Associate Security Engineer (Cloud Security)

Truist Inc
United States
11 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Software System Penetration Testing Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Code Review Cyber Security DevOps Identity and Access Management Network Security
+5 more
Cloud Services Software Engineering Software Vulnerability Management Data Logging Scripting

Job description

Implements advanced technical, cybersecurity, and Azure/AWS cloud security engineering capabilities across the software development lifecycle. Supports cloud security architecture reviews and applies defined approaches for configuration assessments, threat modeling, security testing, penetration testing, identity and access management, and vulnerability remediation for assigned systems and cloud services. Executes and enhances cybersecurity technologies by baselining cloud and on-premises systems, monitoring results, and adjusting configurations, automation, and processes to deliver reliable, scalable, compliant, and secure solutions with direct impact on the job area, while continuously building technical skills and knowledge., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Implements cybersecurity solutions that protect critical assets across Azure, AWS, and on-premises environments, contributing to cloud design and configuration decisions while following established security strategies, patterns, and guidance.
  • Supports cloud security architecture reviews and performs security configuration assessments, threat modeling, and security testing for assigned platforms and services, using defined methods to identify and remediate vulnerabilities and misconfigurations.
  • Integrates and configures information security technologies in Azure and AWS test and production environments, applying and adjusting approved configuration patterns, infrastructure-as-code, automation, and handoff steps for assigned systems.
  • Implements and maintains cloud security controls, including identity and access management, least-privilege access, network security, encryption, logging and monitoring, vulnerability management, and secure configuration baselines.
  • Uses Azure and AWS native security services and approved enterprise cloud security tools to assess security posture, investigate findings, validate remediation, and improve preventive and detective controls.
  • Analyzes cloud security findings, determines applicable risk and remediation actions, collaborates with responsible engineering teams, and validates that identified security issues are appropriately resolved.
  • Investigates security issues escalated within the team for services in scope, performing root-cause analysis and implementing practical fixes that prevent recurrence.
  • Reviews relevant cloud threats, tools, architecture options, and shared-responsibility considerations, and provides input that supports technical plans and priorities for the job area.
  • Collaborates with product, platform, application, DevOps, and engineering teammates to apply security guidelines, secure-by-design practices, cloud governance requirements, and policy-as-code controls in day-to-day development and delivery activities.
  • Implements and maintains approved Azure and AWS security baselines, guardrails, and governance controls for assigned cloud services and environments, including AWS organizational guardrails and Azure policy controls within the assigned area of responsibility.
  • Supports incident response and forensic analysis for assigned cloud services by following established playbooks and using approved Azure and AWS logging, monitoring, and security capabilities.
  • Shares cloud security knowledge and best practices with technical teammates, offering informal guidance and support during code reviews, architecture discussions, design reviews, and pairing sessions.
  • Plans and manages own work to meet defined objectives and milestones, seeking feedback, pursuing self-development, and adjusting approaches to improve quality and effectiveness over time.

Requirements

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree or equivalent education, training, and work-related experience.
  • Minimum of 3 years of experience in security engineering or related cybersecurity roles.
  • Developing knowledge in cybersecurity principles, theories, and concepts.
  • Experience in software development lifecycle security practices.
  • Proficiency in implementing and managing information security technologies., * Minimum of 3 years of experience in security engineering, cloud security engineering, or related cybersecurity roles.
  • Developing knowledge of cybersecurity principles, theories, concepts, and cloud shared-responsibility models.
  • Hands-on experience implementing or assessing security controls for workloads, services, or platforms in Microsoft Azure and/or Amazon Web Services (AWS).
  • Experience with cloud identity and access management, network security, encryption, logging and monitoring, vulnerability management, and secure configuration practices.
  • Experience using scripting, APIs, infrastructure-as-code, CI/CD pipelines, or automation to implement, assess, and maintain cloud security controls.
  • Proficiency in implementing and managing information security technologies and analyzing cloud security findings through native or enterprise security tools.

Benefits & conditions

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:22 min

Analyzing differences between mobile and traditional backend DevOps

Mete Baydar Mete Baydar · World Congress 2025

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

3:27 min

Defining DevOps through its historical origins and foundational texts

Sonal Patil · LIVE

Videos

See all

Related articles

See all