Fevrok logo
Authentication Platforms Infrastructure L3 Support - Senior Engineer
3 years ago

The Authentication Platforms Infrastructure L3 Support - Senior Engineer (Vice President) role will be responsible for the support of multiple critical security infrastructures / applications including but not limited to Token technologies, end-to-end encryption Solutions, Identity and Access management tools and Automation infrastructures to name a few.


Ideal candidate should be able to work in a well-defined team structure as well as independently with minimal supervision. Candidate should have a good command of English and possess strong oral and written business communication skills. Candidate should be a fast-learner and should be able to work well under pressure and competing priorities.


**Key Responsibilities**


+ Deploy and manage day-to-day operations of critical security infrastructure

+ Function as an Infrastructure Subject Matter Expert (SME) for the security infrastructure under your responsibility

+ Ensure compliance of all the supported applications with Citi-published standards

+ Perform post-deployment testing of solutions in individual environments

+ Engage with strategic vendors, external to the organization, to investigate problems and understand product functionality, influence enhancements and roadmap as required to meet organizational goals

+ Support internal and external customers in the adoption of the Authentication services

+ Collaborate with L2 teams to assist in integration-related activities

+ Drive resolution of incidents and problems in a timely manner as defined in SLAs

+ Document resolutions in Knowledge Base(KB) tools

+ Engage in Capacity, Performance and Stability management and reporting initiatives

+ Lead initiatives to develop/enhance tools for system monitoring and maintenance improvements

+ Manage and mentor other junior engineers in the team

+ Working on Shifts, with occasional weekend support for critical activities, expected


**Must-have Skills:**


At least 12 years of IT industry experience with:


+ 5+ years working in a Linux-based environment (RHEL, Ubuntu) that includes being conversant in terminal commands, developing shell scripts and setting up schedulers (Cron, Autosys)

+ 3+ years experience in deploying and supporting one or more of the following on a Linux-based environment:

+ - Single Sign-On solutions (Ping Access/Federation, Broadcom SiteMinder, RSA Access Manager, ForgeRock, Okta etc.,)

+ - Directory Servers (Ping Directory, CA Directory Server, Radiant Logic Virtual directory)

+ - Identity and Access Management suites (e.g., SailPoint IAM, Oracle Identity Governance)

+ - Multi-factor Authentication solutions (e.g., OneSpan tokens, RSA SecurID, SafeWord, Yubikey)

+ Experience with critical production server support, application upgrades and project lifecycle/SDLC processes


**Candidates with experience in leading technical teams of 3 5 members would be preferred**


**Desired Skills**


Sound understanding of one or more of the following:


+ Authentication protocols such as OAuth, OpenID Connect, SAML 2.0, WS-Security, FIDO2

+ Encryption protocols used in Transport-Layer Encryption, Data Transmission and At-Rest Encryption and Key Exchange protocols

+ Production network infrastructure such as Firewalls, DNS, Software/Hardware Load balancers, Proxies

+ Analytical/Monitoring tools such as Grafana, Sensu, Splunk, App Dynamics etc.

+ Experience with one or more of Enterprise application servers such as IBM WebSphere/WebLogic, Apache Tomcat/HTTP Server

+ Familiarity with IT Service Management processes based on the ITIL framework

+ Familiarity of Compliance and Risk-management frameworks and methodologies (ISO 27002, SDLC)


**Education**


+ Bachelor's Degree (Engineering, Mathematics, or IT related field) or equivalent work experience

+ Security certifications such as CISSP and or CISM is desired but not mandatory. However, willingness to complete certification would be expected.


-------------------------------------------------


**Job Family Group:**


Technology

-------------------------------------------------


**Job Family:**


Applications Support

------------------------------------------------------


**Time Type:**


Full time

------------------------------------------------------


Citi is an equal opportunity and affirmative action employer.


Qualified applicants will receive consideration without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.


Citigroup Inc. and its subsidiaries ("Citi) invite all qualified interested applicants to apply for career opportunities. If you are a person with a disability and need a reasonable accommodation to use our search tools and/or apply for a career opportunity review **Accessibility at Citi (https://www.citigroup.com/citi/accessibility/application-accessibility.htm)** .


View the "EEO is the Law (https://www.dol.gov/sites/dolgov/files/ofccp/regs/compliance/posters/pdf/eeopost.pdf) " poster. View the EEO is the Law Supplement (https://www.dol.gov/sites/dolgov/files/ofccp/regs/compliance/posters/pdf/OFCCP\_EEO\_Supplement\_Final\_JRF\_QA\_508c.pdf) .


View the EEO Policy Statement (http://citi.com/citi/diversity/assets/pdf/eeo\_aa\_policy.pdf) .


View the Pay Transparency Posting (https://www.dol.gov/sites/dolgov/files/ofccp/pdf/pay-transp\_%20English\_formattedESQA508c.pdf)
Citi is an equal opportunity and affirmative action employer.
Minority/Female/Veteran/Individuals with Disabilities/Sexual Orientation/Gender Identity.

©2025 Fevrok. All Rights Reserved.