and implementation of large-scale data processing pipelines using Apache Spark on BigData Hadoop Platform
  • Develop and optimize Spark applications for performance and scalability
  • Responsible for providing technical leadership of multiple large scale/complex global software solutions
  • Integrate data from various sources, including Couchbase, Snowflake, and HBase, ensuring data quality and consistency
  • Experience of developing teams of permanent employees and vendors from 5 – 15 developers in size
  • Build and sustain strong relationships with the senior business leaders associated with the platform
  • Design, code, test, document and implement application release projects as part of development team
  • Work with onsite development partners to ensure design and coding best practices
  • Work closely with Program Management and Quality Control teams to deliver quality software to agreed project schedules
  • Proactively notify Development Project Manager of risks, bottlenecks, problems, issues, and concerns
  • Fulltime
Read More
Arrow Right

Apps Dev Tech Lead

The Information Service Group is seeking a Technical Lead to build and manage a ...
Location
Location
Canada , Mississauga
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in designing and delivering ETL solutions on Reference Data Team focused on expanding and maintaining firm centralized reference data platform
  • Knowledge and experience of managing reference data systems
  • Knowledge of Securities and Pricing data
  • Proven proficiency in dealing with complex technical issues across all aspects of the project lifecycle
  • Strong command of ETL architecture and Tools (Abinitio), and working with relational databases
  • Experience of working in a demanding and results driven, time critical environment
  • All potential candidates must be able to work in a dynamic team environment which includes working and managing teams on different technologies (such as Java, Web Services and C#/.NET) and across multiple regions.
Job Responsibility
Job Responsibility
  • The candidate will have an excellent opportunity to extend their current role and responsibility into Strategic Reference Data initiatives
  • Candidate will also get the chance to work with Global tech leads in other project initiative
  • Interaction will be required with the global development team comprising of Business Analysts and also work with vendor teams to coordinate and manage deliverables
  • The candidate will work with complex and variable issues with substantial potential impact, weighing various alternatives and balancing potentially conflicting needs
  • The candidate will be responsible for building and managing senior and junior ETL developers
  • Work directly with global application development teams, Operations teams/partners to successfully integrate
  • Will work with team and manage deliverables, provide architectural guidance, enforce best Citi practices, conduct code reviews, build support processes, and serve as escalation point during production outages
  • Keep up to date with new technologies and their possible adoption within ISG
  • Work on streamlining processes and work closely with other team members, onsite and remote to ensure consistent approach to development/process is used within the application
  • Work with vendor teams to coordinate and manage key projects.
What we offer
What we offer
  • Best-in-class global benefits.
  • Fulltime
Read More
Arrow Right

Tech Lead - Ab Initio / Spark ETL

The Applications Development Senior Programmer Analyst is an intermediate level ...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BS or MS Degree in Computer Science, Information Technology, or equivalent
  • Minimum 10 years of Ab Initio application design and development experience
  • Minimum 6 years of experience in leading globally distributed teams successfully
  • Demonstrated people and technical management skills
  • Strong understanding of ETL analysis and design, frameworks on Ab Initio
  • Experience in developing and managing big data solutions using Apache Spark
  • Strong programming skills in Scala, Java, or Python
  • Hands on experience on Technologies like Apache Hive, Apache Kafka, HBase, Couchbase, Sqoop, Flume etc.
  • Demonstrated excellent software development skills
  • Experience in building enterprise ETL based system with focus on recovery, stability, reliability, scalability and performance
Job Responsibility
Job Responsibility
  • Responsible for providing technical leadership of multiple large scale/complex global software solutions
  • Experience of developing teams of permanent employees and vendors from 5 – 20 developers in size
  • Build and sustain strong relationships with the senior business leaders associated with the platform
  • Design, code, test, document and implement application release projects as part of development team
  • Work with onsite development partners to ensure design and coding best practices
  • Work closely with Program Management and Quality Control teams to deliver quality software to agreed project schedules
  • Proactively notify Development Project Manager of risks, bottlenecks, problems, issues, and concerns
  • Compliance with Citi's System Development Lifecycle and Information Security requirements
  • Oversee development scope, budgets, time line documents
  • Monitor, update and communicate project timelines and milestones
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.