Enable job alerts via email!

Cybersecurity Principal Architect - Business Applications Architect

Truist

Wilson (NC)

On-site

USD 120,000 - 180,000

Full time

8 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Truist is seeking a Cybersecurity Principal Architect to define and maintain cybersecurity architecture. This pivotal role will focus on researching emerging technologies and ensuring security compliance while leading multiple complex security-related initiatives. Ideal candidates will possess extensive experience in network security and a deep understanding of security frameworks.

Benefits

Medical, dental, and vision insurance
401k plan
Paid vacation and sick days
Flexible work hours

Qualifications

  • 12+ years of experience in Information/Cyber Security.
  • Comprehensive experience in network security architecture.
  • Knowledge of regulations and standards.

Responsibilities

  • Define and maintain cyber security architecture.
  • Lead the planning and creation of security architecture.
  • Evaluate emerging technologies for security solutions.

Skills

Leadership
Network Security
Cyber Security
Compliance Knowledge
Communication

Education

Bachelor’s degree in Business, Management, or related field

Job description

Cybersecurity Principal Architect - Business Applications Architect

Join to apply for the Cybersecurity Principal Architect - Business Applications Architect role at Truist

Cybersecurity Principal Architect - Business Applications Architect

1 day ago Be among the first 25 applicants

Join to apply for the Cybersecurity Principal Architect - Business Applications Architect role at Truist

Get AI-powered advice on this job and more exclusive features.

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help?

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary:

Regular

Language Fluency: English (Required)

Work Shift:

1st shift (United States of America)

Please review the following job description:

Responsible for defining and maintaining cyber security architecture and technology plans with a focus on researching emerging technology, best practices, and applicable regulatory/compliance requirements then applying them to enable business solutions. Ensure that security controls are reliable and supports business initiatives and future growth through coordination with the Truist architectural community, Corporate Cyber Security (CCS) Engineering, Application Delivery Services and other stakeholders. Act as a lead subject matter expert on cyber capabilities, best practices, and security controls for your aligned applications and technology stacks. Initially, primary focus will be in Identity and Access Management and Cloud Security domains.

Essential Duties And Responsibilities

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Lead the planning, creation, and management of security architecture deliverables, including but not limited to requirements, solution designs, patterns, building blocks, target architectures, policies, standards, and guidance for all applicable platforms and environments to influence CCS, Enterprise Technology, and line of business decision making.
  • Acts as thought leader in new technology innovation, incubation, introduction and implementation critical to the CCS roadmap and Truist’s success. Build roadmap for acquiring, integrating, and implementing high-value technology and processes. Oversee efforts (e.g. proof of concepts) to measure and prove new technology value.
  • Lead development of system security context and preliminary system security concept of operations and define baseline system security requirements in accordance with applicable regulations and standards.
  • Create and maintain system security context and preliminary system security concept of operations and define baseline system security requirements in accordance with applicable regulations and standards.
  • Ensure that all acquired or developed security systems and security architectures integrate with enterprise security architecture.
  • Establish strong relationships with key technology stakeholders and create convergence by demonstrating credibility, empathy and expertise on business and technical issues. Facilitate, communicate, collaborate, and persuade others in the definition, adoption and implementation of a coherent architecture.
  • Evaluate existing or emerging technologies to consider factors such as cost, security, compatibility and usability and ensure security product lifecycles are managed proactively.
  • Demonstrate comprehensive experience and skill in Information Security (InfoSec) and cyber security technology and practices necessary to negotiate and persuade technology direction on security principals and tenets such as confidentiality, integrity, availability, authentication and non-repudiation.
  • Perform security reviews, identify gaps in security architecture and develop security risk management plans.


Qualifications

Required Qualifications:

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree in Business, Management, MIS-related field, or equivalent education and related training
  • Twelve years of progressively responsible leadership experience in Information/Cyber Security
  • Comprehensive experience in network security architecture, including design tools, methods, and techniques and the application of Defense-in-Depth principles; knowledge of network design processes, including understanding of security objectives, operational objectives and tradeoffs
  • Thorough knowledge of The Open Group Architecture Framework (TOGAF), including infrastructure, data, information security, applications, architectural concepts, and associated disciplines
  • Knowledge of:
    • Mainframe security, including access control, monitoring, integration with non-mainframe technologies, and virtualization
    • Authentication and authorization technologies including remote access
    • Application security and the security development lifecycle and ability to apply to client-server and web-based application development environments
    • Enterprise databases and database security, including database activity monitoring and database access control technologies
    • Encryption methods and technologies for data-in-transit and data-at-rest scenarios
    • Incident response processes
    • Denial of Service prevention mechanisms
    • Firewall technologies and intrusion prevention methods
    • Cloud technologies and hosting
    • Operating system hardening
    • Virtualization technologies
    • Mobile technologies
    • Encryption and key management technologies
    • Endpoint Protection (includes malware)
    • Data Loss Protection technologies
  • Experience with peripheral component interconnect and other security audit processes, evidence gathering and development/management of remediation plans used in resolution of finding


Preferred Qualifications:

Highly Preferred Qualifications & Experience

  • Broad knowledge across a wide range security and technology domains, and deep knowledge/experience in Identity and Access Management (IAM) and securing complex AWS and Azure architectures
  • Understanding of security foundations, frameworks, and standards such as hardening, least privilege, attack surface reduction, NIST SP800-series, NIST Cybersecurity Framework, Common Criteria, FFIEC, FISMA/FedRAMP, PCI DSS, CIS Benchmarks, and similar.
  • Applies in-depth and specialized expertise and/or a significant breadth of expertise in own professional discipline and other related disciplines.
  • Interprets internal/external business challenges and recommends best practices to improve products, processes, or services.
  • Mentors less experienced teammates to build their own technical expertise. Impacts the achievement of client, operational, project, service, and risk management objectives.
  • Works independently, with guidance in only the most complex and unusual situations.
  • Relevant industry experience: Financial services / Fintech industry experience (most desired) or other highly regulated / highly secured industry experience (ex. energy, PCI Level 1 merchant, big tech).
  • Specific solution expertise is desired in the following areas:
    • Digital Commerce, Digital Banking and Financial Systems architecture
    • Large data management architecture and integrations
    • Attack protection and mitigation technologies – DDoS, WAF, Bot, etc.
    • AWS / Azure Cloud - application migration, fit for purpose, etc.
    • Multifactor authentication, Risk Based Authentication
    • Application authentication models
    • Application Security – OWASP control and evaluation criteria
    • Cryptographic technology – Transit encryption, storage encryption, Hash, KMS, Digital Signature, etc.
    • Federated Identity Management / Identity Providers / Single Sign On (SSO)
    • Client authentication approaches for “anti-bot” technologies, signaling, and fraud prevention


Nice To Have Preferred Qualifications & Experience

  • Certification: CISSP, ISSAP, AWS, AZURE, SANS and/or TOGAF certifications
  • Masters degree in: Computer Science, Information Systems, Security, or other closely related field.
  • Experience with Agile Scrum (Daily Standup, Sprint Planning and Sprint Retrospective meetings)
  • Consulting or professional services backgrounds
  • Ideal candidate will also have experience in the following areas
    • Developing patterns, building blocks, target architectures, policies, standards, and guidance for all applicable platforms
    • Containerization, Micro-services, API, CI/CD
    • Content Delivery technologies
    • Fintech integration


Other Job Requirements / Working Conditions

Visual / Audio / Speaking

Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.

Manual Dexterity / Keyboarding

Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers.

Availability

Able to work all hours scheduled, including overtime as directed by manager/supervisor and required by business need.

Travel

Up to 25%

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

EEO is the Law Pay Transparency Nondiscrimination Provision E-Verify

Seniority level
  • Seniority level
    Not Applicable
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Engineering and Information Technology

Referrals increase your chances of interviewing at Truist by 2x

Get notified about new Cyber Security Architect jobs in Wilson, NC.

Senior Application Architect- Head of Platform Optimization

Raleigh-Durham-Chapel Hill Area 3 weeks ago

NO C2C- Python Engineer with AI frameworks experience

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cybersecurity Principal Architect - Business Applications Architect

Truist

Raleigh

On-site

USD 130,000 - 200,000

7 days ago
Be an early applicant

Senior Principal Application Architect

Gainwell Technologies

Town of Texas

Remote

USD 148,000 - 213,000

Today
Be an early applicant

Lead Database Architect (Remote)

Applicable Limited

Baton Rouge

Remote

USD 109,000 - 183,000

Today
Be an early applicant

Data Architect SME

AnaVation

Clarksburg

Remote

USD 120,000 - 160,000

Today
Be an early applicant

Senior Data Architect Clarksburg, WV

Tygart Technology, Inc.

Clarksburg

Remote

USD 120,000 - 160,000

Today
Be an early applicant

Staff Consulting Architect - Network/Virtualization

Nutanix

Raleigh

Remote

USD 160,000 - 273,000

Today
Be an early applicant

Staff Consulting Architect - Network/Virtualization

Nutanix

Baton Rouge

Remote

USD 160,000 - 273,000

Today
Be an early applicant

Staff Consulting Architect - Network/Virtualization

Nutanix

Harrisburg

Remote

USD 160,000 - 273,000

Today
Be an early applicant

Staff Consulting Architect - Network/Virtualization

Nutanix

Saint Paul

Remote

USD 160,000 - 273,000

Today
Be an early applicant