Enable job alerts via email!

Vulnerability Assessments Analyst - Red Team Dev Sec Ops - AVP

Citigroup Inc.

Singapore

On-site

USD 80,000 - 120,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as a Vulnerability Assessments Analyst, where you will be instrumental in designing and managing Red Team infrastructure. This dynamic role not only involves hands-on experience with cutting-edge technology but also offers exposure to complex Red Team operations in a fast-paced environment. You'll be expected to simplify designs and automate processes, ensuring the security and efficiency of critical systems. If you thrive under pressure and have a passion for information security, this is the perfect opportunity to make a significant impact in a collaborative team setting.

Qualifications

  • 4+ years of experience in deploying and orchestrating virtualized systems.
  • Hands-on experience with automation tools like Terraform and Ansible.
  • Knowledge of secure network design and RBAC/AAA principles.

Responsibilities

  • Support and manage Red Team lab infrastructure and requirements.
  • Develop automation scripts for rapid deployment and configuration management.
  • Ensure secure deployment and compliance with regulations.

Skills

Virtualized Systems Deployment
Secure Network Design Concepts
RBAC/AAA
Network Security Platforms
Logging and Monitoring
CI/CD Concepts
Automation Scripting
C2 Frameworks Deployment

Education

Bachelor's Degree in Computer Science
Industry-accredited Security Certifications

Tools

Terraform
Ansible
Chef/Puppet
Sliver
Mythic

Job description

Vulnerability Assessments Analyst - Red Team, AVP (C12)

The Role:

The Red Team DevOps Analyst - Red Team, AVP will design, manage, and support Red Team infrastructure that drives complex engagements. The candidate will additionally support the on-going Red Team and Purple Team programs and is expected to take an active hands-on role in focusing on reducing technical overhead through design simplification, orchestration, and automation.

In addition, this role will expose the DevOps analyst to complex Red Team operations in a fast-paced environment where the ability to perform under pressure is key to success.

Responsibilities

  • Support existing Red Team lab infrastructure, and build out new requirements to align with exercise requirements

  • Ensuring effective design, safe and secure deployment, continued patching and assurance of these systems from cradle to grave

  • Manage keys, and user access to systems within the lab

  • Manage logging and auditing of user access to infrastructure and tooling within the lab

  • Manage risk appropriately for mission critical, and sensitive systems

  • Develop and maintain automation scripts for rapid deployment, configuration management, and gold images

  • Demonstrate consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency

Qualifications

4+ years’ experience or equivalent knowledge and exposure are required with most of the following:

  • Understanding and able to deploy and orchestrate virtualized systems

  • Understanding and ability to apply secure network design concepts, systems hardening, and RBAC/AAA

  • Familiarity with common network and host security and logging platforms and products such as firewalls, VPNs, EDRs, SIEMs

  • Familiarity with logging, log forwarding, and resource monitoring of deployed services and infrastructure

  • Familiarity with CI/CD concepts and how it can be applied with Infrastructure as Code.

  • Understanding and ability to develop automation and maintain scripts such as terraform, ansible, chef/puppet to deploy and management systems at scale

  • Hands on experience and functional experience in deploying common C2 frameworks such as Sliver, and Mythic

Education:

  • Bachelor’s degree/University degree or equivalent experience

  • Industry-accredited security certifications highly preferred but not required

This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required.

------------------------------------------------------

Job Family Group:

Technology

------------------------------------------------------

Job Family:

Information Security

------------------------------------------------------

Time Type:

Full time

------------------------------------------------------

Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.

If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.

View Citi’s EEO Policy Statement and the Know Your Rights poster.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.