At a Glance
- Tasks: Engineer secure AI products and conduct ethical hacking to protect cutting-edge applications.
- Company: Join Citi, a global leader in finance with a dynamic tech team.
- Benefits: Enjoy 27 days annual leave, private medical care, and a competitive salary.
- Why this job: Be part of a revolutionary team shaping the future of AI security.
- Qualifications: Experience in Golang, security engineering, and ethical hacking is essential.
- Other info: Flexible hybrid working model and opportunities for career growth.
The predicted salary is between 48000 - 84000 £ per year.
Discover your future at Citi. Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you'll have the opportunity to grow your career, give back to your community and make a real impact.
We are Citi's Application, Platform and Engineering team, a start-up with the exciting mission of shaping the direction of travel for the entire bank under the Chief Technology Office, by defining the tech and engineering strategy for the enablement bank. We are a team of talented engineers, product managers and tech SMEs, taking ambiguous concepts and making them real by engineering cutting edge products at planetary scale! We are solely focused on the most modern technology and engineering disciplines such as generative AI, cloud, security, modern app stacks (with Golang, Gatekeeper), open source and the latest and greatest in the Kubernetes ecosystem.
Generative AI is a growing space, as a result, we ask that you share with us any specific AI engineering projects utilizing LLMs that you're proud of in your application. Ideally these projects should show off complex and clever architectures or a systematic evaluation of an LLM's behaviour.
You might be a good fit if you:
- Bring your deep-dive application security engineering expertise from building production systems
- Thrive in a results-driven environment, where flexibility fuels impact
- Be a game-changer, ready to step beyond your designated role
- Love the synergy of pair programming
Seize the opportunity to secure AI applications at scale. Jump in! A relentless passion to learn more about AI security, LLM attacks, and bringing your knowledge to shape Citi's secure AI future.
What you'll do within the Tech Strategy team:
- Build secure AI products from 0-1 - Engineer production-grade, business-facing AI platforms with security built-in from day one
- Conduct penetration testing, vulnerability research, and attack simulation to make our products bulletproof
- Create automated security solutions that scale across fast-paced development cycles
- Identify and mitigate LLM-specific vulnerabilities, prompt injection attacks, and AI model security risks through hands-on testing
- Embed security practices throughout our rapid development lifecycle while maintaining velocity
- Guide other engineers on secure coding, vulnerability remediation, and security-first thinking
Experience That Will Help You Succeed In This Role:
- Proficient in Golang
- Production system builder with security focus - proven track record of architecting and building secure, large-scale production applications and business-facing platforms from the ground up
- Hands-on experience finding and exploiting vulnerabilities, conducting red team exercises, and thinking like an attacker to strengthen defenses
- State-of-the-art security engineering with Go, Python, JavaScript – you build both security tools and secure production systems in fast-paced environments
- Deep experience writing custom plugins, creating secrets engines, implementing dynamic credentials, and extending Vault functionality for enterprise-scale secrets management
- Designing and implementing OAuth, JWT, RBAC, and complex identity systems with fine-grained access controls in business-critical applications
- Securing REST/GraphQL APIs, conducting threat assessments, and implementing advanced security patterns in high-traffic production systems
- Understanding of LLM vulnerabilities, model security, prompt injection attacks, and AI-specific threat vectors through hands-on testing
- Automating manual security processes
- Securing containerized applications in Kubernetes, service mesh security, and cloud-native security patterns at enterprise scale
- Experience investigating, analyzing, and responding to security incidents in live production systems
What We Believe In:
- We do not have boundaries between security engineering and product development, and we expect all our technical staff to contribute to both as needed.
- We take a product-focused approach to security and care about building solutions that are robust, scalable, and easy for developers to use.
- We enjoy working in a fast-paced team tackling cutting-edge security problems by constantly testing and learning.
- We enjoy pair programming for our security tools; we are lean in our approach and remove bureaucracy where we see it.
- We believe in delivering secure solutions fast, iterating and pivoting as we go, rather than defining the perfect security framework upfront.
This is a unique role that will put you in the position to be part of a new venture and actively drive change. Every day there will be new challenges that will help you develop new skills that can drive your career.
By joining Citi London, you will not only be part of a business casual workplace with a hybrid working model (up to 2 days working at home per week), but also receive a competitive base salary (which is annually reviewed), and enjoy a whole host of additional benefits such as:
- 27 days annual leave (plus bank holidays)
- A discretionary annual performance-related bonus
- Private Medical Care & Life Insurance
- Employee Assistance Program
- Pension Plan
- Paid Parental Leave
- Special discounts for employees, family, and friends
Alongside these benefits, Citi is committed to ensuring our workplace is where everyone feels comfortable coming to work as their whole self, every day. We want the best talent around the world to be energized to join us, motivated to stay and thrive.
Offensive Security Engineer - (SVP) in London employer: 11037 Citibank, N.A. United Kingdom
Contact Detail:
11037 Citibank, N.A. United Kingdom Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Offensive Security Engineer - (SVP) in London
✨Tip Number 1
Network like a pro! Reach out to current or former employees at Citi on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Show off your skills! Prepare a portfolio of your AI engineering projects, especially those involving LLMs. Bring them up during interviews to demonstrate your expertise and passion for the role.
✨Tip Number 3
Practice makes perfect! Get comfortable with common interview questions related to security engineering and ethical hacking. Mock interviews with friends can help you nail your responses.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the team at Citi.
We think you need these skills to ace Offensive Security Engineer - (SVP) in London
Some tips for your application 🫡
Show Off Your Projects: When applying, make sure to highlight any AI engineering projects you've worked on, especially those involving LLMs. We want to see your creativity and technical skills in action!
Tailor Your Application: Don’t just send a generic application! Tailor your CV and cover letter to reflect the specific skills and experiences that match the Offensive Security Engineer role. We love seeing how you fit into our team!
Be Clear and Concise: Keep your application clear and to the point. Use bullet points for your achievements and experiences to make it easy for us to see what you bring to the table. We appreciate straightforward communication!
Apply Through Our Website: Make sure to apply through our website for the best chance of getting noticed. It’s the easiest way for us to keep track of your application and get back to you quickly!
How to prepare for a job interview at 11037 Citibank, N.A. United Kingdom
✨Know Your Stuff
Make sure you brush up on your knowledge of Golang and security engineering. Be ready to discuss specific projects you've worked on, especially those involving AI and LLMs. This will show that you not only understand the technical aspects but also have hands-on experience.
✨Show Off Your Problem-Solving Skills
Prepare to tackle hypothetical scenarios during the interview. Think about how you would approach penetration testing or vulnerability research in a real-world context. This will demonstrate your ability to think like an attacker and your readiness to secure applications effectively.
✨Emphasise Teamwork
Citi values collaboration, so be prepared to talk about your experiences with pair programming and mentoring others. Share examples of how you've worked with teams to embed security practices into development cycles, showcasing your ability to lead and support your colleagues.
✨Stay Current with Trends
Familiarise yourself with the latest trends in AI security and cloud-native security patterns. Being able to discuss recent developments or challenges in these areas will show your passion for continuous learning and your commitment to staying ahead in the field.