Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
Citi is seeking a highly skilled penetration tester with a focus on vulnerability research, whitebox testing, and source code review to strengthen security across applications and infrastructure.
The role involves manual testing of Web, Mobile, Thick Client, and API assets, developing PoCs, evaluating third-party components, and delivering actionable remediation guidance. On-site, full-time in a fast-paced security team.
This Full time on site position offers great opportunities for career growth.
Working at Citi is far more than just a job. A career with us means joining a team of approximately 219,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your community and make a real impact.
Discover your future at Citi Citi is a preeminent banking partner for institutions with cross-border needs, a global leader in wealth management, and a valued personal bank in its home market of the United States. Citi does business in more than 160 countries and jurisdictions, providing corporations, governments, investors, institutions, and individuals with a broad range of financial products and services.
Citi is seeking a highly skilled and experienced penetration tester with a specialized focus on vulnerability research, third-party component analysis, and advanced whitebox testing methodologies, including comprehensive source code review. The successful candidate will play a critical role in identifying, exploiting, and providing remediation guidance for complex security vulnerabilities within Citi's diverse technology landscape. This role demands deep technical expertise, a proactive approach to security challenges, and the ability to work collaboratively with development teams to enhance the security posture of our applications and infrastructure.
This team specializes in conducting deep-dive penetration testing on a variety of Citi applications (Web, Mobile, Thick Client, and APIs) by manually identifying, researching, validating, and exploiting various known and unknown application security vulnerabilities.
An ideal candidate will have both an engineering and security background. However, irrespective of your current role, if you have a Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience and meet most of the above-listed requirements, then don't miss this opportunity to join our team.
Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.