This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Insider Threat Cyber Senior Analyst is responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy.
Job Responsibility:
monitor, research, assess and analyze alerts from various security tools
design queries, visualizations, use cases and reports leveraging Splunk
recommend and review new use cases for insider threat monitoring
support the development and enhancement of SOC incident response capabilities
follow pre-defined actions to investigate possible security incidents or perform incident response actions
execute daily ad hoc tasks or lead projects as needed
participate in or lead daily and ad-hoc conference calls
create, update or provide process documentation
provide requested evidence for compliance & controls requests
Requirements:
6-10 years of relevant experience
bachelor’s degree or higher (Computer Science or Cyber security preferred) or equivalent work experience
fluency in English
significant experience using Splunk Enterprise to create queries, visualizations, and other reporting functions to identify anomalous activity
excellent knowledge and previous experience with insider threat investigations, network security, TCP/IP, various operating systems (Windows/UNIX), and web technologies (focusing on Internet security)
ability to read and understand packet level data
experience with intrusion detection and prevention systems, network security products (IDS/IPS, firewalls, etc) and host security products (HIPS, AV, EDR, etc)
advanced proficiency with Microsoft Office tools and software
very good analytical skills
Nice to have:
experience with ArcSight, Arbor PeakFlow, Palo Alto Networks
familiarity with IDPS tools, SIEM, anomaly detection systems, firewalls, antivirus systems, user behavior analytics tools, endpoint inspection, and proxy devices
What we offer:
cafeteria program
home office allowance (for colleagues working in hybrid work models)
paid parental leave program (maternity and paternity leave)
private medical care program and onsite medical rooms at offices
pension plan contribution to voluntary pension fund
group life insurance
employee assistance program
access to learning and development programs, online course libraries and upskilling platforms
flexible work arrangements
career progression opportunities
socially active employee communities with diverse networking opportunities
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.