This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Info Sec Tech Lead Analyst is a senior level professional position responsible for driving efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and activities in alignment with Citi's data security policy
Job Responsibility:
Integrate new, complex security systems into the existing infrastructure
Ensure the confidentiality, integrity, and availability of all security systems
Identify automation and standardization opportunities for information security controls
Resolve vulnerabilities and issues within applications and infrastructure
Install, deploy, enhance, and expand physical and virtual infrastructure for security applications
Troubleshoot performance, application health, and capacity issues
Collaborate with vendor and engineering teams to resolve and document issues
Maintain strategic security strategies incorporating Linux, networking, compliance, and security best practices
Support enterprise-scale logging, analytics, and security tools (e.g., SIEM, Big Data Security Analytics)
Ensure appropriate security and compliance reporting and alerting
Collaborate cross-functionally to onboard and maintain security data feeds, applications, and strategies
Manage compliance, content life cycles, application life cycles, and patching for security applications
Provide ad-hoc senior-level support to security application support groups
Create documentation for handling security operations and high-severity issues
Lead small projects, including coordinating configuration changes and checkouts
Create and maintain operational reports for Key Performance Indicators (KPIs)
Conduct system reviews and manage security content deployments to minimize resource impact and ensure infrastructure stability
Perform assessments, complex troubleshooting, and issue resolution for security systems
Provide cross-functional support for resolving issues related to SIEMs, Threat Detection systems, IDS/IPS sensors, Antivirus servers, and Vulnerability scanners
Requirements:
6+ years of relevant experience
BS/CS - or equivalent experience
Administration of Linux and Splunk
Strong understanding of Linux and Windows Server Environments including command line operations
Proficient in regex for data manipulation and field extraction
Configuration Management tools: Familiar with tools like Ansible, Chef, or Puppet for automating configurations
Cloud platforms: Familiar with AWS, Azure, and GCP
Database knowledge: Familiar database concepts
Network fundamentals: Understanding of TCP/IP, DNS, Telnet, SSH, HTTP, etc.
Proficient in at least one scripting language: Python, Bash, PowerShell for automation and custom tasks
Nice to have:
CISSP
CISA
Splunk Administrator
Splunk Architect
What we offer:
Medical, dental & vision coverage
401(k)
life, accident, and disability insurance
wellness programs
paid time off packages including vacation, sick leave, and paid holidays
discretionary and formulaic incentive and retention awards
Welcome to CrawlJobs.com – Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.
We use cookies to enhance your experience, analyze traffic, and serve personalized content. By clicking “Accept”, you agree to the use of cookies.