Director, Threat Remediation & Prevention
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Information Security, Data Security
Director, Threat Remediation & Prevention
Join to apply for the Director, Threat Remediation & Prevention role at Truist
1 day ago Be among the first 25 applicants
Please review the following job description:
The Director of Threat Remediation & Prevention will lead and mature Truist’s centralized security remediation and prevention programs. This executive-level role is responsible for unifying vulnerability and threat remediation workflows into a single system of record and governance model, enabling proactive, predictive, and preventative security operations across the enterprise. The ideal candidate will demonstrate the ability to independently develop and execute new programs and processes, and influence change across large, complex organizations—particularly in regulated cybersecurity environments.
Vulnerability Remediation
- Own and govern enterprise SLAs for vulnerability triage, remediation, and verification.
- Design and implement standardized automated workflows in Service Now Vulnerability Response (VR).
- Maintain dashboards and executive reporting on MTTR, SLA adherence, and risk reduction.
- Integrate remediation workflows with asset inventories, patch/configuration/change management systems.
- Ensure regulatory and policy compliance in remediation processes.
- Lead multi-stakeholder remediation workflows for threat assessments, intelligence, and post‑incident findings.
- Develop and enforce playbooks, escalation paths, and governance gates for high‑risk findings.
- Coordinate with IT, Engineering, Development, and Risk/Compliance teams to ensure secure and verifiable remediation.
- Establish program‑level metrics and drive continuous improvement through post‑mortems and trend analysis.
- Architect and lead a company‑wide threat prevention program focused on proactive controls and education.
- Champion secure‑by‑design principles and threat awareness across product and business teams.
- Translate threat intelligence into actionable guidance for operations and business decisions.
- Partner with Communications, HR, and Leadership to embed a culture of security ownership.
- Bachelor’s degree or equivalent
- 15 years’ technical experience working in the identity and access management control function
- 10 years’ experience as a manager
- 10 years’ experience in operational planning and execution
- 10 years managing simple and structured work
- 10 years managing complex and unstructured work
- 10 years’ experience leading diverse teams, such as teammates, contract workers, onshore, offshore resources, or managed services
- 5 years’ experience and expert‑level technical knowledge of product knowledge and processes for specific IAM areas (e.g., Active Directory, RACF, Idaptive, Cyber Ark, PRIVA, Oracle OIM, Persistent Ignite)
- 10 years’ experience and basic functional knowledge of tools and processes for the broader IAM capability
- 10 years’ experience and intermediate‑level strength in soft skills and interpersonal communications
- 10 years’ technical experience working for a top 10 US bank
- 10 years’ experience collaborating with the following functions: infrastructure, application development, application support, business unit risk management, technology risk, audit and external auditors
- 10 years’ experience collaborating with the following peer functions in corporate cyber security
- 10 years’ experience managing the remediation of regulatory matters and internal findings
- 10 years’ experience in strategic planning and applying industry best practices to operations (NIST, FFIEC)
- Bachelor’s degree in computer science, Cybersecurity, Information Technology, or related field.
- 12+ years of experience in cybersecurity, including vulnerability management, incident response, and security operations.
- 6+ years in leadership roles with demonstrated ability to lead cross‑functional teams and programs.
- Proven ability to independently develop and execute new programs and processes.
- Demonstrated success influencing change across large corporate environments.
- Expertise in Service Now VR, Splunk, Anvil Logic, Snowflake, and security…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).