Information Security Sr. Advisor, PAM
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+15 more
Job description
Develops, recommends, and implements enterprise information security policies, technical standards, guidelines, procedures, and other elements of an infrastructure necessary to support information security in compliance with established company policies, regulatory requirements, and generally accepted information security controls. Responsible for the selection and delivery of strategic network security, access control and secure transaction/messaging solutions., * Leads end-to-end implementation of the enterprise NHI management platform, from technical design through production deployment.
- Develops the implementation roadmap, deployment strategy, integration plan, and phased adoption approach.
- Configures and integrates discovery capabilities across enterprise environments.
- Establishes authoritative inventory and classification of non-human identities.
- Identifies service accounts, workload identities, machine identities, API keys, certificates, secrets, tokens, and other credentials.
- Develops processes to identify identity owners, applications, dependencies, privileges, and usage patterns.
- Drives remediation of orphaned, unmanaged, stale, or high-risk NHIs.
- Leads system and network architecture support for information and network security technologies.
- Leads development and execution of risk assessment methodologies to fit business, regulatory, and technical environment considerations.
- Leads the development of requirements, system architecture, and software design of security products and services.
- Leads the development of strategies for discovery, evaluation and response to new networking attacks.
- Develops security incident response plans and strategies.
- Provides trouble resolution and serves as point of technical escalation on complex problems.
- Creates presentations and seeks IT management approval and acceptance of significant replacements or reconfigurations of major security systems serving the Enterprise.
- Sets vendor strategy and direction.
- May be assigned to project teams for technical consultation to business partners and developers.
- Designs & engineers comprehensive access management and network security technical solutions based on business requirements and defined technology standards.
- Works with architecture to update technology direction & strategy.
- Develops reports supporting strategy and direction for management.
- Capable of serving as technical merger & acquisition lead.
- Acts as a subject matter expert among peers, with manager and senior management.
- Must be capable of providing top-tier support for 5 or more of the information security technology common body of knowledge skill sets: 1) Access Control, 2) Application Security, 3) Business Continuity and Disaster Recovery Planning, 4) Cryptography, 5) Information Security and Risk Management 6) Legal, Regulations, 7) Compliance and Investigations, 8) Operations Security, 9) Physical (Environmental) Security, 10) Security Architecture and Design, 11) Telecommunications and Network Security.
Requirements
- Requires BS/BA in information Technology or related field of study and a minimum of 8 years’ experience in systems administration and security aspects of information systems, access management and network security technologies, network communications, computer networking, telecommunications, systems development and management, hardware, software, data, and people; experience with multiple technical and business disciplines required; or any combination of education and experience, which would provide an equivalent background.
Preferred Skills, Capabilities, and Experiences:
- Experience implementing or operating an NHI security or machine identity management platform.
- Experience with CyberArk, HashiCorp Vault, Microsoft Entra, SailPoint, Saviynt, cloud-native identity platforms, certificate management, or similar technologies.
- Experience with Zero Trust, identity security, or privileged access transformation programs.
- Security Certifications: CISSP and other advanced technical security certifications (e.g. Information Systems Security Architecture Professional, Information Security Engineering Professional, Certification and Accreditation Professional, or equivalent certifications) strongly preferred.
- Experience planning and designing highly complex systems is strongly preferred.
- Experience with IAM, PAM, IGA, secrets management, or cloud IAM technologies.
- Experience integrating enterprise platforms using APIs, connectors, event streams, or automation frameworks.
- Working knowledge of major cloud platforms such as AWS, Azure, or Google Cloud.
- Candidates from all states are welcome, but they must reside within commuting distance of an Elevance Health Pulse Point office location.
Benefits & conditions
At Elevance Health, we are creating a culture that is designed to advance our strategy but will also lead to personal and professional growth for our associates. Our values and behaviors are the root of our culture. They are how we achieve our strategy, power our business outcomes and drive our shared success - for our consumers, our associates, our communities and our business.
We offer a range of market-competitive total rewards that include merit increases, paid holidays, Paid Time Off, and incentive bonus programs (unless covered by a collective bargaining agreement), medical, dental, vision, short and long term disability benefits, 401(k) +match, stock purchase plan, life insurance, wellness programs and financial education resources, to name a few.
Elevance Health operates in a Hybrid Workforce Strategy. Unless specified as primarily virtual by the hiring manager, associates are required to work at an Elevance Health location at least once per week, and potentially several times per week. Specific requirements and expectations for time onsite will be discussed as part of the hiring process.
The health of our associates and communities is a top priority for Elevance Health. We require all new candidates in certain patient/member-facing roles to become vaccinated against COVID-19 and Influenza. If you are not vaccinated, your offer will be rescinded unless you provide an acceptable explanation. Elevance Health will also follow all relevant federal, state and local laws.
About the company
Elevance Health is a health company dedicated to improving lives and communities - and making healthcare simpler. We are a Fortune 25 company with a longstanding history in the healthcare industry, looking for leaders at all levels of the organization who are passionate about making an impact on our members and the communities we serve.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Is Software Engineering Over-Saturated?
What Are The Top Skills Required For Azure Developers?
9 Ways to Make Money Hacking