Cloud Security Architect (JR227030)

<strong>To heal, to teach, to discover and to advance the health of the communities we serve.<br /></strong><br /> <p>To learn more about the &ldquo;Montefiore Difference&rdquo; &ndash; who we are at Montefiore and all that we have to offer our associates, please click <a href="http://www.mymontebenefits.com/montefiore-difference" target="_blank" title="Montefiore Difference" rel="noopener noreferrer">here</a>.&nbsp;</p>

Yonkers, New York

Montefiore

<h4 class=""><strong>WHY TOP TALENT PICKS MONTEFIORE EINSTEIN&nbsp;<br /><br /></strong>Since its inception in 1884, Montefiore Einstein&rsquo;s mission has been to heal, to teach, to discover and advance the health of the communities we serve.<br /><br />Montefiore Einstein&rsquo;s state-of-the-art facilities include the&nbsp;<span class="">internationally-recognized</span>&nbsp;Children&rsquo;s Hospital at Montefiore Einstein and our Notable Centers of Excellence - Montefiore Einstein Center for Cancer Care, Montefiore Einstein Center for Heart and Vascular Care, Montefiore Einstein Center for Transplantation. Combined with a growing number of locations throughout the Bronx and Westchester County, Montefiore Einstein is the ideal organization to apply and hone your expertise.<br /><br /><span style="text-decoration: underline;"><a href="https://montefiore.wd12.myworkdayjobs.com/en-US/MMC/login" target="_blank" title="Candidate Home" rel="noopener noreferrer">Sign In</a></span>&nbsp;- Candidate Home<br /><span style="text-decoration: underline;"><a href="https://montefiore.wd12.myworkdayjobs.com/en-US/MMC/introduceYourself" target="_blank" title="Introduce Yourself " rel="noopener noreferrer">Introduce Yourself&nbsp;</a></span>-&nbsp;Please let us know about yourself so we can keep in touch about future job openings!<br /><br /><strong><span class="">NURSE&nbsp;RECRUITMENT&nbsp;HOTLINE:</span>&nbsp;<span class="">718-920-6697 (</span><span class="">Monday-Friday: 9am-4pm)&nbsp;&nbsp;</span></strong><br /><br /><strong>Check Out Our Employee&nbsp;<span style="text-decoration: underline;"><a href="https://healthymebenefits.com/" target="_blank" title="Benefits" rel="noopener noreferrer">Benefits</a></span></strong></h4> <h4 class="p1"><span style="text-decoration: underline;"><strong><a href="https://s3.us-east-1.amazonaws.com/vizi.vizirecruiter.com/MontefioreHealthSystem+RecruitingPractices.pdf" target="_blank" title="Safe Online Recruiting" rel="noopener noreferrer">Our Commitment to Safe Online Recruiting</a></strong></span></h4> https://www.montefiore.org/

keywords: position summary,pay rate,develop,quality assurance,design,leadership,security,solutions,data,experience,knowledge,certification,skills,initiative,education

Day / 9 AM-5:30 PM

$156,000.00-$195,000.00

Overview: <p><strong>In office 4-6 times a year, or as needed.</strong></p> <p><br />Design, develop, and implement secure, resilient cloud architecture, aligning with business objectives and regulatory standards. Lead the development of blueprints, design patterns, and reusable architecture frameworks for secure cloud deployments.</p>
Responsibilities: <ul> <li>Establish and enforce best practices for securing cloud environments, including network segmentation, data encryption, and identity access management, specifically tailored for cloud services.</li> <li>Develop governance policies and guardrails for cloud usage across business units, ensuring consistent application of security controls.</li> <li>Identify, assess, and prioritize cloud security risks, implementing appropriate mitigation strategies.</li> <li>Integrate security monitoring, logging, and alerting with existing SIEM to proactively manage threats.</li> <li>Design least-privilege IAM roles, fine-grained access policies, security groups, that integrate with existing privileged access management and multi-factor authentication mechanisms.</li> <li>Integrate identity federation and single sign-on (SSO) solutions with enterprise IAM solutions.</li> <li>Architect encryption strategies for data at rest, data in transit, and data in use that integrate with the enterprise HSM.</li> <li>Develop and enforce data protection policies, ensuring sensitive data is managed securely and complies with relevant data protection regulations.</li> <li>Develop security automation practices using Infrastructure as Code (IaC) tools.</li> <li>Design and oversee the implementation of comprehensive cloud native cybersecurity solutions that protect the organization&rsquo;s critical assets.</li> <li>Ensure that the company cloud architecture complies with relevant laws, regulations, and industry standards (e.g., HIPAA, HITECH, NYSDOH 405.46, HITRUST, etc.).</li> <li>Engage with external stakeholders, including vendors, partners, and regulators, to ensure the organization&rsquo;s cloud cybersecurity posture is robust and aligned with industry standards.</li> <li>Lead cross-functional teams in the design and implementation of cloud native security solutions, ensuring collaboration and alignment across the organization.</li> <li>Lead the continuous improvement of the organization&rsquo;s cloud cybersecurity architecture, ensuring it evolves to address new threats and challenges.</li> <li>Stay informed of the latest developments in cybersecurity, participating in professional networks and continuing education opportunities.</li> </ul>
Requirements: <p><strong>This position requires advanced skills in Terraform, Python, AWS Security Services, SCP/IAM Policy &ndash; JSON, CNAPP Tooling, AWS Config/Conformance Packs.<br /><br /></strong></p> <ul> <li>Deep understanding of cloud-based cybersecurity principles, including encryption, authentication, access control, and network security.</li> <li>Extensive experience in designing and implementing cybersecurity architectures for complex, enterprise cloud environments.</li> <li>Familiarity with common enterprise architecture frameworks including SABSA, OESA, TOGAF and similar.</li> <li>Expertise in cloud security, identity and access management (IAM), and security information and event management (SIEM) systems.</li> <li>Ability to translate research findings into practical solutions that address real-world security challenges.</li> <li>Strong strategic thinking skills, with the ability to develop and execute long-term cybersecurity plans.</li> <li>Ability to lead large-scale cybersecurity initiatives and projects, ensuring alignment with organizational goals.</li> <li>Excellent communication skills, with the ability to present complex technical information to both technical and non-technical audiences.</li> <li>Strong interpersonal skills, with the ability to build relationships and influence stakeholders at all levels of the organization.</li> <li>Experience in collaborating with cross-functional teams, including IT, legal, compliance, and business units.</li> </ul> <p>&nbsp;</p> <p><strong>Required Experience:</strong></p> <ul> <li>Experience: 10+ years of experience in cybersecurity, with a focus on solution design, architecture, and leadership.</li> <li>Experience in Leadership: Extensive experience leading cybersecurity teams and initiatives at a senior level.</li> <li>Experience in Solution Architecture: Hands-on experience designing and implementing cybersecurity solutions in large, complex organizations.</li> </ul> <p>&nbsp;</p> <p><strong>Education:</strong></p> <ul> <li>Master&rsquo;s degree or equivalent experience in Cybersecurity, Computer Science, Information Security, or a related field.</li> </ul> <p>&nbsp;</p> <p><strong>Certifications (Preferred but not required):</strong></p> <ul> <li>AWS Certified Solutions Architect (Professional).</li> <li>AWS Certified Security.</li> <li>AWS Certified AI Practitioner.</li> <li>Microsoft Certified Cybersecurity Architect Expert.</li> <li>EC-Council&rsquo;s Certified Network Defense Architect (CNDA).</li> <li>GIAC Defensible Security Architecture (GDSA).</li> <li>ISC2&rsquo;s CISSP - ISSAP (Information Systems Security Architecture Professional).</li> </ul> <p>&nbsp;</p> <p><strong>Personal Attributes:</strong></p> <ul> <li>Visionary Leadership: Ability to inspire and lead teams towards a shared vision of cybersecurity excellence.</li> <li>Curiosity and Innovation: A natural inclination to explore new technologies and push the boundaries of what is possible in cybersecurity.</li> <li>Integrity and Ethics: Commitment to ethical behavior and adherence to the highest standards of professional conduct.</li> <li>Resilience and Adaptability: Ability to navigate and lead in a fast-paced, ever-changing cybersecurity landscape.</li> <li>Strategic Thinking: Ability to see the big picture and develop long-term strategies that align with organizational goals.</li> </ul> <br /> <p>This position requires advanced skills in Terraform, Python, AWS Security Services, SCP/IAM Policy &ndash; JSON, CNAPP Tooling, AWS Config/Conformance Packs.</p>