Jobs and Careers
CI

Information Security Officer, AVP

Citi
New Castle, United Statesfull_timeVerifiedPosted 30 Dec 2024
💰 $144,600/yr($96,400/yr$144,600/yr)

About the role

Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.

As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients’ best interests. As a financial institution that touches every region of the world and every sector that shapes your daily life, our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.

Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work. We value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all. Ideal candidates are innovators with well-rounded backgrounds who bring their authentic selves to work and complement our culture of delivering results with pride. If you are a problem solver who seeks passion in your work, come join us. We’ll enable growth and progress together.

About Our Team:

The Chief Information Security Office (CISO) is home to deeply talented colleagues that work to ensure the safety of Citi's clients', our revenue, our employees and our proprietary data. We manage information security as one end-to end program – one with a clear mandate and accountability. Our mission is a program that is fully anchored to modern control and architectural frameworks, is fully aligned with the enterprise architecture of the firm and is deeply integrated into the sectors and functions.

The Information Security Officer (ISO) is an intermediate level position within Citi’s CISO (Chief Information Security Office) organization and is responsible for leading efforts to prevent, monitor and respond to information/data breaches and cyber-attacks. The overall objective of this role is to ensure the execution of Information Security directives and control programs in alignment with Citi’s Information & Cybersecurity policy.

ISO will act as Cybersecurity subject matter experts for the responsible Business (including Markets, Production Management & Market Data Services) for all Information security activities including but not limited to oversight and management of the IS/Cyber risks at the individual business level as well as wider Citi/CISO level. The ISO will work closely with Markets Sr. ISOs and the overall CISO community of ISOs, Cybersecurity Architects, Cyber Risk Analysts, to oversee and monitor adherence with Citi IS/Cybersecurity Policy and Standards, manage risks & non-compliances and provide advisory on Information & Cybersecurity matters to stakeholders.


Responsibilities:

  • Act as a Trusted Security Advisor to business and technology teams, guiding them on IS/Cyber risks.

  • Appropriately assess risks when business decisions are made, demonstrating consideration for the firm's reputation and safeguarding Citigroup, its clients and assets. 

  • Drive compliance with applicable Information & Cybersecurity laws, rules and regulations, adhering to relevant Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency.

  • Work with business & technology management to drive the information security program and govern risk management activities including CSRA (Cybersecurity Risk Appetite) reporting.

  • Work with the internal Applications Development function to facilitate improvements in both architectural and application security posture.

  • Provide strategic risk guidance for business and technology projects, including the evaluation and recommendation of security controls and corrective actions to mitigate/remediate risks.

  • Manage security incidents and events to protect corporate IT assets, including intellectual property, regulated data and the company's reputation.

  • Facilitate compliance with all Information Security policies, standards and regulations/directiv

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Citi

View company profile →