Talent.com
Cybersecurity Engineer - SAST Engineer/ DevOps
Cybersecurity Engineer - SAST Engineer/ DevOpsTruist • Raleigh, NC
Cybersecurity Engineer - SAST Engineer / DevOps

Cybersecurity Engineer - SAST Engineer / DevOps

Truist • Raleigh, NC
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
  • [job_card.part_time]
[job_card.job_description]

Essential Duties and Responsibilities

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Review proposed mitigations and verify that they effectively address identified vulnerabilities.
  • Identify any challenges or issues that might be related to VeraCode SAST scans.
  • Working with organizational stakeholders (Developers, Mitigation team, BISMs) to ensure they understand and can follow established procedures.
  • Provide troubleshooting support for scan related activities
  • Stay up-to-date with the latest information related to application security and source code review
  • Review and potentially implement upcoming and new opportunities to improve the effectiveness of the SAST program (e.g. VeraCode releases new functionality such as Container scanning)
  • Assist with identification and execution of program improvement opportunities
  • Manage day to day SAST related activities such as account, team, and application management
  • Provide SAST process related training for development teams
  • Continually improve the SAST program
  • Provide automation of repeatable tasks
  • Create and manage actionable metrics
  • Communicate changes and status to stakeholders

Qualifications

Required Qualifications :

The requirements listed below are representative of the knowledge, skill and / or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree and five years of experience in systems engineering or administration or an equivalent combination of education and work experience
  • In-depth knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection / prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security
  • Previous experience in planning and managing IT projects
  • Preferred Qualifications / Skills / Abilities :

  • Proficiency in using SAST and SCA tooling
  • Understand software development and testing methodologies and continuous integration / continuous delivery (CI / CD).
  • Understand static analysis tools and techniques – especially if they are up to date on some of the generative ai capabilities
  • Program language knowledge for commonly used languages such as C#, Java, Python, and JavaScript
  • Familiarity with common code deployment methods and automation tools such as Jenkins
  • Web application security knowledge and an understanding of the most common web application security vulnerabilities
  • An understanding of the SAST and SCA process - what it is, why it is used, and when.
  • An understanding of the abilities and limitations of SAST tooling
  • Knowledge of the software development life cycle, especially in areas of code development, testing, and deployment
  • Experience working with different frameworks such as NIST and OWASP
  • An understanding of different data sensitivity classification types such as personally identifiable information
  • Excellent communication skills
  • In-depth knowledge of application security vulnerabilities and how to mitigate them
  • Ability to work independently and as part of a team
  • Time management and organizational skills
  • Other Job Requirements / Working Conditions

    Sitting

    Constantly (More than 50% of the time)

    Visual / Audio / Speaking

    Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.

    Manual Dexterity / Keyboarding

    Able to work standard office equipment, including PC keyboard and mouse, copy / fax machines, and printers.

    Availability

    Able to work all hours scheduled, including overtime as directed by manager / supervisor and required by business need.

    Travel

    Minimal and up to 10%

    General Description of Available Benefits for Eligible Employees of Truist Financial Corporation : All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays.

    [job_alerts.create_a_job]

    Cybersecurity Engineer SAST Engineer DevOps • Raleigh, NC

    [internal_linking.similar_jobs]
    Nuclear Medicine Technologist

    Nuclear Medicine Technologist

    Advocate Aurora Health • Wake Forest, NC, United States
    [job_card.full_time]
    Wake Forest University Health Sciences - Academic Translational Imaging Program.Schedule Details / Additional Information : . Monday Through Friday 8am-5pm - variable.Adheres to department radiation saf...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Risk Consulting - Cloud Risk - Manager - Multiple Cities

    Risk Consulting - Cloud Risk - Manager - Multiple Cities

    EY • Raleigh, NC, United States
    [job_card.full_time]
    EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities. At EY, you’ll have the chance to build a career as unique as you are...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Cybersecurity Compliance Engineer

    Cybersecurity Compliance Engineer

    VirtualVocations • Raleigh, North Carolina, United States
    [job_card.full_time]
    A company is looking for a Cybersecurity Analyst.Key Responsibilities Develop, implement, and maintain secure cloud processes for various software and systems Collaborate with development teams ...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Cybersecurity Engineer

    Cybersecurity Engineer

    Truist Inc • Raleigh, NC, United States
    [job_card.full_time] +2
    Responsible for developing and maintaining the technical IT / cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), ...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Senior Cybersecurity Software Engineer

    Senior Cybersecurity Software Engineer

    Secmation • Cary, NC, USA
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Senior Cybersecurity Software Engineer.Location : Raleigh, NC |Huntsville, AL.Position Type : Full-Time | Hybrid.Signing Bonus and relocation assistance. Secmation is a proven, mission-focused enginee...[show_more]
    [last_updated.last_updated_30]
    Anesthesiology

    Anesthesiology

    D&Y • Dunn, NC, United States
    [job_card.full_time]
    Types of Cases : General, Cardiac, Neuro, Ortho, OB, Pediatrics.Supervision or independent : Are MDs supervising CRNAs? Yes. Shifts available : 8 hours : Required, 7a - 3pm, Day Shift : Required, Monday ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Internal Auditor - Cybersecurity

    Sr. Internal Auditor - Cybersecurity

    Charlotte Staffing • Raleigh, NC, United States
    [job_card.full_time]
    Truist Senior Internal Auditor.Truist Senior Internal Auditor is responsible for assisting in the completion and documentation of risk based internal audit assurance activities that may include com...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Staff DevSecOps Engineer

    Staff DevSecOps Engineer

    VirtualVocations • Raleigh, North Carolina, United States
    [job_card.full_time]
    A company is looking for a Staff Security Engineer - Product Security.Key Responsibilities Design, develop, and deploy self-service security tools and services for the internal security platform ...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Work from Home

    Work from Home

    HomeJobFinder • Godwin, NC
    [filters.remote]
    [job_card.full_time]
    Remote Opportunity : Link Posting Marketing Rep (No Experience Needed!) Are you self-driven, reliable, and ready to earn from anywhere? We’re looking for motivated individuals to jo...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Restaurant Delivery - Start Earning Quickly

    Restaurant Delivery - Start Earning Quickly

    Doordash • Lillington, North Carolina, United States
    [job_card.full_time] +1
    Why Deliver with DoorDash? DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day.As a Dasher, you’ll...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    M-3-19 - Senior DevOps Engineer (758983)

    M-3-19 - Senior DevOps Engineer (758983)

    Focused HR Solutions • Raleigh, North Carolina, United States
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Work currently can be performed remote with potential for onsite at the Client / manager’s discretion.Our client has an opening for a Senior DevOps Engineer (758983). This position is 12 months, with ...[show_more]
    [last_updated.last_updated_30]
    TurboTax (WFH) Customer Service - Entry-Level

    TurboTax (WFH) Customer Service - Entry-Level

    TurboTax • Wake Forest, North Carolina
    [filters.remote]
    [job_card.full_time]
    Work from home with TurboTax Product Expert.Get a $405 Certification bonus³.Work from home & set your own flexible schedule between 8am EST and 12am midnight EST Monday to Sunday⁴.Earn an ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Software Engineer - SDET - Data Mobility

    Senior Software Engineer - SDET - Data Mobility

    Dell • Butner, NC, Granville County, NC; North Carolina, United States
    [job_card.full_time]
    Senior Software Engineer - SDET – Data Mobility.The Software Engineering team delivers next-generation application enhancements and new products for a changing world. Working at the cutting edge, we...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Side Hustle Project Lead

    Side Hustle Project Lead

    Finance Buzz • Dunn, North Carolina, US
    [job_card.full_time] +1
    We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Snowflake Lead

    Snowflake Lead

    TechDigital Corporation • Raleigh, NC, United States
    [job_card.full_time]
    Mandatory Skills : Snowflake with Python Senior developer with Snowflake experience who understands Star Schema Methodology Mandatory Overall, 12 plus years of IT experience - Mandatory Good SQL Cod...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Hiring Now - Work from Home - No Experience

    Hiring Now - Work from Home - No Experience

    OCPA • Bunnlevel, North Carolina, us
    [filters.remote]
    [job_card.part_time] +1
    Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Telemedicine Physician

    Telemedicine Physician

    QuickMD • Creedmoor, NC, United States
    [job_card.full_time]
    About QuickMD : QuickMD is a leading telemedicine provider, delivering high-quality virtual care across 44 states.Since our founding in 2019, we have helped more than 100,000 patients access essenti...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Exec Director, Cloud Ops and Infrastructure

    Exec Director, Cloud Ops and Infrastructure

    Syneos Health Careers • Morrisville, NC, United States
    [job_card.full_time]
    Exec Director, Cloud Ops and Infrastructure.Syneos Health® is a leading fully integrated biopharmaceutical solutions organization built to accelerate customer success. We translate unique clinical, ...[show_more]
    [last_updated.last_updated_1_day] • [promoted]