Principal Security Architect

BlueCross BlueShield of Tennessee, Inc.
Chattanooga, TN, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence User Authentication Cloud Computing Security Cyber Security Data Security Information Systems Security Architecture Professional Cloud Services Generative AI AI Platforms Information Technology

Job description

BlueCross BlueShield of Tennessee is hiring a Principal Security Architect. In this critical role, you’ll help drive security architecture across our hybrid environment. Fostering collaboration across EIT, Information Delivery and external stakeholders, you’ll ensure our designs and implementations are meeting BCBST security standards and keeping risk mitigation top of mind. This is a unique opportunity to bolster cloud security, influence AI adoption and reduce risk across the enterprise, safeguarding the 3.4 million members and communities we serve Our ideal candidates will bring:

  • Production experience in healthcare, hospital systems, payor systems, and/or other regulatory environments
  • Excitement around and (experience with securing) AI platforms like Vertex (or similar Generative AI cloud platforms).
  • Experience using threat modeling to identify the security patterns or controls needed in a solution design

Note:

  • While this is a fully remote role, final onsite interviews at our Chattanooga, Tennessee headquarters will be required.
  • Sponsorship is not available for this role., * Develop, maintain and communicate policies, standards and procedures to manage security functions relative to information technology systems (including systems under development), networks, applications, and voice and data communications that are consistent with applicable regulatory and compliance requirements.
  • Defines and develops security requirements using risk assessments, threat modeling, testing and analysis of existing systems.
  • Review system security measures and identity strengths, weaknesses and vulnerabilities in existing systems and plan to implement design and architectural changes to protect existing infrastructure and to incorporate future solutions.
  • Partners with stakeholders to provide risk-based guidance and encourage the adoption of security-compatible system design.
  • Cultivates a culture of security awareness and promotes continues education of personnel to ensure adherence to security policies and compliance requirements.
  • Tracks emerging security practices, standards, and keeps abreast of cyber threat information with actionable information influencing security architecture and design
  • Provide subject matter expertise on a broad range of information security standards and best practices, such as NIST, PCI, ISO 27001, MAR and others as applicable.
  • Work with Enterprise Architecture team, Information Security team, and appropriate stakeholders to prepare and present relevant information on security status as required.

Requirements

  • Bachelor’s Degree in Business, Computer Science or equivalent work experience required. Equivalent years of experience are determined as one year of technical experience for every year of college requested.

Experience

  • 7 years - Experience as an individual contributor leading a team in the design and implementation of one or more of the following: application and integration, data, technology and/or security architecture required.
  • Experience reviewing vendors and products, making sure they align with organizational security policies and standards
  • Experience using threat modeling to identify the security patterns or controls needed in a solution design
  • Extensive experience in information security and/or other IT role with a focus on security, performance and reliability

Skills\Certifications

  • Information Security certifications such as the Certified Information Systems Security Professional Certification (CISSP) or Certified Information Security Manager Certification (CISM) is preferred for this position
  • Advanced understanding of security protocols, cryptography, authentication, authorization, system and data security.
  • Working knowledge of current IT risks and experience implementing security solutions for on-premises and cloud solutions
  • Excellent oral and written communication skills as well as business acumen to communicate details about security infrastructure, policies, and practices to technical and nontechnical colleagues
  • Strong interpersonal and organizational skills
  • Ability to manage multiple projects and priorities
  • Ability to act as a mentor
  • Ability to work independently with minimal supervision or function in a team environment, sharing responsibilities, roles, and accountability
  • Ability to collaborate with a cross-functional teams to explain and enforce security measures
  • Ability to apply security concepts and controls to adapt to organizations’ needs and goals

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:36 min

Choosing between managed AI platforms and custom governance

Péter Farkas Péter Farkas · Europe 2026 Virtual

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · WWC 2024

2:37 min

Tracing the evolution from early AI to generative AI

Mike Mike · WWC 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:03 min

Career evolution in data engineering and AI platforms

Maria Apazoglou · Coffee With Developers

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all