Discover your future at Citi
Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, youll have the opportunity to grow your career, give back to your community and make a real impact.
Job Overview
We are Citis Application, Platform and Engineering team, a start-up with the exciting mission of shaping the direction of travel for the entire bank under the Chief Technology Office, by defining the tech and engineering strategy for the bank. We are a team of talented engineers, product managers and tech SMEs, taking ambiguous concepts and making them real by engineering cutting edge products at planetary scale! We are solely focused on the most modern technology and engineering disciplines such as generative AI, cloud, security, modern app stacks (with Golang, Gatekeeper), open source and the latest and greatest in the Kubernetes ecosystem.Generative AI is a growing space, as a result, we ask that you share with us any specific AI engineering projects utilising LLMs that youre proud of in your application. Ideally these projects should show off complex and clever architectures or a systematic evaluation of an LLMs behaviour.You might be a good fit if you
Bring your deep-dive applicationsecurityengineering expertise from building production systemsThrive in a results-driven environment, where flexibility fuels impactBe a game-changer, ready to step beyond your designated roleLove the synergy of pair programming? So do we!Seize the opportunity to secure AI applications at scale. Jump in!A relentless passion to learn more about AIsecurity, LLM attacks, and bringing your knowledge to shape Citi's secure AI future.What youll do within the Tech Strategy team:
Build secure AI products from 0-1-Engineerproduction-grade, business-facing AI platforms withsecuritybuilt-in from day oneEthical hacking and red team activities- Conduct penetration testing, vulnerability research, and attack simulation to make our products bulletproofDesign and buildsecuritytools and frameworks- Create automatedsecuritysolutions that scale across fast-paced development cyclesSecure novel AI attack surfaces- Identify and mitigate LLM-specific vulnerabilities, prompt injection attacks, and AI modelsecurityrisks through hands-on testingLead "shift left"security- Embedsecuritypractices throughout our rapid development lifecycle while maintaining velocityMentorsecuritypractices- Guide otherengineers on secure coding, vulnerability remediation, andsecurity-first thinkingExperience That Will Help You Succeed In This Role
Proficient in GolangProduction system builder withsecurityfocus- proven track record of architecting and building secure, large-scale production applications and business-facing platforms from the ground upEthical hacking and penetration testing expertise- hands-on experience finding and exploiting vulnerabilities, conducting red team exercises, and thinking like an attacker to strengthen defensesState-of-the-artsecurityengineeringwith Go, Python, JavaScript - you build bothsecuritytools and secure production systems in fast-paced environmentsHashiCorp Vault mastery- deep experience writing custom plugins, creating secrets engines, implementing dynamic credentials, and extending Vault functionality for enterprise-scale secrets managementEnterprise authentication & authorization- designing and implementing OAuth, JWT, RBAC, and complex identity systems with fine-grained access controls in business-critical applicationsAPIsecurityand threat modelling- securing REST/GraphQL APIs, conducting threat assessments, and implementing advancedsecuritypatterns in high-traffic production systemsAI/MLsecurityand vulnerability research- understanding of LLM vulnerabilities, modelsecurity, prompt injection attacks, and AI-specific threat vectors through hands-on testingSecurityautomation and tooling– automating manualsecurityprocessesCloud-nativesecurity- securing containerized applications in Kubernetes, service meshsecurity, and cloud-nativesecuritypatterns at enterprise scaleIncident response and forensics- experience investigating, analyzing, and responding tosecurityincidents in live production systemsWhat We Believe In
We do not have boundaries betweensecurityengineering and product development, and we expect all our technical staff to contribute to both as needed.We take a product-focused approach tosecurityand care about building solutions that are robust, scalable, and easy for developers to use.We enjoy working in a fast-paced team tackling cutting-edgesecurityproblems by constantly testing and learning.We enjoy pair programming for oursecuritytools; we are lean in our approach and remove bureaucracy where we see it.We believe in delivering secure solutions fast, iterating and pivoting as we go, rather than defining the perfectsecurity framework upfront.What well provide you
This is a unique role that will put you in the position to be part of a new venture and actively drive change. Every day there will be new challenges that will help you develop new skills that can drive your career.
By joining Citi London, you will not only be part of a business casual workplace with a hybrid working model (up to 2 days working at home per week), but also receive a competitive base salary (which is annually reviewed), and enjoy a whole host of additional benefits such as:
27 days annual leave (plus bank holidays)A discretional annual performance related bonusPrivate Medical Care & Life InsuranceEmployee Assistance ProgramPension PlanPaid Parental LeaveSpecial discounts for employees, family, and friendsVisit our Global Benefits page to learn more.
Alongside these benefits Citi is committed to ensuring our workplace is where everyone feels comfortable coming to work as their whole self, every day. We want the best talent around the world to be energized to join us, motivated to stay and empowered to thrive.
------------------------------------------------------
Job Family Group:
Technology------------------------------------------------------
Job Family:
Applications Development------------------------------------------------------
Time Type:
Full time------------------------------------------------------
Most Relevant Skills
Please see the requirements listed above.------------------------------------------------------
Other Relevant Skills
For complementary skills, please see above and/or contact the recruiter.------------------------------------------------------
Citi is an equal opportunity employer, and qualified candidates will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other characteristic protected by law.
If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review Accessibility at Citi.View Citis EEO Policy Statement and the Know Your Rights poster.