The position is described below. If you want to apply, click the Apply Now button at the top or bottom of this page. After you click Apply Now and complete your application, you'll be invited to create a profile, which will let you see your application status and any communications. If you already have a profile with us, you can log in to check status.
If you have a disability and need assistance with the application, you can request a reasonable accommodation. Send an email to Accessibility (accommodation requests only; other inquiries won't receive a response).
Regular or Temporary:
RegularLanguage Fluency: English (Required)
Work Shift:
1st shift (United States of America)Please review the following job description:
Serves as a hands-on enterprise architect and principal software engineer for the organization’s most complex cryptographic, secrets-management, and platform-security initiatives.This is a builder’s role, not an advisory one - the incumbent designs and personally implements reference architectures, writes production-grade code, and proves out patterns in running systems before asking other teams to adopt them.
Combines deep software engineering craft across multiple languages and technical domains with real enterprise-architecture accountability and applied cryptography experience, delivering secure, scalable, highly available solutions that set the technical direction for the division.
ESSENTIAL DUTIES AND RESPONSIBILITIES
Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.
Architects and personally builds end-to-end software and platform solutions for complex, high-impact cryptographic and security initiatives - producing working reference implementations, not slideware, that inform new products and platforms across the division.
Owns the enterprise-architecture vision and its execution: translates strategic goals set by executives and senior leadership into concrete technical plans, then validates those plans by writing code, standing up prototypes, and operating them in real environments.
Designs, implements, and integrates cryptographic and secrets-management capabilities - key management, encryption/decryption services, PKI, certificate lifecycle, HSM integration, token/credential issuance, and non-human-secrets controls - into production systems.
Establishes advanced software engineering and secure-by-design standards, guardrails, and governance patterns, and demonstrates them through his/her own delivered work, enabling multiple teams to improve quality, reliability, and delivery outcomes.
Resolves the hardest technical problems in the domain - the recurring, ambiguous, cross-system issues no one else has cracked - by designing innovative, reusable architectures and measurable performance, reliability, and scalability improvements.
Goes arbitrarily deep in any technical domain required by the problem (distributed systems, APIs, data, infrastructure-as-code, container orchestration, applied cryptography), rapidly acquiring and applying expertise rather than deferring to specialists.
Partners with senior technology leadership, product, architecture, and risk teams to shape domain strategy and roadmaps, contributing solution patterns backed by deep technical insight and firsthand implementation experience.
Provides cross-team technical leadership, coaching, and mentoring through code reviews, design sessions, pairing, and knowledge sharing - raising the technical bar by example.
Evaluates emerging technologies, cryptographic techniques, and research relevant to the domain, building prototypes that provide measurable input into new products, features, or capabilities.
Leads large, complex, strategically important initiatives as an individual contributor, coordinating technical work across multiple teams while working independently with substantial autonomy and balancing innovation against risk.
Required Qualifications
The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Bachelor’s degree in Computer Science, Software Engineering, or related field.
Minimum of 10 years of professional experience in software development.
Deep knowledge of multiple programming languages, software architecture, and design principles.
Deep understanding of software development lifecycle, testing, deployment, and security practices.
Preferred Qualifications
Minimum of 10 years of professional software development experience, with a demonstrable, ongoing record of hands-on coding (not solely design or oversight).
Deep expertise across multiple programming languages, software architecture, and design principles, with the proven ability to master new technical domains quickly.
Demonstrated enterprise-architecture experience where the candidate both defined and implemented the architecture - reference implementations, working prototypes, or production systems he/she personally built.
Applied experience with cryptography and/or secrets management (e.g., encryption services, key/certificate lifecycle, PKI, HSMs, or platforms such as HashiCorp Vault).
Deep understanding of the full software development lifecycle, testing, deployment, and security practices.
Deep expertise in cloud-native architectures, microservices, container orchestration, and DevOps/CI-CD.
Hands-on experience with applied cryptography at scale - key management systems, HSM integration (e.g., Thales), certificate automation, or non-human/machine-identity secrets.
- Security certifications (e.g., CISSP, CISM, GIAC) and/or software certifications (e.g., CSDP) - valued as evidence of depth, not as a substitute for demonstrated building ability.
- Familiarity with regulatory and control frameworks relevant to financial services (e.g., SOX, GLBA, PCI).
General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truistoffers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.
Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

