(LoD2) Technology Risk Specialist

Truist BankCharlotte, NC
Onsite

About The Position

Individual contributor to the Truist second-line-of-defense (LoD2) Technology Risk team responsible for independent risk oversight of one or more Technology Risk Framework domains and/or Business Unit Technology areas. Partner with Enterprise Technology teammates and stakeholders in assigned oversight areas, advise on risk-related topics, effectively challenge through risk programs, and independently evaluate technology risk in the Truist environment. For this opportunity, Truist will not sponsor an applicant for work visa status or employment authorization, nor will we offer any immigration-related support for this position. This includes, but is not limited to: H-1B, F-1 OPT F-1 STEM OPT F-1 CPT J-1 TN-1 TN-2 E-3 O-1 Future sponsorship for U.S. lawful permanent residence status. LOCATION: Please note that candidate must be located in or willing to self-relocate to one of the following locations: Charlotte, NC Raleigh, NC Richmond, VA Atlanta, GA Truist 'in office' requirement is 5 days per week. No full remote or relocation assistance available at this time.

Requirements

  • Bachelor's Degree or an equivalent combination of education and experience.
  • 5+ years of banking, technology, operations or risk management experience.
  • Strong business acumen / knowledge, problem solving, critical thinking and decision-making skills.
  • Excellent interpersonal and communication skills demonstrating the ability to establish credibility with all levels of management effectively. Demonstrated effective influencing skills.
  • Demonstrated consistent execution and delivery of high-quality work products
  • Comfort with data and applying analysis to derive value-add insights
  • Adept with Microsoft Office products.

Nice To Haves

  • Demonstrated ability to act as a trusted second line partner to first line Technology, Data, and Operations leaders, including Enterprise Architecture and CTO teams, balancing independent risk oversight with practical, solution‑oriented guidance
  • Experience operating in a second line of defense role within a regulated financial services environment, providing independent risk oversight, effective challenge, and credible advisory support to technology and engineering teams.
  • Strong expertise in cloud risk management, with hands-on knowledge of AWS and its use within financial institutions, including assessment of inherent and residual risk, control design, and ongoing monitoring.
  • Demonstrated understanding of both application and infrastructure risk in cloud environments.
  • Experience supporting enterprise cloud transformation initiatives (e.g., migration from on‑prem to cloud), ensuring risks are identified, managed, and aligned with the firm’s risk appetite and regulatory expectations.
  • Solid understanding of Secure SDLC and change management practices in a financial services context, including how controls are embedded across development, testing, deployment, and release cycles.
  • Prior developer, engineering, or architecture experience, or deep familiarity working with development teams, enabling effective oversight of CI/CD pipelines, standardized deployment patterns, and automated controls.
  • Ability to evaluate control effectiveness across key risk domains, including identity and access management, data protection, vulnerability management, incident response, business continuity, and third‑party risk.
  • Strong communication and influencing skills, with the ability to translate complex technical risks into clear, actionable insights for senior management, risk committees, auditors, and regulators.
  • Relevant certifications preferred, such as: AWS Certified Solutions Architect or Security – Specialty CISSP, CISM, CRISC, or similar technology risk credentials

Responsibilities

  • Provides independent risk oversight (i.e. second line of defense/LOD2) for Truist Technology and related consult to Truist Business Units through the effective identification, mitigation, monitoring and reporting of technology risk and other related risks (e.g., operational, compliance) within Enterprise Technology.
  • Serve as a subject matter expert and steward of the Technology Risk Framework to identify, report and mitigate technology risks.
  • Execute independent assessment and oversight of the maturity of technology and adequacy of technology controls to achieve business outcomes for performance, stability, security and service availability.
  • Strengthen and sustains proactive risk culture through conducting effective risk focused management and partnership routines with technology teams and internal partners.
  • Review and challenge outcomes of first-line-of-defense risk program execution.
  • Monitor legal, regulatory, compliance and audit matters for assigned Technology oversight area and ensures timely action.
  • Contribute to complex projects which may have both technology and enterprise wide impact beyond risk management.
  • Comfortable and has demonstrated effectiveness in interdisciplinary, matrix environments.

Benefits

  • medical
  • dental
  • vision
  • life insurance
  • disability
  • accidental death and dismemberment
  • tax-preferred savings accounts
  • 401k plan
  • vacation
  • sick days
  • paid holidays
  • defined benefit pension plan
  • restricted stock units
  • deferred compensation plan
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service