Truist logo
Cybersecurity Risk Specialist
full-timeRichmond, Atlanta, Raleigh, Charlotte

Summary

Location

Richmond, Atlanta, Raleigh, Charlotte

Type

full-time

Explore Jobs

About this role

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help?

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary:

Regular

Language Fluency:  English (Required)

Work Shift:

1st shift (United States of America)

Please review the following job description:

Individual contributor to the Truist second line-of-defense (LoD2) Cyber Security Risk team responsible for independent risk oversight of one or more Cyber Security and Identity and Access Management domains within Information Risk management. Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate technology risk in the Truist environment.

Essential Duties and Responsibilities

Following is a summary of the essential functions for this job.  Other duties may be performed, both major and minor, which are not mentioned below.  Specific activities may change from time to time. 

1. Provides independent risk oversight (i.e. second line of defense/LOD2) for Truist Technology and related consult to Truist Business Units through the effective identification, mitigation, monitoring and reporting of technology risk and other related risks (e.g., operational, compliance) within Enterprise Technology.

2. Serve as a subject matter expert and steward of the Information Risk Framework to identify, report and mitigate information risks.

3. Execute independent assessment and oversight of the maturity of technology and adequacy of technology controls to achieve business outcomes for performance, stability, security and service availability.

4. Strengthen and sustains proactive risk culture through conducting effective risk focused management and partnership routines with technology teams and internal partners.

5. Review and challenge outcomes of first line-of-defense risk program execution.

6. Monitor legal, regulatory, compliance and audit matters for assigned Technology oversight area and ensures timely action.

7. Contribute to complex projects which may have both technology and enterprise-wide impact beyond risk management.

8. Comfortable and has demonstrated effectiveness in interdisciplinary, matrix environments. 

Qualifications

Required Qualifications:

The requirements listed below are representative of the knowledge, skill and/or ability required.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

1. Bachelor's Degree or an equivalent combination of education and experience.

2. Five+ years of banking, technology, operations or risk management experience including experience working within one or more Cyber Risk oversight domains such VPM, DLP, encryption, IAM, network security, security operations.

3. Strong business acumen / knowledge, problem solving, critical thinking and decision-making skills.

4. Excellent interpersonal and communication skills demonstrating the ability to establish credibility with all levels of management effectively. Demonstrated effective influencing skills.

5. Demonstrated consistent execution and delivery of high-quality work products.

6. Comfort with data and applying analysis to derive value-add insights.

7. Adept with Microsoft Office products.

Preferred Qualifications:

1. Master's degree in Business Administration (MBA) or advanced degree in Business Management, Technology or Finance.

2. Familiarity with risk measurement approaches including development of Key Risk Indicators and thresholds and associated reporting and analytics tools (e.g. Tableau).

3. Familiarity with enterprise Governance Risk and Compliance (eGRC) platforms and tools (e.g., RSA Archer).

4. Project Management certification.

5. Experience in Cybersecurity 3rd Party or Cyber Resilience Risk Management. 

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

EEO is the Law    E-Verify IER Right to Work

Other facts

Tech stack
Cybersecurity,Risk Management,Identity and Access Management,Operational Risk,Compliance,Technology Risk,Data Analysis,Interpersonal Skills,Communication Skills,Problem Solving,Critical Thinking,Decision Making,Microsoft Office,Project Management,Governance Risk and Compliance,Cyber Resilience Risk Management

About Truist

Truist Financial Corporation is a purpose-driven financial services company committed to inspiring and building better lives and communities. As a leading U.S. commercial bank, Truist has leading market share in many of the high-growth markets across the country. Truist offers a wide range of products and services through our wholesale and consumer businesses, including consumer and small business banking, commercial banking, corporate and investment banking, wealth management, payments, and specialized lending businesses. Headquartered in Charlotte, North Carolina, Truist is a top-10 commercial bank with total assets of $535 billion as of March 31, 2024. Truist Bank, Member FDIC. Learn more at Truist.com.

Learn more at Truist.com and see social media terms and conditions at Truist.com/SocialTerms.

Team size: 10,001+ employees
LinkedIn: Visit
Industry: Financial Services

What you'll do

  • The Cybersecurity Risk Specialist provides independent risk oversight for Truist Technology and consults with business units on technology risk management. They are responsible for identifying, mitigating, monitoring, and reporting technology and related risks.

Ready to join Truist?

Take the next step in your career journey

Frequently Asked Questions

What does a Cybersecurity Risk Specialist do at Truist?

As a Cybersecurity Risk Specialist at Truist, you will: the Cybersecurity Risk Specialist provides independent risk oversight for Truist Technology and consults with business units on technology risk management. They are responsible for identifying, mitigating, monitoring, and reporting technology and related risks..

Why join Truist as a Cybersecurity Risk Specialist?

Truist is a leading Financial Services company.

Is the Cybersecurity Risk Specialist position at Truist remote?

The Cybersecurity Risk Specialist position at Truist is based in Richmond, Virginia, United States and Atlanta, Georgia, United States. Contact the company through Clera for specific work arrangement details.

How do I apply for the Cybersecurity Risk Specialist position at Truist?

You can apply for the Cybersecurity Risk Specialist position at Truist directly through Clera. Click the "Apply Now" button above to start your application. Clera's AI-powered platform will help match your profile with this opportunity and guide you through the application process. You can also learn more about Truist on their website.