Jobs and Careers
CI

Cyber Risk Head for Services

Citi
Jersey City, United Statesfull_timeVerifiedPosted 7 Aug 2024
💰 $265,080/yr($176,720/yr$265,080/yr)

About the role

Overview of the Role

Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.

 

As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients’ best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.

 

Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We’ll enable growth and progress together.

The Services Cyber Risk Manager manages a team of Cyber Risk analysts supporting the identification, assessment, and remediation of cyber risks for Services globally. The Cyber Risk Manager for Services will have a lateral and vertical view of risk, end-to-end process mapping and cross-function visibility of product, operations and technology. This role requires someone with extensive knowledge of risk methodologies and the application of risk mitigation techniques.  The incumbent will be required to influence without formal authority, explain detailed and complex scenarios to technical and non-technical stakeholders and ‘own’ outcomes to drive them to a successful conclusion. The incumbent will also have extensive knowledge and experience across the cyber disciplines including controls, incident management, emerging risk, technical architecture, and process orientation.

The Cyber risk manager will lead the Services Cyber risk team in identification, assessment and remediation of risk gaps. The incumbent will have experience in applying current risk methodologies to fluid situations and experience in balance risk decisions against the control's vs ease of use dichotomy.

The Incumbent will have excellent communication skills to articulate complex scenarios to all levels of the organization.  The Services Cyber Risk Manager will also be responsible for monitoring CSRA metrics and helping to define remediation action plans with stakeholders. Furthermore, the incumbent will be responsible for establishing and developing excellent relationships with 2nd and 3rd line business partners.


Responsibilities:

  • Team Management
  • Building and developing an effective team structure
  • Setting meaningful and achievable team goals
  • Assigning and tracking projects effectively
  • Excellent communication skills
  • Act as a Trusted Security Advisor to business and technology teams, guiding them on understanding and addressing cyber risk.
  • Develop relationships with the business, technology, second line, third line, and other CISO teams.
  • Articulate risk and impact to stakeholders (at all levels of the organization) in a clear and succinct manner.
  • Evaluate CISO programs escalations, security incidents, key metrics, and other sources to prepare guidance for stakeholders on risk remediation and reduction prioritization.
  • Review results of cyber security risk appetite non-compliance, understand the gaps identified, their root causes, impacts and provide guidance to responsible stakeholders, as well as insights on key themes and remediation plans to CISO and related governance organizations. 
  • Partner with BFT-ISO leadership to identify and dimension cyber risk, presenting status and actions.
  • Partner with other BFT-ISO leaders, as well as second line of defense to drive security compliance and awareness.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Citi

View company profile →