Head of Cloud Security Tooling
Company: Truist Bank
Location: Charlotte
Posted on: April 2, 2026
|
|
|
Job Description:
The position is described below. If you want to apply, click the
Apply Now button at the top or bottom of this page. After you click
Apply Now and complete your application, you'll be invited to
create a profile, which will let you see your application status
and any communications. If you already have a profile with us, you
can log in to check status. Need Help? If you have a disability and
need assistance with the application, you can request a reasonable
accommodation. Send an email to Accessibility (accommodation
requests only; other inquiries won't receive a response). Regular
or Temporary: Regular Language Fluency: English (Required) Work
Shift: 1st shift (United States of America) Please review the
following job description: The Head of Cloud Security Tooling is
responsible for the strategy, selection, governance, and lifecycle
management of the enterprise cloud security technology stack,
including CSPM, CNAPP, CIEM, SSPM, vulnerability management, code
scanning, SIEM, identity tooling, and network/endpoint security.
This leader ensures security tools integrate seamlessly into cloud
platforms, DevSecOps pipelines, IAM, SOC, and compliance workflows.
The role ensures the enterprise maintains a unified, rationalized,
cost-optimized suite of security tools that supports both human
analysts and Agentic AI digital workforce agents. ESSENTIAL DUTIES
AND RESPONSIBILITIES Following is a summary of the essential
functions for this job. Other duties may be performed, both major
and minor, which are not mentioned below. Specific activities may
change from time to time. Tooling Strategy & Governance Own and
govern the Cloud Security Tooling Strategy, ensuring coverage
across IaaS, PaaS, SaaS, containers, and serverless. Define
multi-year roadmap for CNAPP, CSPM, CIEM, SSPM, SAST/SCA/DAST,
SIEM, secrets management, and cloud identity tooling. Rationalize
and consolidate overlapping tools; define standards and guardrails.
Evaluate emerging technologies such as eBPF runtime sensors,
LLM-powered detection, and AI-driven risk engines. Platform
Integration & Engineering Drive integration of tools into core
platforms: AWS/Azure native services GitLab/Terraform pipelines
CrowdStrike, Zscaler, Palo Alto ServiceNow VR/IRM Splunk SIEM/TI
Ensure strong telemetry collection, unified APIs, and microservices
for automated decisioning and MCP agent orchestration. Operational
Management Oversee licensing, procurement, budgeting, and vendor
relationships. Ensure enterprise-wide adoption of tools with
standard operating procedures and documentation. Enable SOC, Cloud
Security Operations, AppSec, and IAM teams with the right tools to
detect, prevent, and respond to cloud threats. Compliance &
Assurance Align tooling coverage with NIST 800-53 Rev5, FedRAMP
High, SOX, PCI, and internal policies. Ensure tools provide
evidence for controls such as: AC-, AU-, SC-, CM-, SI- families
SSPM and identity governance Continuous monitoring requirements for
regulators QUALIFICATIONS Required Qualifications: The requirements
listed below are representative of the knowledge, skill and/or
ability required. Reasonable accommodations may be made to enable
individuals with disabilities to perform the essential functions.
1. Bachelor’s degree and ten to twelve years of experience in
systems engineering or an equivalent combination of education and
work experience 2. Strong functional and technical knowledge of
information/cyber security capabilities with deep expertise in one
or more of the following areas: Encryption, Data Security,
Application Security, End Point Security, Identity and Access
Management, Windows/Unix/Linux Systems Security, Mainframe
Security, Perimeter Security, Network Security, Mobility Security,
Cloud Security, Cyber Security, Cryptography, or Authentication
Systems 3. Strong understanding of service lifecycle management,
strategic planning, and the cyber security landscape Preferred
Qualifications: 10 years in cybersecurity architecture,
engineering, or operations. Deep knowledge of cloud security tool
categories and enterprise deployment models. Strong vendor
management and contract negotiation skills. Expertise in
cloud-native architectures, containers, serverless, and DevSecOps
tooling. Familiarity with MCP/Agentic AI integration models.
Experience building unified control planes for cloud security
tools. Financial industry or highly regulated sector experience.
OTHER JOB REQUIREMENTS / WORKING CONDITIONS Sitting Constantly
(More than 50% of the time) Visual / Audio / Speaking Able to
access and interpret client information received from the computer
and able to hear and speak with individuals in person and on the
phone. Manual Dexterity / Keyboarding Able to work standard office
equipment, including PC keyboard and mouse, copy/fax machines, and
printers. Availability Able to work all hours scheduled, including
overtime as directed by manager/supervisor and required by business
need . Travel Minimal and up to 10% General Description of
Available Benefits for Eligible Employees of Truist Financial
Corporation: All regular teammates (not temporary or contingent
workers) working 20 hours or more per week are eligible for
benefits, though eligibility for specific benefits may be
determined by the division of Truist offering the position. Truist
offers medical, dental, vision, life insurance, disability,
accidental death and dismemberment, tax-preferred savings accounts,
and a 401k plan to teammates. Teammates also receive no less than
10 days of vacation (prorated based on date of hire and by
full-time or part-time status) during their first year of
employment, along with 10 sick days (also prorated), and paid
holidays. For more details on Truist’s generous benefit plans,
please visit our Benefits site . Depending on the position and
division, this job may also be eligible for Truist’s defined
benefit pension plan, restricted stock units, and/or a deferred
compensation plan. As you advance through the hiring process, you
will also learn more about the specific benefits available for any
non-temporary position for which you apply, based on full-time or
part-time status, position, and division of work. Truist is an
Equal Opportunity Employer that does not discriminate on the basis
of race, gender, color, religion, citizenship or national origin,
age, sexual orientation, gender identity, disability, veteran
status, or other classification protected by law. Truist is a Drug
Free Workplace. EEO is the Law E-Verify IER Right to Work
Keywords: Truist Bank, Huntersville , Head of Cloud Security Tooling, IT / Software / Systems , Charlotte, North Carolina