Senior Threat Modeler

Long Finch Technologies

Irving, TX / Jersey City, NJ / Tampa, FL

Posted On: Aug 25, 2026

Posted On: Aug 25, 2026

Job Overview

Job Type

Full-time

Experience

10 - 15 Years

Salary

Depends on Experience

Work Arrangement

On-Site

Travel Requirement

0%

Required Skills

  • Cybersecurity
  • Information Security
  • STRIDE
  • Attack trees
  • Jira
  • Python
Job Description
Technical skills
  • Expected to have two to five years of experience in several of the following:
  • IT experience minimum of 6 years with minimum of 4 years Cybersecurity/Information Security – must have.
  • Threat Modeling (STRIDE, PASTA, Attack trees, tooling, Att&ck) – must have demonstrated experience.
  • Experience working in a cybersecurity role – must have.
  • Security practices pertaining to authentication, authorization, logging/monitoring,  encryption, infrastructure security, network/segmentation – must have.
  • Scripting languages, Infrastructure as Code (Terraform, CloudFormation) – must have.
  • Jira or other ticketing systems – must have.
  • Design and review technical architectures – must have.
  • Strong proficiency in Programming Languages, with a preference for Python (asynchronous programming), and FastAPI (must have).
  • Unit Testing: Developing and executing unit tests using frameworks like Pytest to ensure code quality (must have).
  • Ensure all software platforms adhere to Citi's security standards and Software Development Life Cycle (SDLC) processes (must have).
  • Identifying vulnerabilities using CWE or OWASP.
  • Operating systems and their hardening.
  • Development concepts (such as: CICD, Pipelines, SDLC).
  • Cloud Development Kit (CDK), GitOps.
  • Operating in a DevOps / agile team structure.
  • Understanding of docker/K8S/serverless/helm.
  • Support or perform pen testing.
  • Snowflake/MongoDB/Terraform Cloud/GitHub/Databricks.
  • Karat Assessment (Python focus) is required for consideration.
Roles & Responsibilities
  • Threat Modeling using a documented process. 
  • Development of automation tools as required. 
  • Maintain a high standard of work in identifying threats and specifying mitigating controls. 
  • Attending to the lifecycle of identified threats and controls. 
  • Delivery of threat models and supporting tasks within existing timeframes. 
  • Provide feedback, support, and improvements to the existing threat modeling process. 
  • Present work to seniors, the team, and other technical teams. 
  • Work with little supervision to complete work.
  • Develop, test, and deploy secure and efficient Python-based applications, adhering to established SDLC processes and quality standards.

Job ID: LFT122151


Posted By

Mayank Rawat

Bilingual Recruiter