Security Architect

Posted 1hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Security Architect driving AI-first security solutions at healthcare technology company. Advising on security strategy and implementation for protecting intellectual property and customer data.

Responsibilities:

  • Actively participate in various business and enterprise architecture forums to champion cloud security interests and provide expertise on security-related issues
  • Create and maintain security strategy plans and roadmap,; influence the planning and execution of the roadmap with measurable benchmarks to show progress (or deficiencies requiring additional attention)
  • Develop and maintain Security Architecture processes and artifacts that enable the enterprise to implement security capabilities that are aligned with the business, technology, and threat drivers
  • Serve as the subject matter expert in secure cloud technology design, development, and implementation in support of products, solutions, and business functionality enablement
  • Establish architecture design principles and practices to improve performance, effectiveness, security, compliance, and scalability of solutions
  • Partner with cross-functional teams to assess cloud security risks by establishing security architecture with a focus on threat detection, security control enforcement, and incident response
  • Understand the offerings within Amazon Web Services (AWS) as well as other leading cloud service providers
  • Based on business requirements, plan and design cloud-native architecture that adheres to cloud security frameworks, standards, and best practices
  • Determine baseline security configuration standards for operating systems (e.g., OS Hardening), network segmentation, web application firewall, mobile devices, etc.
  • Review security technologies, tools, and services, and make recommendations to the broader security team for their use, based on security policy and procedures

Requirements:

  • Minimum of ten (10) years of experience with hands-on security architecture and/or engineering
  • Minimum of five (5) years of experience with Amazon Web Services (AWS) and Microsoft (MS) Azure
  • Bachelor’s degree in Computer Science, Information Systems, or equivalent practical experience
  • CISSP, CISA, CISM, CCSP, or other relevant security-related designation(s)
  • AWS Security Certification, AWS Solutions Architect Certifications
  • Azure Security Engineer, Azure Cybersecurity Architect Certifications
  • Experience with SaaS, IaaS, and PaaS architectural solutions within Amazon Web Services, Microsoft Azure, and other cloud providers
  • Experience in Cloud, DevSecOps, Container Security, IAM patterns, WAF/CDN/DDoS services, security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies
  • Experience in security architecture methodologies like NIST security framework and HITRUST standards, best practices like Mitre Att@ck framework, CIS benchmarks, and defense-in-depth
  • Experience with data protection, cryptography, key management, identity, and access management (IAM), network security within SaaS, IaaS, PaaS, and other cloud environments
  • Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies
  • Broad knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), public key infrastructure (PKI), antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies, and application controls
  • Experience architecting SIEM systems, threat intelligence platforms, security automation and orchestration solutions, IDS/IPS, file integrity monitoring (FIM), data loss prevention (DLP), and other network and system monitoring tools