Truist · Atlanta, GA

Salary
Posted
Jul 10, 2026
Location
Atlanta, GA
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A cybersecurity engineering role centered on administering and optimizing enterprise endpoint detection and response (EDR) infrastructure, with CrowdStrike Falcon as the primary platform. Day-to-day work covers sensor deployment, policy configuration, alert tuning, threat hunting, and incident response across endpoints and cloud workloads. The role suits security engineers with hands-on EDR administration experience and familiarity with frameworks such as MITRE ATT&CK.

Mid level · 3+ years · National · Full-time

Must have (2)
CrowdStrike Falcon, Microsoft Defender For Endpoint or SentineloneEDR
Nice to have (8)
WindowsmacOSLinuxMITRE ATT&CKSIEMPowerShell, Python, Osquery or LogscaleAzure, AWS or GCPFalcon Identity Protection

“or” means any one of them counts — you don't need all of them.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What gives you an edge
CrowdStrike Falcon3%

Rare in this occupation — lead with these, and say what you built with them.

What won't set you apart
EDR40%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095).

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (7)

No work location or metro area is specified in the posting; the CBSA fields are left blank. The role is US-based (Truist Financial is a US company and the posting references US work authorization).

The title is simply 'Cybersecurity Engineer' with no level modifier, so advertised seniority is Unspecified. The hard minimum is 3 years of experience in security engineering, which maps to Mid-level; the preferred qualification of 6 years is in the Preferred section and does not raise the hard gate.

The degree requirement states 'Bachelor's degree or equivalent education, training, and work-related experience,' so equivalent experience is explicitly accepted — no formal degree is hard-required.

CrowdStrike Falcon is listed in the Required Qualifications section as the primary EDR platform administered in this role, making it a hard gate. The posting notes comparable solutions (Defender for Endpoint, SentinelOne) as acceptable alternatives in the Preferred section, but the platform is central to the role's essential duties.

All endpoint OS coverage (Windows, macOS, Linux), MITRE ATT&CK, SIEM integration, scripting (PowerShell/Python/osquery/Logscale), cloud platforms (Azure/AWS/GCP), and advanced Falcon modules (Falcon Identity Protection, Logscale) appear exclusively under Preferred Qualifications.

A 'For a Build Engineer' paragraph appears at the end of Preferred Qualifications; it seems to be boilerplate or a copy-paste artifact unrelated to this cybersecurity engineering role and has not been extracted as skills.

No compensation figures are provided in the posting.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗