The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
Need Help? ()
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (careers@truist.com?subject=Accommodation%20request)
(accommodation requests only; other inquiries won't receive a response).
Regular or Temporary :
Regular
Language Fluency : English (Required)
Work Shift :
1st shift (United States of America)
Please review the following job description :
We are seeking a highly experienced Senior Cloud Security Engineer to lead the deployment, operationalization, and continuous improvement of Cloud Security tooling across our multi-cloud enterprise environment. This position will also be responsible for Cloud native AWS tooling and automating solutions leveraging GitLab deployments, including AWS Guard Duty, Security Hub, AWS Inspector, etc. via Terraform.
Telecommuting / Remote workstyle may be considered for well-qualified individuals located outside of the Truist footprint. Teammate will work hours supporting Eastern Standard Time
Essential Duties and Responsibilities
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Wiz Platform Deployment & Ownership
CSPM, CWPP, CI / CD Integration & Remediation
Alerting, Monitoring & Incident Response Integration
Remediation, Ownership & Continuous Improvement
Cloud Security Engineering & Architecture playbook creation.
Leadership, Strategy & Governance
Develop and maintain the technical IT / cyber capabilities including all phases of the software development lifecycle and software stack which includes threat modeling of application designs, static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), and penetration testing.
Lead efforts related to designing, planning, enhancing, and testing all Cloud cybersecurity technologies used throughout the enterprise including base-lining current systems, trend analysis, and capacity planning as required for future systems requirements and new technologies.
Analyze information to determine, recommend, and plan the use of new Cloud information security technologies, or modifications to existing equipment and systems that will provide capability for proposed project or workload, efficient operation and effective use of allotted resources
Lead the implementation of new Cloud security technologies or integration of existing technologies including initial configuration, installation, change management, and operational handoff
Use sophisticated analytical thought through models, testing, and experience to exercise judgment and identify innovative solutions.
Responsible for technical support of Cloud security technologies providing expert problem analysis and resolution in a timely manner.
Creation of CI / CD automation leveraging Terraform for Cloud Security Services and Modules
Leads teams or projects with moderate resource requirements, risk, and complexity.
Qualifications
Required Qualifications :
The requirements listed below are representative of the knowledge, skill and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor's degree and eight years of experience in systems engineering or administration or an equivalent combination of education and work experience
Deep specialized and / or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection / prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security
Previous experience in leading complex IT projects
Preferred Qualifications :
10+ years Cloud Security experience
6+ years securing AWS / Azure / GCP
Deep expertise in Wiz platform
Strong experience with CSPM, CWPP, CI / CD security
Strong automation and scripting background
Experience in Global 100 or Fortune 50 environments
Wiz Architect / Practitioner certifications
AWS / Azure / GCP security certifications
Banking or financial services experience.
Other security certifications (e.g. CCNA Security, GSEC, GCED, GPPA, etc.)
Other technical Certifications (e.g. CCNA, RHCE, MCSE, etc.)
Certification in Information Security Management (e.g. Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC) or Certified Information Security Manager (CISM)), or related security certification(s)
Other Job Requirements / Working Conditions
Sitting
Constantly (More than 50% of the time)
Visual / Audio / Speaking
Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.
Manual Dexterity / Keyboarding
Able to work standard office equipment, including PC keyboard and mouse, copy / fax machines, and printers.
Availability
Able to work all hours scheduled, including overtime as directed by manager / supervisor and required by business need.
Travel
Minimal and up to 10%
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation : All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site ()
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.
EEO is the Law ()
E-Verify ()
IER Right to Work ()
Senior Cloud Security Engineer • Charlotte, NC, United States