The Team:The Chief Information Security Office (CISO) is home to deeply talented colleagues that work to ensure the safety of Citi's clients, our revenue, our employees and our proprietary data. We manage information security as one end-to-end program - one with a clear mandate and accountability. Our mission is a program that is fully anchored to modern control and architectural frameworks, is fully aligned with the enterprise architecture of the firm and is deeply integrated into the sectors and functions. This role is a key position within our Cybersecurity Fusion Center (CSFC), reporting to the Director of Insider Threat.
The Role:Citigroup is seeking an experienced, proactive, and innovative
Cybersecurity Insider Threat Lead. This lead/SME role is a key part of the Cybersecurity Fusion Center (CSFC) within the CISO organization, reporting to the Director of Insider Threat. This role is critical to reducing risk to the firm by supporting the strategy to leverage Artificial Intelligence (AI) to address the new and evolving threat landscape. The Lead will be responsible for managing the implementation of a new, data-centric process to better protect the firm against insider risk. This position requires strong project management, technical expertise, and the ability to support transformative change across the organization. The role will involve collaboration with peers across the firm to support the Insider Threat Coordination Program (ITCP).
Key ResponsibilitiesThe Senior Vice President of Insider Threat will help manage and optimize key insider threat capabilities, including:
- Program Strategy and Leadership: Contribute to the strategic vision for the enterprise Insider Threat program. Assist in the management, strategic direction, and development of the insider threat team.
- AI-Driven Threat Mitigation: Support the strategy for leveraging AI and advanced data analytics to enhance the detection, analysis, and mitigation of insider threats, with a specific focus on addressing the new risks associated with AI.
- Process Innovation & Refinement: Manage the implementation of the new, data-centric process to better protect the firm against the risk of insiders, ensuring the program remains adaptive to emerging threats.
- Insider Threat Program Development & Execution: Contribute to the design, maturity, and execution of an enterprise insider threat program, including detection, triage, response, and mitigation capabilities. Help integrate behavioral, technical, and contextual indicators to enable a holistic and risk-based approach.
- Stakeholder and Industry Engagement: Support engagement with senior leadership, legal, HR, compliance, risk, cyber, and other partners on insider threat matters. Engage with industry peers and forums to benchmark programs and identify emerging trends.
- Governance, Risk, and Compliance: Ensure program alignment with enterprise governance, risk management, and control frameworks related to insider threat. Help maintain appropriate oversight, metrics, and reporting mechanisms to demonstrate program effectiveness and risk reduction.
Qualifications- Experience: 10+ years' experience in cybersecurity, insider threat, or related field, with significant experience in investigative, intelligence, or insider threat functions. Experience in financial services is a big plus.
- Leadership & Strategy: Experience contributing to the strategic direction of a security program. Demonstrated success in managing complex projects and mentoring team members.
- Technical Acumen: Strong understanding of the insider threat landscape, attack vectors, and mitigation strategies. Experience contributing to the design and implementation of insider threat detection programs. A strong focus on data and familiarity with leveraging AI/ML for security solutions is required.
- Communication & Influence: Strong ability to synthesize complex and sensitive information into actionable mitigation strategies. Experience engaging stakeholders and influencing outcomes through collaboration.
- Work Environment: Ability to work effectively in a fast-paced, high-pressure, global environment.
Skills ProfileLeadership & Strategic Vision- Cybersecurity Leadership: Demonstrated ability to manage cybersecurity projects, motivate teams, and contribute to the firm's strategic direction.
- Strategic Thinking: Capacity to contribute to the development and implementation of a comprehensive Insider Threat strategy.
- Transformation & Innovation: Experience contributing to large-scale cyber and digital transformations, with a focus on data and AI.
Cybersecurity Operations Expertise- Insider Threat Program Management: Expertise in managing the lifecycle of an insider threat program, including identification, assessment, prioritization, and remediation.
- Threat Intelligence & Analytics: Strong understanding of cyber threat intelligence principles and practices, including experience with threat intelligence platforms and cyber data analytics to identify and analyze insider threats.
- Incident Response & Crisis Leadership: Experience supporting complex incident response and crisis management activities.
Technical Acumen & Innovation- Emerging Technologies: Deep familiarity with emerging security technologies, including ML/AI-driven security solutions, and the ability to evaluate and implement innovative solutions.
- Data-Driven Analysis: Expertise in using data analytics to drive security decisions, refine detection models, and measure program effectiveness.
Collaboration & Partnership:- Cross-Functional Collaboration: Proven ability to collaborate effectively with diverse stakeholders, including technology teams, business functions, and management.
- External Partnerships: Experience supporting relationships with external partners, including industry peers, vendors, and government agencies.
Education- Bachelor's degree in Computer Science or equivalent relevant experience.
- Master's degree preferred.
This job description provides a high-level review of the types of work performed. Other job-related duties may be assigned as required.
#LI-MN1Job Family Group: Technology
Job Family:Information Security
Time Type:Full time
Primary Location:Tampa Florida United States
Primary Location Full Time Salary Range:$141,440.00 - $212,160.00
In addition to salary, Citi's offerings may also include, for eligible employees, discretionary and formulaic incentive and retention awards. Citi offers competitive employee benefits, including: medical, dental & vision coverage; 401(k); life, accident, and disability insurance; and wellness programs. Citi also offers paid time off packages, including planned time off (vacation), unplanned time off (sick leave), and paid holidays. For additional information regarding Citi employee benefits, please visit citibenefits.com. Available offerings may vary by jurisdiction, job level, and date of hire.
Most Relevant Skills Please see the requirements listed above.
Other Relevant Skills For complementary skills, please see above and/or contact the recruiter.
Anticipated Posting Close Date:Sep 02, 2026