New York, NY

Salary
$109,120–$265,080from the description
Posted
Jul 26, 2026
Location
New York, NY
Last confirmed open
Jul 29, 2026

What this job asks for AI summary

This role sits within Citi's Chief Information Security Office and focuses on securing AI systems and infrastructure at enterprise scale. Depending on the candidate's background, they may join one of four teams covering AI-assisted offensive security and vulnerability management, AI deployment security architecture, production AI product assurance, or AI-era cyber operations and detection engineering. The work involves hands-on engineering — building pipelines, designing containment architectures, and writing code — rather than administrative or advisory work.

Senior level · 5+ years · New York-Newark-Jersey City, NY-NJ-PA · Full-time

Nice to have (10)
LLMsPythonVulnerability ManagementPenetration TestingThreat ModelingSTRIDEMITRE ATT&CKAgentic AIVulnerability AssessmentBehavioral Analytics

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 240 people in the New York-Newark-Jersey City, NY-NJ-PA area plausibly meet what this posting asks for (information security analysts). range 65–320

Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.

What won't set you apart
Vulnerability Management55%Python51%Vulnerability Assessment45%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $143,559 (middle half $110,181–$179,574). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 29, 2026. It is a model, not a headcount.

Why we read it this way (6)

This posting covers multiple openings across three Citi seniority bands: AVP (C12, ~5–7+ years), VP (C13, ~8–10+ years), and SVP (C14, 10+ years). The salary range of $109,120–$265,080 spans all three levels. The advertised seniority reflects the lowest explicitly named level (AVP/Senior); the actual pool spans Senior through Principal.

No skills are listed under a hard-requirements gate — the posting frames all technical areas as 'what we're looking for' with depth in 'at least one' domain, making every named technology a preferred signal rather than a firm gate.

The role is genuinely ambiguous between Information Security Analysts (15-1212) and Software Developers (15-1252). The posting explicitly emphasizes security engineering, building tools, and shipping code, but the primary mission and team home (CISO) is security analysis and architecture. 15-1212 is chosen as primary given the CISO context and security-first framing.

A bachelor's degree is listed as the baseline but the posting explicitly accepts 'equivalent experience,' so no minimum degree is flagged as hard-required.

Location is listed as New York, NY, but the posting notes compensation and location 'may be flexible,' suggesting some location flexibility; remote status cannot be confirmed as fully remote.

Ignored 3 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Exploit Development, Security Architecture, Detection Engineering.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗