Senior Associate AI Security Engineer
The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
RegularLanguage Fluency: English (Required)
Work Shift:
1st shift (United States of America)Please review the following job description:
***This role is 5 days a week in Charlotte or Atlanta Office***This team is responsible for securing Truist's adoption and use of Artificial Intelligence (AI) technologies through AI Security Posture Management (AiSPM), AI governance, risk management, and security review processes.
The team enables secure AI usage by assessing AI solutions, evaluating technology risk, identifying unauthorized AI usage, validating security controls, and supporting the safe deployment and operation of AI technologies across the enterprise.
Ideal talent will be someone with experience in cybersecurity, cloud security, security operations, risk management, or technology governance who understands enterprise technology environments and can quickly learn emerging AI technologies and associated security risks.
Experience with AWS and Azure environments, security monitoring platforms, cloud security tools, and AI technologies is preferred. Prior AiSPM experience is not required.
Assist in the design, planning, implementation, testing, and operationalization of AI security governance, posture management, risk assessment, and security review capabilities.
The role will support AI security reviews, Shadow AI investigations, control validation efforts, AI risk assessments, and AI security monitoring initiatives.
For AI Security, one part of the role involves evaluating AI use cases, technologies, and architectures against security and governance requirements. Another part focuses on identifying, assessing, and reducing risks associated with approved and unapproved AI technologies.
The successful candidate will help establish and mature processes, operate effectively in ambiguous situations, and partner across engineering, architecture, risk, compliance, legal, and business teams to enable secure AI adoption.
ESSENTIAL DUTIES AND RESPONSIBILITIES
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Conduct AI security reviews and risk assessments for enterprise AI use cases, technologies, and solutions.
Support AI governance processes and validate AI security controls against established requirements and standards.
Investigate and analyze Shadow AI activity using security monitoring, cloud security, and endpoint protection platforms.
Assess AI implementations for security, privacy, regulatory, operational, and data protection risks.
Develop and maintain AI security review methodologies, governance processes, and risk assessment procedures.
Implement and support AI posture management, monitoring, and reporting capabilities.
Identify, document, track, and coordinate remediation activities for AI-related risks and findings.
Analyze AI-related telemetry, detections, and security events to identify trends, risks, and emerging threats.
Collaborate with cross-functional teams including Security Engineering, Enterprise Architecture, Risk Management, Compliance, Legal, Technology, and Business Units.
Support the development and operationalization of AI security capabilities and risk reduction initiatives.
Relevant Technologies
CrowdStrike
Wiz
Microsoft Defender
Microsoft Purview
Zscaler
Azure AI Services
Azure OpenAI
AWS AI Services
Governance and Risk Management Platforms
AI Security Assessment Frameworks
Security Monitoring and Detection Platforms
Generative AI Technologies and Large Language Models (LLMs)
Technical Skills
Strong understanding of cybersecurity principles, risk management practices, and security controls.
Experience performing security assessments, technology reviews, investigations, threat analysis, or risk evaluations.
Knowledge of cloud technologies and security principles across AWS and/or Azure environments.
Familiarity with AI, machine learning, generative AI, or emerging technology security concepts.
Understanding of common AI security risks, including data leakage, prompt injection, excessive permissions, model misuse, and third-party AI supply chain risks.
Experience with security monitoring, posture management, detection, vulnerability management, or cloud security platforms.
Familiarity with security technologies such as CrowdStrike, Wiz, Microsoft Defender, Purview, Zscaler, or similar platforms.
Ability to analyze security telemetry, detections, and technology usage patterns.
Strong analytical and problem-solving capabilities.
Excellent communication and interpersonal skills.
Ability to collaborate effectively across diverse technical and business teams.
Ability to work effectively in ambiguous environments and adapt to evolving business requirements.
Self-motivated with a demonstrated ability to independently learn new technologies, security concepts, and emerging industry trends.
Required Qualifications
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor’s degree or equivalent education, training, and work-related experience.
Minimum of 3 years of experience in security engineering or related cybersecurity roles.
Developing knowledge in cybersecurity principles, theories, and concepts.
Experience in software development lifecycle security practices.
Proficiency in implementing and managing information security technologies.
Preferred Qualifications
Experience with cloud platforms such as AWS and Azure.
Familiarity with AI technologies, large language models, generative AI solutions, or AI governance concepts.
Experience with risk assessment, security review, compliance, audit, or governance processes.
Experience with cloud security, endpoint security, vulnerability management, threat detection, or posture management platforms.
Industry certifications such as CISSP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, Security+, or equivalent certifications.
Experience working with cross-functional teams in large enterprise environments.
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.