Truist Bank-posted 2 days ago
Full-time • Senior
Onsite • Raleigh, NC
5,001-10,000 employees

This role is 5 days a week in the office in Raleigh or Atlanta We are seeking a talent who currently serves as the dedicated DAST Subject Matter Expert in order to mentor/ share technical experience with teammates as the DAST function matures. Responsible for developing and maintaining the technical IT / cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), including every phase of the SDLC and software stack. Design, plan, test and implement phases of cybersecurity technology projects. The primary role is as the subject matter expert (SME) for the management and administration Dynamic Application Security Testing (DAST) function. Responsible for developing and maintaining the technical IT / cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), including every phase of the SDLC and software stack. Design, plan, test and implement phases of cybersecurity technology projects. The primary role is as the subject matter expert (SME) for the management and administration Dynamic Application Security Testing (DAST) function.

  • Identify vulnerabilities in software applications through automatic and manual DAST scans including but not limited to custom scan configurations, complex authentication, and coding login sequences
  • Consult in the remediation of vulnerabilities and dispositioning of potential false positives
  • Stay informed about the latest security trends, threats, and best practices to continuously improve the DAST process and technologies.
  • Coordinate with IT and development teams to prioritize vulnerabilities and ensure timely remediation actions are taken.
  • Prepare and present vulnerability management reports to senior management, highlighting key findings and recommendations.
  • Demonstrates good judgement and problem-solving skills.
  • Reacts and adapts to changing circumstances rapidly.
  • Mentor other DAST teammates
  • Bachelor’s degree and eight years of experience in systems engineering or administration or an equivalent combination of education and work experience.
  • Deep specialized and/or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection/prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security.
  • Previous experience in leading complex IT projects
  • Working knowledge of Dynamic Application Security Testing (DAST) tools, such as BURP Professional, Qualys Web Application Scanning (WAS), WhiteHat Sentinel (Synopsys) or other comparable tools.
  • Experience in configuring and running manual application scans using BURP Suite or other open-source tools.
  • Experience with Selenium Scripting or other scripting languages.
  • Technical and/or Security certifications such as MCSE, CCNA, Network+, CISSP, OSCP, CEH, Security+. AWS, MS Azure.
  • All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position.
  • Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates.
  • Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays.
  • Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service