Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Truist

Senior Security Engineer – Certificate Automation Engineer

Truist

Senior Security Engineer automating certificate deployment and validation across Truist’s financial services infrastructure. Scaling PKI lifecycle automation, reducing operational risk, and supporting crypto agility.

Posted 8/5/2026full-timeCharlotte • North Carolina, Virginia • 🇺🇸 United StatesSenior💰 $120,000 - $160,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in automation for certificate management, including deployment, installation, and lifecycle management across various infrastructure platforms. Proficient in security engineering principles, with a strong focus on integrating automation with existing systems and ensuring compliance with security best practices.

Highest-signal resume keywords
Certificate Lifecycle ManagementAutomation Development Using AnsiblePublic Key Infrastructure (PKI)Security Engineering ExperienceIntegration With F5 Load Balancers

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Automation Framework DevelopmentScripting (Python)API IntegrationThreat ModelingSecurity TestingPenetration TestingCertificate DeploymentNetwork SecurityEncryptionCI/CD Pipeline Understanding
Soft Skills
Strong CommunicationCross-Functional Stakeholder Engagement
Tools & Technologies
AnsibleServiceNowVenafiF5 Load BalancersIISApacheNGINXMiddlewareDatabase ServersApplication Servers
Certifications & Qualifications
CISSPGIAC
Industry Keywords
CybersecurityInformation SecurityFinancial ServicesRegulated IndustriesCrypto Agility

Tech Stack

Tools & technologies
AnsibleApacheCloudCyber SecurityNGINXPythonServiceNow

About the role

Key responsibilities & impact
  • Design and implement automation for certificate installation, deployment, and binding across servers, load balancers, web servers, and middleware
  • Extend certificate issuance and renewal automation into end-to-end lifecycle automation, emphasizing last-mile deployment
  • Develop and maintain automation frameworks using Ansible, APIs, and scripting
  • Integrate certificate automation with F5 load balancers, IIS, Apache, NGINX, application servers, and database servers
  • Partner with application and infrastructure teams to onboard systems to automated certificate deployment
  • Establish standardized certificate installation and deployment patterns
  • Implement pre- and post-installation validation to confirm certificates are deployed, trusted, and actively serving traffic
  • Identify and remediate deployment-process gaps that cause outages, failed renewals, or misconfigurations
  • Troubleshoot certificate incidents and perform root cause analysis
  • Collaborate with engineering and business teams to align automation with operational and risk objectives
  • Contribute to shortened certificate lifecycle and crypto agility initiatives, including future quantum-safe requirements
  • Provide technical leadership and guidance on certificate deployment best practices
  • Lead or contribute to moderately to highly complex projects delivering scalable, resilient solutions

Requirements

What you’ll need
  • Bachelor’s degree or equivalent education, training, and work-related experience
  • Minimum 7 years of experience in security engineering or related cybersecurity roles
  • Deep specialized knowledge of cybersecurity principles, theories, and concepts
  • Proven experience with software development lifecycle security practices
  • Deep knowledge of threat modeling, security testing, and penetration testing
  • Experience implementing and managing complex information security technologies
  • Knowledge of encryption, Public Key Infrastructure (PKI), certificate authorities, identity management, and network security
  • Hands-on certificate lifecycle management experience, especially certificate deployment and installation across infrastructure platforms
  • Experience with servers, load balancers, and web/application servers
  • Experience developing automation using scripting or tools such as Ansible, Python, and APIs
  • Experience with certificate management platforms such as Venafi or similar enterprise PKI solutions
  • Experience integrating automation with ServiceNow or similar workflow/orchestration platforms
  • Experience automating deployment on F5 load balancers, IIS, Apache, NGINX, application servers, and middleware
  • Familiarity with ACME protocols and API-driven certificate deployment
  • Experience in large, complex enterprise environments, preferably financial services or highly regulated industries
  • Understanding of DevOps and CI/CD pipelines as they relate to certificate deployment
  • Exposure to crypto agility, shorter certificate lifecycles, and quantum-safe cryptography initiatives
  • Strong communication and cross-functional stakeholder engagement skills
  • Relevant certifications such as CISSP, GIAC, or cloud/security certifications are a plus

Benefits

Comp & perks
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Life insurance
  • Disability insurance
  • Accidental death and dismemberment coverage
  • Tax-preferred savings accounts
  • 401k plan
  • At least 10 days of vacation during the first year, prorated
  • 10 sick days, prorated
  • Paid holidays
  • Defined benefit pension plan, depending on position and division
  • Restricted stock units, depending on position and division
  • Deferred compensation plan, depending on position and division
  • Additional incentive pay