Data Platform Engineer, Cybersecurity Operations

Citi

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Irving, TX
Salary
$156,160–$234,240 / yr
Employment
Full-time
Posted
3 days ago
Freshness
Confirmed live yesterday
Closes
Oct 25, 2026

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $180k
This role $195k
$125k most similar roles pay here $246k

This role pays more than 64% of similar roles. Most pay $144,562–$216,271 — the shaded band above. At the midpoint, this role pays about $195k versus about $180k for comparable roles.

Based on 240 similar postings.

Employer

About Citi

Citi is one of the world’s most trusted financial institutions, proudly serving millions of customers across the United States.

Citi currently has 271 open roles on FindRole.

Listed pay typically runs $125,760–$188,640 across 255 roles with salary data.

Most-posted roles

View all roles at Citi

At a glance

TL;DR · Data Platform Engineer, Cybersecurity Operations

Data Platform Engineer, Cybersecurity Operations joins the team to build and operate scalable data pipelines, storage backbones, and data lakes powering next-generation cybersecurity operations. This role focuses on ingesting and normalizing massive volumes of SOC telemetry, including logs, network flow data, and identity signals into high-performance analytics platforms. The engineer will design robust normalization logic, manage data lake infrastructure for high-volume security telemetry, and ensure low-latency delivery to SIEM/XDR tools. Key technologies include Cribl, Kafka, Spark, Flink, Airflow, and cloud-native infrastructures like AWS, Azure, or GCP. Candidates must be proficient in Python, Go, Java, or Scala while managing data lakes using Delta Lake, Iceberg, Snowflake, BigQuery, or Redshift. The role solves the technical challenge of transforming heterogeneous security data into standardized schemas for consistent downstream consumption across detection and analytics teams.

What you'll do

  • Design, build, and operate high-throughput batch and streaming data pipelines for security telemetry.
  • Develop normalization and enrichment logic to transform heterogeneous logs into standardized schemas.
  • Architect and maintain a scalable storage backbone including data lakes and warehouses for enterprise-scale data.
  • Optimize pipeline throughput, storage partitioning, and query performance to handle growing data volumes.
  • Implement monitoring, alerting, and self-healing capabilities to ensure production-scale reliability and data quality.
  • Define and enforce data schemas, taxonomies, and metadata standards across all ingested telemetry sources.
  • Build automated frameworks to rapidly onboard new telemetry sources as the ecosystem expands.
  • Ensure secure handling, encryption, and access control for sensitive security data throughout its lifecycle.

What we're looking for

  • Bachelor's degree or equivalent experience required; Master's degree preferred.
  • Proven track record of architecting and operating large-scale, mission-critical data platforms from the ground up.
  • Extensive experience building and operating batch and streaming data pipelines using tools like Cribl, Kafka, Spark, Flink, or Airflow.
  • Deep expertise in data lake and warehouse architecture (e.g., Delta Lake, Iceberg, Snowflake, BigQuery, Redshift) at enterprise scale.
  • Proficiency in cloud-native data infrastructure (AWS/Azure/GCP), including storage tiering and event-driven architectures.
  • Advanced proficiency in a major programming language such as Python, Go, Java, or Scala.
  • Strong software engineering fundamentals including CI/CD, infrastructure-as-code, version control, and observability practices.
  • 10+ years of experience in architecting data platforms for SOC, SIEM, or XDR environments (preferred); familiarity with AI/ML pipeline requirements (preferred).

More like this

Similar roles

Senior Data Platform Engineer

Citi

Irving, TX +2 4 days ago $107,120–$160,680
Python PySpark SQL Server T-SQL ETL Microsoft SSIS Hadoop HDFS Hive AutoSys Git CI/CD Docker Kubernetes MongoDB Data Warehousing Dimensional Modeling
4+ yrs exp Hybrid

Lead Data Platform Engineer

Citi

Irving, TX +2 4 days ago $125,760–$188,640
Microsoft SQL Server VLDB SQL SSIS SSAS ETL Data Modeling TDE MongoDB CouchDB Python PySpark AI Tools Query Optimization
6+ yrs exp Hybrid

Senior Staff Data Platform Engineer

Qualcomm

San Diego, CA +1 15 days ago $161,600–$242,400
Databricks Unity Catalog Delta Lake MLflow AWS Amazon EKS Terraform Terramate Python SQL NoSQL CI/CD GitHub Actions Jenkins Bash Helm OpenTelemetry HashiCorp Vault OPA Sonar
7+ yrs exp

AI Data Platform Engineer

Apple Inc

Cupertino, CA 63 days ago $150,400–$277,600
Python SQL Java Scala Airflow Kubeflow MLflow Spark PySpark Kafka Ray Pandas Iceberg Delta Lake RAG Vector Databases Kubernetes Docker CI/CD AWS Azure GCP
5+ yrs exp