Cloud Principal Engineer - Security
Elevance HealthAbout the role
Anticipated End Date:
2026-05-04Position Title:
Cloud Principal Engineer - SecurityJob Description:
Cloud Principal Engineer - Security
Location: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace. Alternate locations may be considered if candidates reside within a commuting distance from an office.
Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law.
PLEASE NOTE: This position is not eligible for current or future visa sponsorship.
At Elevance Health, we are transforming how cloud technology supports healthcare delivery and innovation. The ideal Cloud Principal Engineer - Security candidate combines deep expertise in cloud platforms with advanced cloud security knowledge, and operates as a trusted advisor to senior leadership while mentoring cloud engineering and teams and driving a security-first culture.
The Cloud Principal Engineer - Security works with the business and technology stakeholders on the development and delivery of end-to-end application technology products and services for enterprise-wide technology application platforms that are aligned with the organization's strategic objectives and initiatives.
How you will make an Impact:
In partnership with OCISO and Enterprise Architecture, author and evangelize whitepapers/position papers covering all facets of cloud security.
Lead the design of secure, scalable, and resilient cloud architectures across AWS, Azure, and/or GCP environments.
Define enterprise cloud security policies, standards, reference architectures, and engineering guardrails aligned with Elevance Health policies.
Design compliance-automation with healthcare regulations and frameworks (HIPAA, HITRUST, NIST, ISO).
Design automated, secure patterns for IAM, encryption, network security, and zero trust architecture.
Lead threat modeling, risk assessments, and remediation strategies for cloud-based systems.
Champion DevSecOps practices; automated security testing, policy-as-code, and secure CI/CD pipelines.
Partner with enterprise architecture, application teams, and security organizations to embed security into the cloud SDLC.
Serve as a key advisor to leadership on cloud risk, strategy, and emerging technologies.
Partners with leadership to design processes that will shape the foundation for emerging cloud technologies.
Leads initiatives relating to cloud governance.
Recommends new technology solutions and products are delivered to stakeholders and align with enterprise strategic objectives.
Oversee the development and delivery of technical and/or functional specifications.
Oversee the technical design reviews and testing to architectural technologies for application solutions and products meet business requirements.
Assesses the compatibility and integration of solutions and products.
Provides continuous consulting services and direction on projects.
Champions and responsible for architectural standards, guidelines, principles, frameworks, and reference models.
Minimum Requirements:
Requires an BA/BS degree in Information Technology, Computer Science or related field of study a minimum of 11 years experience; multi dimensional platform experience, expert level experience with business and technical applications; or any combination of education and experience, which would provide an equivalent background.
Preferred Skills, Experiences and Competencies:
Hands on experience with AI tooling; IDE and Services
Strong expertise in cloud security including IAM, encryption, network security, and workload protection.
Hands-on experience with infrastructure-as-code and automation tools.
Deep understanding of networking concepts including VPCs, subnets, firewalls, and zero trust.
Hands on experience implementing DevSecOps and secure CI/CD pipelines.
Experience working in regulated environments, preferably healthcare.
Strong knowledge of compliance frameworks such as HIPAA, HITRUST, NIST, and SOC2.
Strong knowledge, an
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s