Senior Security Architect
SurescriptsAbout the role
Surescripts serves the nation through simpler, trusted health intelligence sharing, in order to increase patient safety, lower costs and ensure quality care. We deliver insights at critical points of care for better decisions — from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between providers.
Job Summary
The Senior Security Architect will have responsibility for developing, overseeing, and communicating the security architecture of Surescripts’ systems and infrastructure. The incumbent will work across engineering, operations, data, privacy, and security teams to ensure consistent designs and implementations of our network systems and applications. The incumbent will function as a facilitator of security architecture and design principles working with the engineering teams and product management to surface key issues and solutions for efficient and transparent decision making. The incumbent will leverage extensive design and development experience on multiple platforms with the ability to prototype and/or fully develop or integrate functionality.
The Senior Security Architect also will play a key role with new partners or acquisitions to determine how security infrastructures or services will integrate with Surescripts system architecture and to define a roadmap for integration. The incumbent is expected to represent Surescripts in industry workgroups to address technical and security standards and requirements of Surescripts.
Responsibilities
Develop and oversee enterprise security architecture, ensuring alignment with organizational goals, industry best practices, and regulations
Translate security policy and regulations into requirements for teams building solutions
Provide expert guidance on security controls and best practices for both on-premises and cloud-based solutions
Accountable to Chief Information Security Officer for ensuring that the services designed and developed support regulations and security posture
Advocate Surescripts solutions to the healthcare industry, standards organizations, and government advisory groups
Communicate the company's security, identity management, and trust strategy to engineers, technical leaders, business teams, executives, and customers
Design and implement long-term strategic goals and short-term tactical plans for securing corporate systems and software
Design security for monitoring, logging, IAM, encryption, data protection, detection and preventive controls
Continuously improve security design and review process across teams to efficiently deliver solutions while enhancing security
Monitor, analyze and communicate emerging security tools, industry standards, regulations, vulnerabilities, and cybersecurity threats to security and technology teams
Contribute to technical and business discussions for security strategy with an emerging threat landscape
Qualifications
Basic Requirements:
- Bachelor’s degree in computer science or related field or equivalent experience
- 12+ years of experience in related, progressive roles
- 7 years of cybersecurity experience
- 5 years of software development experience
- 5 years of architecture experience
- Experience with transactional based messaging systems
- Strong ability to utilize integrated development environments, CI/CD pipelines, and DevSecOps methodologies
- Proven experience in large scale systems design and implementation
- Experience performing security reviews for C# and Java languages
- Identity and Access Management (IAM) Standards and Methodology
- Public Key Infrastructure
- Identity Token Management
- Application and Systems Development Security
- Cryptography
- Hardware Security Modules
- Software Requirements development and Threat Modeling
- Guiding teams on vulnerability management and penetration testing remediation
- Experience in the use of threat intelligence services in a production environment
- Experience designing and deploying scalable solutions architectures, with a focus on distributed systems and cloud-native technologies.
- Experience with major cloud platforms (AWS, GCP, Azure) and their core services, including security and cost optimization best practices.
- Experience with cloud migrations, including refactoring existing workloads and designing new cloud-native applications.
Preferred Qualifications:
- Master's degree or equivalent in Computer Science or related field
- Minor or certification in statistics and machine learning
- Certified in Healthcare Privacy a
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s