Jobs and Careers
TR

Cybersecurity Compliance Senior Consultant – Policy Adherence & Change Management

Truist
United Statesfull_timeVerifiedPosted 16 Jan 2026

About the role

The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.

Need Help?

If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).

Regular or Temporary:

Regular

Language Fluency:  English (Required)

Work Shift:

1st shift (United States of America)

Please review the following job description:

Identifies and assesses Truist’s Corporate cybersecurity legal, regulatory and industry compliance. Develops and executes strategies for closing cybersecurity management compliance gaps, partners in the analysis of legal, regulatory and compliance initiatives. Manages cybersecurity risk and compliance functions which include: establishing cyber polices and standards designed to safeguard the firm’s systems and data, performing assessments to identify, manage and mitigate cyber risks, assess and guide remediation of compliance gaps, maintain library of cyber risks and controls, and evaluate and track the cyber program maturity, security advisor to business segments and functions.

* This position will onsite, office-centric (5 days a week), based in a Truist core location (Atlanta GA, Charlotte/Raleigh/Wilson/Greensboro NC, Richmond VA).

ESSENTIAL DUTIES AND RESPONSIBILITIES

Following is a summary of the essential functions for this job.  Other duties may be performed, both major and minor, which are not mentioned below.  Specific activities may change from time to time.  

  • Establishes and manages a strategic approach to information/cyber security compliance according to laws and regulations. 
  • Analyzes requirements (i.e. data lineage, data mapping/tracing control, reporting requirement, threats, assess management, PCI, etc.) and provides regulatory assessments to develop and implement detailed strategy, plans and risk identification processes to support the creation of enterprise wide policies and standards, by effectively translating laws and regulations into operational functions and action steps for execution and compliance adherence. 
  • Monitors reporting on information/cyber security compliance and related risk & controls programs to a variety of audiences, including the regulators/examiners. Identifies, escalates, and develops solutions for potential regulatory risks and maintains an internal inventory of applicable U.S. laws and regulations, pertaining to Information and Cyber Security Ensures regulatory rules are incorporated into appropriate compliance policies, standards, processes, training, and monitoring/testing activities at an enterprise level. 
  • Works with different stakeholders to conduct complex cyber governance assessments and analysis, including presenting complex concepts in a clear and understandable manner to diverse audiences.   
  • May lead IT cybersecurity initiatives and typically leads moderately complex projects and participates in larger, more complex initiatives. Solves complex technical and operational problems. 

  
QUALIFICATIONS 
Required Qualifications: 

The requirements listed below are representative of the knowledge, skill and/or ability required.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. 

  • Bachelor’s degree preferably in regulatory affairs, business, organizational or compliance law, or financial services 
  • Eight years related experience at a large financial institution performing legal, compliance, or other duties such as risk management and/or project management 
  • Strong working knowledge on cybersecurity risks, frameworks, best practices and industry/regulatory requirements 
  • Strong knowledge on cybersecurity risks, frameworks, best practices and industry/regulatory requirements. Knowledge and experience in use of cyber security frameworks in assessing programs 

 
Preferred Qualifications:

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Truist

View company profile →