Cybersecurity Engineer (Microsoft Azure / M365 / AWS)
TruistEssential Duties and Responsibilities
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Identity & Access Management
Design and implement enterprise Azure AD solutions including Conditional Access, MFA, Privileged Identity Management (PIM), and passwordless authentication while ensuring zero-trust security principles
Configure and manage Azure RBAC, custom role definitions, and Azure AD roles to enforce least-privilege access across cloud resources and applications
Implement identity governance frameworks including access reviews, lifecycle management, and automated provisioning / deprovisioning workflows
Cloud Security Architecture
Architect and deploy defense-in-depth security controls using Azure Security Center, Microsoft Defender for Cloud, and Azure Sentinel for threat detection and response
Design and implement network security solutions including Azure Firewall, NSGs, Application Gateway WAF, and private endpoints to secure cloud workloads
Configure Azure Policy, Blueprints, and management groups to enforce security compliance and governance standards across subscriptions
Security Operations & Compliance
Monitor and respond to security incidents using Azure Sentinel SIEM / SOAR, implementing automated playbooks and investigation workflows
Implement data protection strategies using Azure Key Vault for secrets management, encryption at rest / in transit, and Azure Information Protection
Ensure compliance with regulatory requirements (SOC2, HIPAA, GDPR) through Azure Compliance Manager and continuous security assessments
DevSecOps & Automation
Integrate security into CI / CD pipelines using Azure DevOps, implementing infrastructure as code (Terraform / Bicep) with built-in security controls
Develop PowerShell and Azure CLI scripts to automate security tasks, compliance reporting, and identity management operations
Implement container security for AKS environments including pod security policies, Azure AD integration, and container image scanning
Required Qualifications
The requirements listed below are representative of the knowledge, skill and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor’s degree and five years of experience in systems engineering or administration or an equivalent combination of education and work experience
In-depth knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection / prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security
Previous experience in planning and managing IT projects
Preferred Qualifications
Bachelor’s degree and six years of experience or an equivalent combination of education and work experience
Banking or financial services experience
For a Build Engineer : Experience creating build definitions. Experience with setting up branching approach, defining merging approach. Experience supporting configuration of automated unit testing. Experience supporting configuration of build package, providing oversight when a build is checked-in into the CI server, handling build dependency impediments raised by the team. Experience managing the build process for multiple releases
Other Job Requirements / Working Conditions
Sitting
Constantly (More than 50% of the time)
Visual / Audio / Speaking
Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.
Manual Dexterity / Keyboarding
Able to work standard office equipment, including PC keyboard and mouse, copy / fax machines, and printers.
Availability
Able to work all hours scheduled, including overtime as directed by manager / supervisor and required by business need.
Travel
Minimal and up to 10%
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation : All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays.
Job Type
- Job Type
- Full Time
- Location
- Raleigh, NC
Share this job: