Citibank N.A. · MyCareersFuture · 1w
26996607 Application Pentest Manager
Singapore, East- Posted
- 2026-09-30 (1w)
- Place
- Singapore, East
- Commitment
- Full Time
- Salary
- SGD 16,000 – 21,000 / month
- Experience
- 10+ YOE
- Education
- Bachelor's
- Department
- Information Technology
- Source
- MyCareersFuture (the employer’s own listing)
Your match
Sign in to see how your skills match this job.
Skills in this posting
CybersecurityApplication SecurityPenetration TestingVulnerability AssessmentCISSPExternal AuditRisk ManagementTeam LeadershipSoftware development
The Info Security Ops Group Manager is a senior management level position responsible for providing strategic leadership, operational oversight, and people management for application security testing services. This role ensures the delivery of high-quality Application Vulnerability Assessment and Management (AVA/AVM) services while maintaining operational excellence, service continuity, and adherence to cybersecurity standards.
The position plays a critical role in defining and executing the organization's perimeter testing strategy, helping protect critical business applications from emerging cyber threats. As a people leader, the Manager develops and leads a team of cybersecurity professionals, drives continuous service improvement, and partners with senior stakeholders to enhance the firm's overall security posture.
Key Responsibilities
Strategic Leadership
• Define and execute the long-term strategy and roadmap for Application Vulnerability Management services.
• Lead the evolution of perimeter testing capabilities to address emerging threats and business requirements.
• Partner with senior cybersecurity leaders, technology organizations, and business stakeholders to align security testing initiatives with enterprise risk management objectives.
• Drive innovation, automation, and process improvements to enhance service effectiveness and efficiency.
Service Delivery & Operations
• Oversee day-to-day AVA/AVM pentest operations, ensuring consistent delivery of high-quality vulnerability assessment services.
• Maintain service continuity, operational resilience, and compliance with established service level expectations.
• Establish and monitor key performance indicators, quality metrics, and reporting to measure program effectiveness.
• Ensure timely identification, assessment, prioritization, and remediation tracking of application vulnerabilities.
Team Leadership & Development
• Lead, mentor, and develop a team of cybersecurity specialists responsible for application security testing and vulnerability management activities.
• Foster a culture of accountability, collaboration, innovation, and continuous learning.
• Support workforce planning, talent development, succession planning, and employee engagement initiatives.
• Provide technical guidance and strategic direction to ensure consistent execution across the team.
Risk Management & Governance
• Ensure AVA/AVM services operate in alignment with organizational cybersecurity policies, standards, and regulatory requirements.
• Identify and manage security, operational, and compliance risks associated with application security testing activities.
• Communicate risk insights and remediation priorities to senior management and key stakeholders.
• Support internal and external audit activities and demonstrate effective security governance practices.
Stakeholder Engagement
• Build strong relationships with technology, engineering, application development, and cybersecurity teams.
• Act as the primary management representative for AVA/AVM services.
• Present program performance, risk trends, and strategic initiatives to senior leadership.
Qualifications
• 10+ years of extensive experience in application security, vulnerability assessment, vulnerability management, penetration testing, or related cybersecurity domains.
• Demonstrated experience leading cybersecurity teams and managing large-scale security operations.
• Strong understanding of application security testing methodologies, vulnerability management practices, and secure software development principles.
• Experience managing stakeholder relationships across technology and business organizations.
• Excellent leadership, communication, and organizational skills.
• Experience building and executing enterprise-scale application security programs.
• Knowledge of cloud security, DevSecOps practices, and modern application architectures.
• Experience driving cybersecurity transformation and service modernization initiatives.
Education:
• Bachelor’s degree/University degree or equivalent experience
• Holding relevant professional cybersecurity certifications such as CISSP, CISM, GWAPT, GPEN, OSCP, or equivalent.
Citibank N.A.
17 open roles in Singapore, straight from Citibank N.A.’s own careers page.
- 26995555 Information Security Technology Senior Analyst, Assistant Vice PresidentSingapore, East · 2d
- 26992199 IT Project Senior Analyst, Assistant Vice PresidentSingapore, East · 2d
- Trade Structuring Lead Specialist - Vice PresidentSingapore · 2d
- 26995924 Business Senior Analyst - Assistant Vice PresidentSingapore, East · 1w
- 26996646 Engineering Lead AnalystSingapore, East · 1w
- 26995507 Global Change Management Lead, Wealth Operations (AI Transformation)Singapore, East · 1w
- 26996420 Head of OTC Derivatives Settlements and Margin Production SupportSingapore, East · 1w
- 26988159 Full Stack UI DeveloperSingapore, East · 1w
- 26994548 Full Stack DeveloperSingapore, East · 1w
- 26994483 Digital Software Engineer Group ManagerSingapore, East · 1w
- 26991312 Digital Software Engineer Senior AnalystSingapore, East · 3w
- 26991240 Engineer Senior Analyst (Spring Boot, Java)Singapore, East · 4w