CISM

Principal Information Security Architect – Healthcare Tech | Remote

Principal Information Security Architect - Healthcare Technology

Location: Fully Remote

Industry: Healthcare / Health Services
Job Category: Healthcare IT

Job Summary

The Principal Information Security Architect - Healthcare Technology serves as a senior security architect and technology analyst, specializing in healthcare delivery systems and IoT. This role is responsible for integrating business needs, regulatory requirements, security considerations, and emerging technologies into system architecture and design. The position requires collaboration with cross-functional teams, technical leaders, and executive stakeholders to drive innovation and enhance security frameworks.

Essential Responsibilities

  • Develop scalable, secure system architectures and APIs that align with business objectives and industry best practices.

  • Provide strategic guidance on emerging technologies, risk management, and architectural solutions to senior leadership.

  • Influence enterprise solutions by defining and maintaining platform strategies, design patterns, and security frameworks.

  • Partner with engineering teams to provide ongoing architectural mentorship and ensure successful product implementation.

  • Establish strong relationships with key technical and business stakeholders to drive standardization and best practices.

  • Analyze current and future technology landscapes, synthesizing insights to support business-driven security solutions.

  • Advocate for and implement security best practices across cloud and on-premise environments to support high scalability, reliability, and compliance.

  • Provide consultative support on architecture strategy, risk assessment, and innovation-driven initiatives.

  • Mentor and guide technical teams on security and architecture principles.

  • Promote a culture of innovation, security, and continuous improvement.

  • Other duties as assigned.

Experience Requirements

Required:

  • 10+ years of experience in Information Security.

  • 4+ years of experience as an Information Security Architect with expertise in security domains such as Zero Trust, Data Protection, Identity & Access Management, and Threat Management.

  • 3+ years of experience with data management, distributed processing, high availability systems, and machine learning applications.

Preferred:

  • 3+ years of experience in Mergers and Acquisitions, including evaluation and integration.

  • 3+ years of experience leading technical teams.

Skills & Competencies

  • Excellent communication skills, with the ability to convey complex security concepts to both technical and non-technical audiences.

  • Strong technical expertise across cloud and on-premise environments, architectures, and APIs.

  • Proven ability to drive enterprise security programs and product strategies at scale.

  • Sound judgment in analyzing cyber risks and developing risk-appropriate solutions.

Education Requirements

Required:

  • Bachelor's degree in Computer Science or a related field, or equivalent experience.

Preferred:

  • Master’s degree in Computer Science or a related field.

Certifications (Preferred but Not Required)

  • The Open Group Architecture Framework (TOGAF)

  • Certified Information Security Professional (CISSP)

  • Certified Information Security Manager (CISM)

Additional Details

  • Work Type: Remote

  • Travel Requirement: 0% - 25%

  • Compensation: $150,000 - $180,000 (Base Salary)

  • Benefits: Full-time benefits package available

  • Relocation Assistance: Not available

  • Bonus & Commission: Not applicable

Equal Employment Opportunity Statement

This company is committed to equal opportunity employment and prohibits discrimination based on race, color, age, religion, sex, national origin, sexual orientation, gender identity, veteran status, disability, or any other protected category.

Candidates must comply with data security policies, including adherence to industry regulations such as HIPAA.

Security Clearance Required: No
Visa Sponsorship Available: No

 

Identity and Access Management Manager - USA, East Aurora New York - $130,000 to $160,000

Identity and Access Management Manager

USA, East Aurora New York

$130,000 to $160,000

 

Description

 

Our Company's Corporate Group is hiring an Identity and Access Management Manager

 

Job Summary:

 

The Identity and Access Management Manager (IAMM) is responsible for the team that will develop the framework and recommend an enterprise-wide strategy for the various directory and authentication services running operating systems such as Unix, Linux, and Windows. This individual will lead the team to perform the research, design, implementation, and on-going support plan of the proposed framework. The directory and authentication services support activities required to sustain the business activities globally including but not limited to engineering, manufacturing, operations, marketing, sales, and quality. These responsibilities include the design, documentation, and implementation of corporate identity and device access standards across all company subsidiaries globally. This team is also the expert level support (Tier 3) for several infrastructure applications like Active Directory (AD), Azure AD, Identity management, Device Management, and Certificate Management. 

 

 

Responsibilities:

 

·       Lead the team that will develop the framework and recommend an enterprise-wide strategy for the various directory and authentication services running operating systems such as Unix, Linux, and Windows.

·       Develop and monitor the individual training plans for direct reports.

·       Establish and oversee the work activities of direct reports.

·       Establish relationships will all groups and locations within the company to develop understanding of the requirements and impact of developing and implementing the directory and authentication services framework.

·       Effectively design and implement new technology in the company's server environment requires a though knowledge of the existing environment, a full understanding of industry standards, current technology trends, and new technology emerges.

·       Continuously develop and update leadership skills.

·       Design, document, implement, and audit corporate identity and access management standards for all company divisions and subsidiaries worldwide.

·       Plan, design, and implement, and provide on-going technical support (maintenance) and problem resolution of the company's AD, Azure AD, Identity and Device Management, and Certificate Authority systems and services.

·       Interface with key IT people worldwide to support the above activities and provide expert (Tier 3) support on an on-call basis for the operations staff which is 24 hour a day 7 day a week.

 

Directs the activities of all directory administrators from a technology perspective including all activities related to the Unix server activities (planning, design, documentation, implementation, administration), Windows server activities (planning, design, documentation, implementation, administration), Identity management systems, DNS, DHCP services, Unix services), and automation of the end user environment.

Implementation and support of remote access computing solutions.

 

 

Basic Qualifications:

 

·       Typically, a bachelor’s degree in MIS related discipline and 5 years’ relevant experience in hands on integration of applications using modern protocols (i.e., SAML, OIDC, Oauth 2.0, SCIM)

·       Experience with IAM systems - ADFS, Okta, Azure AD, Active Directory

·       Understanding of various authentication factors and risk-based authentication

·       Understanding of different access models – RBAC, ABAC, GBAC

·       Data analysis and reporting skills - Comparing user datasets across systems.

 

Preferred Skills:

 

·       Leadership of a small team

·       Strong communication skills verbally and written.

·       Understanding of LDAP queries, SQL and KQL

·       Experience Managing Security and Authentication Policies in Azure

·       Experience with Microsoft Identity Manager, Azure AD Connect

·       Knowledge of other authentication protocols - Kerberos, NTLM, LDAP, Basic

 

Desired Certifications (Not Required):

 

·       CISSP

·       CISM

·       Microsoft certs - AZ900, AZ800, AZ500, SC900, SC300

·       CompTIA Sec+

·       Certifications from IAM platforms and providers – Okta, Ping, Onelogin, Duo.