Security Engineer - Directory Services

Habitat For Humanity Of Durham

Raleigh (NC)

On-site

USD 90,000 - 130,000

Full time

9 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Truist Financial Corporation is seeking a security engineering professional to design, implement, and operate cybersecurity controls across multiple identity and access platforms in the Raleigh/Charlotte/Atlanta region. The role focuses on threat modeling, testing, and incident response, with opportunities to guide junior engineers and shape security architecture.

Office-based, five days a week. The position requires a bachelor’s degree and at least five years of cybersecurity experience, with

Qualifications

  • Bachelor’s degree or equivalent education, training, and work-related experience.
  • Minimum of 5 years of experience in security engineering or related cybersecurity roles.
  • Advanced knowledge in cybersecurity principles, theories, and concepts.
  • Proven experience in software development lifecycle security practices.
  • Advanced knowledge of threat modeling, security testing, and penetration testing.
  • Experience implementing and managing complex information security technologies.

Responsibilities

  • Designs and implements cybersecurity solutions that protect critical assets, contributing to technical design and implementation approaches.
  • Performs threat modeling, security testing, and penetration testing to identify and remediate vulnerabilities.
  • Integrates security technologies in production environments with automation and handoff steps.
  • Acts as a technical escalation point for security issues, investigates root causes, and develops fixes.
  • Evaluates threats, tools, and design options to inform plans, priorities, and goals.
  • Collaborates with product and engineering to apply security architecture guidance and governance in development.
  • Develops and maintains security baselines, guardrails, and control implementations for regulatory compliance.
  • Leads incident response and basic forensics, following playbooks and coordinating with teammates.
  • Provides guidance and training to other security engineers through reviews and knowledge-sharing.
  • Leads significant security engineering workstreams coordinating efforts and ensuring quality.

Job description

Language Fluency: English (Required)

Work Shift: 1st shift (United States of America)

Job Grade: 111

Please review the following job description:

Come join a growing team that is responsible for the design/engineering/operation of the following foundational infrastructure technology services: Microsoft Active Directory Domain Services
Microsoft Active Directory Federation Services (ADFS)
Microsoft Active Directory Certificate Services
Microsoft DHCP
Microsoft DNS
Microsoft Entra Connect
Microsoft Distributed File System (DFS)
Microsoft Key Management Services (KMS)
Microsoft Identity Manager (MIM)
Microsoft Remote Desktop Licensing (RDL)
Quest product suite
Cisco Identity Services Engine (ISE)
For this opportunity: Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position (including, but not limited to H-1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN-1 or TN-2, E-3, O-1, or future sponsorship for U.S. lawful permanent residence status.)

This position is office-centric 5 days a week in one of the following offices. (Atlanta/GA, Charlotte/NC, Raleigh/NC, or Wilson, NC.)

ESSENTIAL DUTIES AND RESPONSIBILITIES

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Designs and implements cybersecurity solutions that protect critical assets within the job area, contributing to the technical design and implementation approach while following established strategies and patterns.

  • Performs threat modeling, security testing, and penetration testing for the platforms and services in scope, using structured analysis to identify and remediate significant vulnerabilities.

  • Integrates and configures information security technologies in production environments, implementing and refining configuration patterns, automation, and handoff steps for assigned systems or services.

  • Serves as a technical escalation point within the team for challenging security issues, investigating root causes and developing practical, reusable fixes that improve team workflows.

  • Evaluates relevant security threats, tools, and design options, and provides input that helps shape technical plans, priorities, and goals for the job area.

  • Collaborates closely with product and engineering teammates to apply security architecture guidance, secure by design practices, and governance controls in day-to-day development activities.

  • Develops and maintains security baselines, guardrails, and control implementations for systems and applications in the area of responsibility, helping support regulatory and policy compliance.

  • Leads the technical execution of incident response and basic forensic activities for services in scope, following playbooks, coordinating tasks with teammates, and suggesting improvements to procedures and tooling.

  • Provides guidance, coaching, and informal training to other security engineers and technical teammates, sharing best practices through design and code reviews and knowledge sharing sessions.

  • Leads significant security engineering workstreams or end-to-end processes within the job area, coordinating contributions from lower level technical professionals and reviewing outputs for quality and alignment.

Qualifications

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree or equivalent education, training, and work-related experience.

  • Minimum of 5 years of experience in security engineering or related cybersecurity roles.

  • Advanced knowledge in cybersecurity principles, theories, and concepts.

  • Proven experience in software development lifecycle security practices.

  • Advanced knowledge of threat modeling, security testing, and penetration testing.

  • Experience implementing and managing complex information security technologies.

Preferred Qualifications
  • Bachelor's degree and six years of experience or an equivalent combination of education and work experience.

  • Banking or financial services experience.

  • Certification Strongly Preferred: ServiceNow's Certified System Administrator (CSA)

  • Knowledge of and experience with the following technology systems and platforms is preferred:

    • Microsoft Active Directory Domain Services

    • Microsoft Active Directory Federation Services (ADFS)

    • Microsoft Active Directory Certificate Services

    • Microsoft DHCP

    • Microsoft DNS

    • Microsoft Distributed File System (DFS)

    • Microsoft Key Management Services (KMS)

    • Microsoft Identity Manager (MIM)

    • Microsoft Remote Desktop Licensing (RDL)

    • Quest product suite

    • Hewlett Packard Enterprise physical servers

    • Dell physical servers

    • Windows Server operating systems (Windows Server 2025 through Windows Server 2012 R2)

  • PowerShell scripting knowledge and ability to write customized scripts is preferred.

  • Knowledge of networking and firewall rulesets is preferred

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation:

All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer - Directory Services
Security Engineer - Directory Services

ITSMF • Raleigh (NC)

On-site
USD 120,000 - 160,000
Vacation days
Paid holidays
Restricted stock units
+1
Security Engineer
Security Engineer

Truist • Atlanta (GA)

On-site
USD 120,000 - 160,000
Health insurance
Dental insurance
Vision insurance
+5
Senior Associate Security Engineer
Senior Associate Security Engineer

Truist Wealth • Charlotte (NC)

On-site
USD 110,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+6
Senior Associate Security Engineer
Senior Associate Security Engineer

Truist • Atlanta (GA)

On-site
USD 90,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+6
Cyber Incident Management Engineer
Cyber Incident Management Engineer

Truist • Atlanta (GA)

On-site
USD 110,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+2
Senior Associate Security Engineer
Senior Associate Security Engineer

Truist • Charlotte (NC)

On-site
USD 110,000 - 140,000
Medical insurance
Dental insurance
Vision insurance
+1
Cyber Incident Management Engineer
Cyber Incident Management Engineer

Truist • Charlotte (NC)

On-site
USD 140,000 - 190,000
Medical benefits
401k plan
Paid time off
Senior Associate Software Engineer
Senior Associate Software Engineer

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 95,000 - 135,000
Benefits package
Vacation and sick days
401k plan
Technology Operations Consultant - Sn. DevSecOps Engineer
Technology Operations Consultant - Sn. DevSecOps Engineer

Truist • Raleigh (NC)

On-site
USD 125,000 - 180,000
medical
dental
vision
+5
Principal Platform Engineer
Principal Platform Engineer

Information Technology Senior Management Forum • Charlotte (NC)

On-site
USD 140,000 - 200,000
Health benefits
401k plan
Paid vacation and sick leave