IT Security Architect

Security EngineerSecurity EngineerFull TimeRemoteTeam 1,001-5,000Since 1965H1B No SponsorCompany SiteLinkedIn

Location

Arizona + 21 moreAll locations: Arizona, Colorado, Connecticut, Florida, Idaho, Illinois, Kansas, New Jersey, North Carolina, Ohio, Oregon, Maryland, Massachusetts, Michigan, Pennsylvania, South Carolina, Tennessee, Texas, Utah, Virginia, Washington, Wisconsin

Posted

30 days ago

Salary

$104.2K - $143.9K / year

Bachelor Degree5 yrs expEnglishAWSAzureCloudFirewalls

Job Description

• Owns the enterprise security architecture and multi-year roadmap, defining target state designs, security standards, and investment priorities; acts as a trusted advisor to executive leadership and drives cross functional delivery across IT, cloud, and product teams. • Establishes and governs enterprise identity, access, and data protection strategy, including SSO/MFA, federation (SAML, OIDC, OAuth), RBAC/ABAC, IGA lifecycle automation, privileged access management (PAM), and secrets and certificate management—enforcing least privilege and zero standing access at scale. • Defines and executes cloud security strategy across Azure and AWS by designing secure landing zones and zero trust guardrails; implements and operationalizes CSPM, CWPP, and CIEM capabilities to continuously reduce cloud risk and misconfiguration exposure. • Leads network and Zero Trust architecture modernization, including micro segmentation, NAC, next generation firewalls, secure remote access, and policy enforcement; delivers measurable isolation of critical systems and reduction of lateral movement risk. • Elevates security operations architecture and detection strategy, shaping SIEM and XDR correlation across endpoint, identity, email, cloud, and network telemetry; optimizes signal to noise, detection fidelity, and mean time to detect and respond (MTTD/MTTR). • Owns incident response architecture and organizational readiness, developing playbooks for containment, eradication, and recovery; ensures forensic readiness; leads post incident executive reviews and drives durable control improvements aligned to root cause analysis. • Scales security automation and orchestration through SOAR and API driven integrations, automating high impact detections, incident response workflows, access reviews, and vulnerability and patch pipelines; maintains policy as code and audit ready evidence collection. • Hardens enterprise email and social engineering defenses, enforcing DMARC, DKIM, and SPF, advanced BEC protections, and SEG/SASE integrations; analyzing attack trends to inform preventative controls and security awareness initiatives. • Owns enterprise vulnerability and patch governance, implementing risk based prioritization, remediation SLAs, executive dashboards, and validation of fixes; partners with Infrastructure and Cloud teams to continuously improve hardening baselines and exposure metrics. • Embed governance, risk, and compliance requirements into security architecture, aligning designs to HIPAA, HITECH, HITRUST, NIST CSF and 800 series controls, CIS Controls, and ISO 27001; delivering defensible metrics and board level reporting. • Applies healthcare specific security patterns for PHI, EMR/EHR platforms, and connected clinical devices, ensuring secure data flows, strong segmentation, and protection of patient care networks where applicable. • Leads security platform and vendor strategy, including evaluation and proof of value, selection, enterprise rollout, and optimization of EDR/XDR, SIEM, IAM/IGA/PAM, and cloud security platforms; demonstrate measurable risk reduction and return on security investment.

Job Requirements

  • Five years of experience in Information Technology required (multiple areas preferred).
  • Three years of experience in healthcare information security preferred.
  • Demonstrated knowledge of Network Hardware Configuration, Network Protocols, Information Security requirements for healthcare, and policy creation required.
  • Demonstrated knowledge of EMR products preferred.
  • Certified Information Systems Security Professional (CISSP) required.
  • Other IT Security Certifications Desired: CISM, CISA, Microsoft, Cisco.
  • Bachelor’s degree in computer science or information systems preferred.

Benefits

  • Competitive wages
  • Parental leave (4 weeks paid)
  • Housing programs
  • Childcare reimbursement
  • Medical
  • Dental
  • Vision
  • Tuition Assistance
  • Existing Student Loan Repayment
  • Specialty Certification Reimbursement
  • Annual Supplemental Educational Funds
  • Up to five weeks in your first year of employment and continues to grow each year.
  • 403(b) Retirement plan with immediate matching
  • Life insurance
  • Short and long-term disability
  • Up to $1,000 annual wellbeing reimbursement
  • Recreation discounts
  • Pet insurance

Related Categories

Related Job Pages

More Security Engineer Jobs

Security Architect

GuidePoint Security

We help organizations make smarter cybersecurity decisions that minimize risk.

Security Engineer30 days ago
Full TimeRemoteTeam 201-500H1B Sponsor

Security Architect providing cybersecurity guidance and recommendations in the Southeast region

Alabama + 9 moreAll locations: Alabama, Florida, Kentucky, Louisiana, North Carolina, Mississippi, South Carolina, Tennessee, Virginia, West Virginia

Senior Information Security Engineer

NMDP

We save lives through cell therapy.

Security Engineer30 days ago
Full TimeRemoteTeam 1,001-5,000Since 1987

Senior Information Security Engineer ensuring secure application development and operations.

AWSCloudSDLC
United States
Full TimeRemoteTeam 5,001-10,000H1B Sponsor

Senior Security Architect responsible for implementing network segmentation projects for large enterprises

Python
Massachusetts
$119.6K - $215.4K / year
Security Engineer30 days ago
Full TimeRemoteTeam 1,001-5,000Since 2012H1B Sponsor

CyberSecurity Advisor designing security solutions for Optiv clients.

Cyber Security
Kansas + 3 moreAll locations: Kansas, Oklahoma, Missouri, Texas