Talent.com
Head of Cloud Security Automation

Head of Cloud Security Automation

Truist IncCharlotte, NC, United States
1 day ago
Job type
  • Full-time
  • Part-time
  • Temporary
Job description

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help? ()

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (careers@truist.com?subject=Accommodation%20request)

(accommodation requests only; other inquiries won't receive a response).

Regular or Temporary :

Regular

Language Fluency : English (Required)

Work Shift :

1st shift (United States of America)

Please review the following job description :

The Head of Cloud Security Automation leads the enterprise strategy, engineering, and execution of automated cloud security controls across AWS, Azure, and SaaS platforms. This leader drives the shift from manual, ticket-based security operations to an Agentic AI-powered, self-healing cloud security model, leveraging large-scale automation, IaC guardrails, MCP agents, and continuous compliance pipelines. The role owns the roadmap for security automation across CSPM, CIEM, SSPM, CNAPP, IaC, digital workforce agents, and evidence automation to meet NIST 800-53 Rev5, and internal regulatory requirements.

ESSENTIAL DUTIES AND RESPONSIBILITIES

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

Strategic Leadership

Define and own the enterprise Cloud Security Automation Strategy & Roadmap (2026+), aligned to CISO, CCoE, and Enterprise Architecture goals.

Lead the design of a self-healing cloud using automation-first architecture and Agentic AI digital workforce.

Govern the automation maturity model and drive adoption across engineering and application teams.

Automation Engineering & Architecture

Build and lead teams developing :

Automated risk detection & prioritization pipelines (Wiz, CrowdStrike, CNAPP).

IaC guardrails (Terraform / Wiz IaC / SNYK) and policy-as-code frameworks.

Agentic AI remediation flows for misconfigurations, permissions, containers, and vulnerabilities.

Cross-account remediation orchestration using MCP agents and ServiceNow VR / Risk workflows.

Automated evidence and compliance pipelines for NIST, FedRAMP, SOC2, PCI.

Operational Excellence

Replace manual reviews with automated workflows for :

Misconfiguration remediation

Privilege analysis & JIT provisioning

SSPM controls (SaaS misconfigurations)

Vulnerability closure across containers, VMs, serverless

Partner with Platform Engineering, DevOps, and AppSec to embed security into CI / CD and digital factory delivery pipelines.

Governance & Risk

Establish automation KPIs, SLAs, and dashboards for remediation velocity, exposure reduction, and FTE savings.

Drive measurable reduction in Mean Time to Detect / Remediate (MTTD / MTTR).

Enforce secure-by-default patterns using guardrails and MCP agents.

QUALIFICATIONS

Required Qualifications :

The requirements listed below are representative of the knowledge, skill and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Bachelor's degree and ten to twelve years of experience in systems engineering or an equivalent combination of education and work experience

Strong functional and technical knowledge of information / cyber security capabilities with deep expertise in one or more of the following areas : Encryption, Data Security, Application Security, End Point Security, Identity and Access Management, Windows / Unix / Linux Systems Security, Mainframe Security, Perimeter Security, Network Security, Mobility Security, Cloud Security, Cyber Security, Cryptography, or Authentication Systems

Strong understanding of service lifecycle management, strategic planning, and the cyber security landscape

Preferred Qualifications :

10-15+ years in cloud security, platform engineering, or DevSecOps leadership.

Deep knowledge of AWS / Azure security services and CNAPP / CSPM / CIEM / SSPM tooling.

Hands-on expertise with IaC (Terraform), GitOps, automation frameworks, and API-driven remediation.

Proven track record delivering enterprise-scale automation and security transformation.

Strong understanding of NIST 800-53, SOX, and financial-sector controls.

Experience building AI-driven automation, policy-as-code, and agent-based workflows.

Prior leadership in highly regulated environments (Finance, Healthcare, Defense).

OTHER JOB REQUIREMENTS / WORKING CONDITIONS

Sitting

Constantly (More than 50% of the time)

Visual / Audio / Speaking

Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.

Manual Dexterity / Keyboarding

Able to work standard office equipment, including PC keyboard and mouse, copy / fax machines, and printers.

Availability

Able to work all hours scheduled, including overtime as directed by manager / supervisor and required by business need.

Travel

Minimal and up to 10%

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation : All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site ()

  • . Depending on the position and division, this job may also be eligible for Truist's defined benefit pension plan, restricted stock units, and / or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

EEO is the Law ()

E-Verify ()

IER Right to Work ()

Create a job alert for this search

Head Of Security • Charlotte, NC, United States

Related jobs
  • Promoted
NetSuite Administrator

NetSuite Administrator

DeZURIK, Inc.Gastonia, NC, United States
Full-time
The NetSuite Administrator will manage and maintain the NetSuite ERP platform, ensuring it meets DeZURIK's business needs while supporting end users and optimizing system functionality.This role in...Show moreLast updated: 30+ days ago
  • Promoted
Principal Cybersecurity SOX

Principal Cybersecurity SOX

AT&TCharlotte, NC, United States
Full-time
This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted.Join AT&T and reimagine the communications and technologies that connect the wor...Show moreLast updated: 1 day ago
  • Promoted
Cloud Engineer (Nutanix)

Cloud Engineer (Nutanix)

System Soft TechnologiesStatesville, NC, United States
Full-time
Cloud Engineer - Hybrid Infrastructure (Nutanix | On-Prem | Azure | Certero | Cohesity).Join our team and help lead a large-scale digital transformation that bridges on-premises and cloud environme...Show moreLast updated: 30+ days ago
  • Promoted
Analyst-Digital Category Management

Analyst-Digital Category Management

Lowe'sMooresville, NC, United States
Full-time
The role of Analyst, Digital Category Management is to strategically evaluate the online experience for customers while also evaluating the industry to create and test data driven ways to improve u...Show moreLast updated: 30+ days ago
  • Promoted
Security Area Manager

Security Area Manager

CarowindsGASTONIA, North Carolina, United States
Full-time +1
The Area Manager of Security is responsible for supporting the overall safety and security operations of Carowinds Amusement Park, ensuring a safe and enjoyable environment for all guests and assoc...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Application Security Architect

Application Security Architect

OptomiCharlotte, NC, US
Full-time +1
Application Security Architect (ETL) - Onsite in Charlotte, NC.Optomi, in partnership with a Fortune 50 client is looking to add an onsite resource over application security architecture! The Appli...Show moreLast updated: 7 hours ago
  • Promoted
Lead Information Security Engineer- Certificate Management Services

Lead Information Security Engineer- Certificate Management Services

Wells FargoCharlotte, NC, United States
Full-time
Wells Fargo is seeking a Lead Information Security Engineer in Technology as part of the Chief Technology Office (CTO).Learn more about the career areas and lines of business at wellsfargojobs.The ...Show moreLast updated: 30+ days ago
  • Promoted
Sr Analyst, Media Analytics

Sr Analyst, Media Analytics

Lowe'sMooresville, NC, United States
Full-time
The Senior Analyst, Media Analytics supports Lowe's enterprise media measurement and optimization efforts by analyzing campaign performance, producing insights, and driving data-informed recommenda...Show moreLast updated: 13 days ago
  • Promoted
Director, Aerospace CNC Manufacturing Operations

Director, Aerospace CNC Manufacturing Operations

Northeast Tool & MfgMatthews, NC, US
Full-time
Director, Aerospace CNC Manufacturing OperationsA day in the role.Picture your morning starting on the production floor in a high‑mix, low‑volume environment.You walk cells with super...Show moreLast updated: 8 days ago
  • Promoted
Lead Cybersecurity - Application Security DevSecOps Engineer

Lead Cybersecurity - Application Security DevSecOps Engineer

AT&TCharlotte, NC, United States
Full-time
This position requires office presence of a minimum of 5 days per week and is only located in the location(s) posted.Join AT&T and reimagine the communications and technologies that connect the wor...Show moreLast updated: 10 days ago
  • Promoted
Enterprise Account Manager, ProAV

Enterprise Account Manager, ProAV

CommScopeClaremont, NC, United States
Full-time
Enterprise Account Manager, ProAV.In our 'always on' world, we believe it's essential to have a genuine connection with the work you do. The ProAV Account Manager role is accountable for direct pros...Show moreLast updated: 3 days ago
  • Promoted
Director of Operations

Director of Operations

SikaGastonia, NC, US
Full-time
With more than 100 years of experience, Sika is a worldwide innovation and sustainability leader in the development and production of systems and products for commercial and residential constructio...Show moreLast updated: 30+ days ago
  • Promoted
Travel Echo Tech - $1,786 to $1,986 per week in Mooresville, NC

Travel Echo Tech - $1,786 to $1,986 per week in Mooresville, NC

AlliedTravelCareersMooresville, NC, US
Full-time
AlliedTravelCareers is working with Titan Medical Group to find a qualified Echo Tech in Mooresville, North Carolina, 28115!. Mooresville, NC, United States.BCLS / BLS - American Heart Association / RDC...Show moreLast updated: 18 days ago
  • Promoted
Team Lead

Team Lead

Rack Room ShoesMatthews, NC, US
Part-time
Location : Wesley Chapel, North Carolina US.The Team Lead assists in supervising and managing all day-to-day store operations while ensuring that 100% compliance exists with all established Company ...Show moreLast updated: 30+ days ago
  • Promoted
Technical Product Manager (On-Site)

Technical Product Manager (On-Site)

Insight GlobalMonroe, NC, United States
Full-time
Monroe, NC (On-Site / Wednesdays remote).Product Manager / Technical Product Manager.This role requires strong technical acumen, strategic prioritization, and hands-on experience in Agile and DevOp...Show moreLast updated: 17 days ago
  • Promoted
Global Head of Cloud Alliances

Global Head of Cloud Alliances

CanonicalCharlotte, NC, United States
Full-time
Global Head of Cloud Alliances.Be among the first 25 applicants.Global Head of Cloud Alliances.Get AI-powered advice on this job and more exclusive features. Canonical is a leading provider of open ...Show moreLast updated: 30+ days ago
  • Promoted
Lead Information Security Engineer - Palo Alto Firewalls

Lead Information Security Engineer - Palo Alto Firewalls

Wells FargoCharlotte, NC, United States
Full-time
Wells Fargo is seeking a Lead Information Security Engineer - Palo Alto Firewalls to join our Chief Technology Office (CTO). Learn more about the career areas and business divisions at wellsfargojob...Show moreLast updated: 1 day ago
  • Promoted
Security Engineer

Security Engineer

PhaxisFort Mill, SC, United States
Full-time
Remain current on security trends, standards, regulations, and tools.Ensure cybersecurity files are maintained and current. Hold security review meetings regularly with relevant stakeholders.Monitor...Show moreLast updated: 12 days ago