Jobs · Information Technology · Texas

Cyber Threat Hunt Senior Analyst, VP

Citi · Irving, TX · 3 wk ago
HybridInformation Technology$126k–$189k/yrFull-time

About the role

Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banking, securities brokerage, transaction services, and wealth management.

As a bank with a brain and a soul, Citi creates economic value that is systemically responsible and in our clients’ best interests. Our Enterprise Operations & Technology teams are charged with a mission that rivals any large tech company. Our technology solutions are the foundations of everything we do—from keeping the bank safe, managing global resources, and providing the technical tools our workers need to be successful, to designing our digital architecture and ensuring our platforms provide a first-class customer experience. We reimagine client and partner experiences to deliver excellence through secure, reliable, and efficient services.

Our commitment to diversity includes a workforce that represents the clients we serve from all walks of life, backgrounds, and origins. We foster an environment where the best people want to work, value and demand respect for others, promote individuals based on merit, and ensure opportunities for personal development are widely available to all.

This role is based in the Cyber Intelligence Center (CIC), part of the larger Chief Information Security Officer (CISO) organization. As a Cyber Threat Hunt Senior Analyst, you will use proactive threat intelligence from the CIC to conduct advanced, hypothesis-based threat hunts and sustain coverage over Citi's most advanced adversaries. The position is offered as a hybrid work role, requiring presence in the office 3 days per week.

Responsibilities

  • Lead and conduct proactive, hypothesis-based threat hunting activities using various techniques and tools to identify malicious activity, potential security breaches, security gaps, and opportunities for improved detection strategies.
  • Design, develop, and implement advanced threat hunting strategies based on industry best practices, threat intelligence, and organizational risk assessments.
  • Analyze network traffic, system logs, and other data sources to detect anomalies, patterns, and indicators of compromise (IOCs).
  • Collaborate with other security teams, such as the Security Operations Center (SOC), Incident Response, Red Team, and engineering teams to enhance security defenses and validate hunt findings.
  • Architect, develop, and maintain comprehensive threat hunting playbooks, procedures, and documentation.
  • Create and maintain detailed documentation for all hunt activities, including monthly hunt worksheets and formal hunt reports as part of the team's deliverables.
  • Present findings to both technical and non-technical audiences, including senior leaders and executive management.
  • Serve as a subject matter expert (SME), providing advanced technical expertise and mentorship to other security team members.

Requirements

  • Bachelor's degree in Computer Science, Information Security, or a related field.
  • Minimum of 5+ years of experience in cyber security, with a focus on threat hunting, incident response, or security analysis.
  • Expert understanding of networking protocols, operating systems, and security technologies.
  • Proficiency in analyzing data from security tools such as SIEM, EDR tools, and log analysis platforms (e.g., Splunk).
  • Experience analyzing logs from various sources including firewalls, WAFs, proxies, and cloud environments.
  • Experience with threat intelligence platforms and threat hunting frameworks.
  • Knowledge of common attack techniques, malware families, and threat actor tactics, techniques, and procedures (TTPs).
  • Ability to develop and implement threat hunting strategies based on industry best practices and threat intelligence.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.

Preferred Qualifications

  • Security certifications such as GIAC Certified Reverse Engineering Malware (GREM), Certified Information Systems Security Professional (CISSP), or GIAC Certified Threat Hunter (GCTH).
  • Proven experience with scripting languages such as Python or PowerShell for automating security tasks and data analysis.
  • In-depth knowledge of cloud security concepts and technologies.
  • Experience with reverse engineering malware.
  • Applied knowledge of data science and machine learning techniques for security analysis.

Pay

Primary Location Full Time Salary Range: $125,760.00 - $188,640.00. In addition to salary, Citi’s offerings may also include, for eligible employees, discretionary and formulaic incentive and retention awards.

Benefits

  • Medical, dental, and vision coverage.
  • 401(k) plan.
  • Life, accident, and disability insurance.
  • Wellness programs.
  • Paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays.

Available offerings may vary by jurisdiction, job level, and date of hire.

Schedule

This is a hybrid work role, requiring presence in the office 3 days per week.

Similar jobs

Cyber Hunt Senior Analyst

Valiant SolutionsWashington, DC· 2 mo ago
RemoteEngineeringapply on careers-valiantsolutions.icims.com