Back
Job   USA   VA   Richmond Area   Principal Engineer   Truist -

Cybersecurity Principal Engineer - Cyber Protection | Principal Engineer in Engineering Job at Tru1

This listing was posted on Professional Diversity Network.

Cybersecurity Principal Engineer - Cyber Protection

Location:
Richmond, VA
Description:

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status. Need Help? If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response). Regular or Temporary: Regular Language Fluency: English (Required) Work Shift: 1st shift (United States of America) Please review the following job description: The Cybersecurity Principal Engineer is responsible for enabling data integration and automation across Cybersecurity's Cyber Protection capabilities (vulnerability management and data protection) and delivery of Cyber Protection metrics. Responsible for planning, developing, designing, building, testing and implementation phases of cybersecurity technology projects in an agile environment, as well as understanding and leading existing capabilities towards technical innovation. Responsible for managing and leading a team of cyber engineers, mentoring junior and senior cyber engineers, and communications with pertinent stakeholders across Cyber Protection, Cybersecurity, and Truist management. Responsible for developing and maintaining the technical IT/cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), including every phase of the SDLC and software stack. ESSENTIAL DUTIES AND RESPONSIBILITIES This position is open to various locations and telecommute options. Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time. 1. Lead the development and maintenance of the technical IT/cyber capabilities including all phases of the software development lifecycle and software stack which includes threat modeling of application designs, static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), and penetration testing.2. Utilize modern programming languages (Python scripts, Go, Ruby, Java, etc.) to build or enable desired cyber capabilities. High focus on tool integration, automation, and reporting capabilities, leveraging existing industry best practices like API-first design.3. Focus on securing cloud solutions that are highly available and resilient.4. Collaborate with architecture, compliance, operations, and application teams to turn security reference architectures and policies into deployable design patterns.5. Mentor team on security practices and reusable patterns, i.e. models, testing, and experience to exercise judgment and identify innovative solutions.6. Assist in prioritizing demand for the engineering team resources by evaluating strategic value and impact (risk and complexity) of requested capabilities against available capacity and skills.7. Determine, recommend, and plan the use of new information security technologies, or modifications to existing equipment and systems that will provide capability for proposed project or workload, efficient operation and effective use of allotted resources.8. Lead the implementation of new information security technologies or integration of existing technologies including initial configuration, installation, change management, and operational handoff, such as inventory management, logging & intrusion detection, vulnerability scanning, secrets management, and identity and access management.9. Provide subject matter expertise on information security technologies on varying initiatives across Cybersecurity and Truist Enterprise Technology.10. Develop cybersecurity engineering strategies (long-term complex plans intended to achieve operational and financial results).11. Develop/invent highly innovative solutions within multiple information security technologies, theories and/or techniques that impact CIS strategy.12. Develop security designs for systems and networks with multilevel security requirements.13. Lead highly complex and visible projects with notable risk and complexity. QUALIFICATIONS Required Qualifications: The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.1. Bachelor's degree and 10 years of experience in systems engineering or an equivalent combination of education and work experience2. Strong functional and technical knowledge of information/cyber security capabilities with deep expertise in one or more of the following areas: Encryption, Data Security, Application Security, End Point Security, Identity and Access Management, Windows/Unix/Linux Systems Security, Mainframe Security, Perimeter Security, Network Security, Mobility Security, Cloud Security, Cyber Security, Cryptography, or Authentication Systems3. Strong understanding of service lifecycle management, strategic planning, and the cyber security landscape CISSP Certification Preferred Qualifications: 1. Master's degree or MBA and ten years of experience in business analysis or an equivalent combination of education and work experience.2. Working knowledge and experience with DLP technologies.3. Working knowledge AWS or Azure cloud deployments and implementation of CI/CD pipelines.4. Experience securing Azure or AWS cloud infrastructure running web applications and APIs written in Python, Go, Java or JavaScript.5. Strong knowledge of industry trends in cloud security technology.6. Hands-on experience with Terraform and Terraform Enterprise for the development and deployment of Infrastructure-as-Code (IaC) templates and modules within a cloud-based deployment model.7. Banking or financial services experience8. Prior management experience9. Experience in leading large-scale complex projects from beginning to end10. Other security certifications (e.g. CCNA Security, GSEC, GCED, GPPA, etc.)11. Other technical Certifications (e.g. CCNA, RHCE, MCSE, etc.) OTHER JOB REQUIREMENTS / WORKING CONDITIONS Sitting (if checked, indicate frequency)Constantly (More than 50% of the time) Visual / Audio / Speaking Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone. Manual Dexterity / Keyboarding Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers. Availability Able to work all hours scheduled, including overtime as directed by manager/supervisor and required by business need. Travel Minimal and up to 10% General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist's generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist's defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work. Truist supports a diverse workforce and is an Equal Opportunity Employer that does not discriminate against individuals on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status or other classification protected by law. Truist is a Drug Free Workplace. EEO is the Law Pay Transparency Nondiscrimination Provision E-VerifyPDN-9bffa356-c19e-4511-8df2-c8c4aad5336c
Company:
Truist
Industry:
Other
Visit Our Partner Website
This listing was posted on another website. Click here to open: Go to Professional Diversity Network
Important Safety Tips
  • Always meet the employer in person.
  • Avoid sharing sensitive personal and financial information.
  • Avoid employment offers that require a deposit or investment.

To learn more, visit the Safety Center or click here to report this listing.

More About this Listing: Cybersecurity Principal Engineer - Cyber Protection
Cybersecurity Principal Engineer - Cyber Protection is a Engineering Principal Engineer Job at Truist located in Richmond VA. Find other listings like Cybersecurity Principal Engineer - Cyber Protection by searching Oodle for Engineering Principal Engineer Jobs.