Truist

Senior Associate Security Analyst (Application Security Team)

Truist  •  United States (Onsite)  •  4 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help?

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary:

Regular

Language Fluency: English (Required)

Work Shift:

1st shift (United States of America)

Please review the following job description:

We are seeking a Senior Associate Security Analyst to join our Application Security team and help improve the security of enterprise applications throughout the Software Development Lifecycle (SDLC).

This is an excellent opportunity for an early-career security professional who is passionate about cybersecurity, secure software development, and vulnerability management.

The role will provide hands-on experience working with developers, DevOps engineers, and security professionals to identify, assess, and remediate security vulnerabilities across a variety of technologies and platforms.

ESSENTIAL DUTIES AND RESPONSIBILITIES
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Analyze and triage vulnerabilities identified through application security scanning tools.

  • Assist development teams with understanding security findings and remediation recommendations.

  • Support vulnerability remediation efforts and track remediation progress.

  • Participate in application security control testing and validation activities.

  • Collect and document evidence required for security assessments and audits.

  • Generate and maintain security metrics, reports, and dashboards.

  • Collaborate with development and DevOps teams to promote secure coding practices.

  • Support integration of security controls and tools within CI/CD pipelines.

  • Assist in developing and maintaining security standards, procedures, and documentation.

  • Stay current on emerging application security threats, vulnerabilities, and industry best practices.

Technical Skills

  • Exposure to application security testing tools and methodologies, including:

    • Static Application Security Testing (SAST)

    • Software Composition Analysis (SCA)

    • Secrets Detection

    • Infrastructure as Code (IaC) Security

  • Basic knowledge of vulnerability management and risk assessment.

  • Experience with scripting or programming languages such as Python, Java, .NET, or similar.

  • Familiarity with Git-based development workflows and CI/CD pipelines.

  • Exposure to vulnerability scanning platforms such as GitLab SAST, J-Frog Xray, or similar tools.

  • Knowledge of cloud platforms is a plus.


Required Qualifications
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree in Information Technology, Computer Science, or related field.

  • At least 2 years of experience in business systems analysis, system support, or related roles within enterprise technology environments.

  • Strong understanding of business process analysis, requirements gathering, and documentation.

  • Knowledge of enterprise systems, software development lifecycle, and support processes.

  • Relevant certifications such as CBAP, CCBA, or equivalent are preferred.

Preferred Qualifications

  • Understanding of security controls, risk management, and compliance requirements.

  • Strong analytical, communication, documentation, and problem-solving skills.

  • Industry certifications such as CompTIA Security+, AWS Cloud Practitioner, Azure Fundamentals, or similar certifications are a plus.

  • Experience working in an Agile development environment is preferred.

  • Demonstrated eagerness to learn new technologies and grow within the application security field.

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

EEO is the Law E-Verify IER Right to Work

Truist

About Truist

Truist Financial Corporation is a purpose-driven financial services company committed to inspiring and building better lives and communities. As a leading U.S. commercial bank, Truist has leading market share in many of the high-growth markets across the country. Truist offers a wide range of products and services through our wholesale and consumer businesses, including consumer and small business banking, commercial banking, corporate and investment banking, wealth management, payments, and specialized lending businesses. Headquartered in Charlotte, North Carolina, Truist is a top-10 commercial bank with total assets of $535 billion as of March 31, 2024. Truist Bank, Member FDIC. Learn more at Truist.com.

Learn more at Truist.com and see social media terms and conditions at Truist.com/SocialTerms.

Industry
Finance & Insurance
Company Size
10,000+ employees
Headquarters
Charlotte, North Carolina
Year Founded
Unknown
Social Media