Truist Financial - Charlotte, NC

posted 3 days ago

Full-time - Mid Level
Charlotte, NC
Credit Intermediation and Related Activities

About the position

Leads the development and implementation of access models and access controls. Collaborates and consults with lines of business, technology staff, senior leaders, and other stakeholders to understand their access needs and provide input into their operating models from a security perspective. Develops a strategy for structuring and managing access across all Truist assets that leverages industry best practices such as Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC). Designs access controls to meet the business' access needs while adhering to the least privileged principle, enforcing separation of duties as appropriate, and enforcing other applicable security controls per the IAM standard. Continually evaluates and matures access controls.

Responsibilities

  • Collaborate and consult with lines of business, technology staff, senior leaders, and other stakeholders to understand and document their access needs
  • Provide input into organizations' operating models from a security perspective
  • Determine appropriateness of fine-grain versus coarse-grain access control approaches that balance security with operational flexibility
  • Develop a strategy for structuring and managing access across all Truist assets that leverages industry best practice such as Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC)
  • Design access controls that adhere to the least privileged principle, enforce separation of duties as appropriate, and enforce other applicable security controls per IAM standard
  • Lead and oversee implementation of access controls through partnership with system administrators, security staff, IAM managed services, and others
  • Proactively engage with stakeholders to understand their feedback and identify improvements towards better user experience
  • Direct managed services to configure Truist's Identity Governance and Administration (IGA) capability based on access control design and ensure adherence to service level agreements
  • Continually analyze the appropriateness of roles for users based on their job responsibilities and refine roles based on the least privileged principle
  • Provide subject matter expertise and mentor less experienced IAM role management staff

Requirements

  • Bachelor's degree and six to eight years of experience in systems engineering or administration or an equivalent combination of education and work experience
  • Deep specialized and/or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection/prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security
  • Previous experience in leading complex IT projects

Nice-to-haves

  • Bachelor's degree or equivalent
  • 10 years' experience with industry standard access control methods such as Access Control Lists (ACL), Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), Policy-Based Access Control (PBAC)
  • Strong expertise and demonstrated experience implementing RBAC subtypes as defined by NIST (e.g., flat, hierarchical, constrained, and symmetrical)
  • Strong expertise in identity, authentication and authorization concepts and methods
  • 10 years' demonstrated experience with best practice role mining and role engineering techniques, tools, and capabilities
  • 5 years' experience and expert-level technical knowledge of product knowledge and processes for specific IAM areas (e.g., Active Directory, RACF, Azure, AWS, Idaptive, Centrify, CyberArk, SailPoint, Oracle OIM, Persistent Ignite)
  • Ability to provide direction and mentor less experienced teammates
  • Excellent communication, collaboration, and organizational skills
  • Demonstrated leadership abilities, high accountability, drive, and initiative
  • Master's degree
  • 5 years' experience in strategic planning and applying industry best practices (NIST, FFIEC)
  • 5 years' technical experience working for a top 10 US bank
  • 5 years' experience executing the remediation of regulatory matters and internal findings
  • Experience with designing and implementing access models for Amazon Web Services (AWS) and Microsoft Azure
  • Strong knowledge of security frameworks, regulatory compliance, and security strategies
  • Knowledge of SOX, SOC1 and GLBA requirements and experience enforcing compliance
  • Cyber security certifications such CISA and CISSP

Benefits

  • Medical, dental, vision, life insurance
  • Disability, accidental death and dismemberment insurance
  • Tax-preferred savings accounts
  • 401k plan
  • 10 days of vacation (prorated based on date of hire and by full-time or part-time status)
  • 10 sick days (also prorated)
  • Paid holidays
  • Defined benefit pension plan (depending on position and division)
  • Restricted stock units and/or a deferred compensation plan (depending on position and division)
Job Description Matching

Match and compare your resume to any job description

Start Matching
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service