Free with a WorkJio account: we compare your profile with this job and show what you already meet.
Share with a friend
Start
Not stated
Work mode
On-site
Experience
Some experience
About the role
This role sits within the Suspicious Activity Management (SAM) programme, a regulatory governance function at a global bank. You will lead efforts to prevent, monitor and respond to information and data breaches and cyber-attacks, ensuring security directives align with the bank's data security policy. It suits an experienced information security professional who is technically knowledgeable in application, network and internet technology and comfortable coordinating across teams.
What you'll do
Identify potential information security risks and recommend enhancements
Collect and analyse security risk evidence and coordinate with internal and external compliance and auditing parties
Info Sec Prof Senior Analyst (Cyber Security / Suspicious Activity Monitoring) job at Citi, Singapore | WorkJio
Run meetings and communicate complex security topics and safe practices to all levels of the organisation
Ensure controls are used daily and that non-compliance remediation is addressed
Provide information security consulting, including interpreting and clarifying policy, procedures, standards or concepts
Help define and implement information security standards so procedures align with the bank's standards
Educate and advise on safe security practices and current or recommended security requirements
Validate compliance with security policies, practices and procedures, resolving related issues with the business
Take on informal or formal mentorship and help coach and train new team members
Drive application security assessments by analysing application architecture to determine risk and requirements for onboarding to SAM monitoring tools
Based on SAM assessments, advise application teams on controls needed for compliance and help build a plan
Develop and manage detective and preventative monitoring solutions for online customer sessions at the application layer, following FFIEC guidelines
Act as SME for resolving pending technical issues during SAM assessment and onboarding for Category 1 and 2 monitoring
Coordinate with the Splunk onboarding team or CSAP Operations team where data or applications need clarification or status updates
Use the SAM Tracker in Archer extensively to archive compliance status, actions and deliverables and manage the follow-up queue
Prepare slides for weekly SAM Committee reviews and other management, audit or regulatory reviews
Prepare metrics and GISMR reports for senior management
Provide businesses with a full description of the SAM Programme when needed
Good to know
Full-time position based in Singapore
Certifications such as Security+, CISM, CRISC or CISSP are applicable, or willingness to earn one within 12 months of joining
Bachelor's degree or university degree, or equivalent experience; a Master's in Computer Science/Technology or related field is ideal
3–5 years of relevant experience in IT risk management or information security, specifically IT risk assessment for web applications or infrastructure, and 3–5 years in IT programme management
Requirements
3–5 years of relevant experience
Applicable certification (Security+, CISM, CRISC, CISSP) or willingness to earn one within 12 months of joining
Clear and concise written and verbal communication
Proven influencing and relationship management skills
Proven analytical skills
Bachelor's degree, university degree or equivalent experience
Apply on the company website
You will leave WorkJio. Never pay a fee or share your Singpass password, OTP or bank log-ins to apply.