enterprise-level EITS Security Architect

Randstad
New York, NY, United States
2 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$208,000.0 - $228,800.0
Working hours
Shift work
Job source

Tech stack

Microsoft Windows Access Network Active Directory Apple Mac Systems Systems Engineering Unix Configuration Management Cyber Security Information Systems Data Security Linux Multi-Factor Authentication
+10 more
Identity and Access Management IT Management Network Security Open Systems Interconnection (OSI) PCI Data Security Standards Public Key Infrastructure Software Engineering TCP/IP Transmission Control Protocol (TCP) Information Technology

Job description

We are seeking an enterprise-level EITS Security Architect to serve as the critical bridge between the CISO’s strategic vision and the technical execution of our IT engineering and administration teams. Operating within the Information Security and Risk Management team, you will act as a subject matter expert ensuring robust security controls, risk mitigation, and strict compliance with HIPAA, NIST CSF, ISO27001, and state privacy laws across multiple healthcare business units., General Tasks and Responsibilities Will Include: - Lead and coach on the definition of security architecture, including the development and implementation of effective security administration processes for all platforms. - Actively engage in security architecture solutioning within key pre-implementation systems - Identify and implement emerging data access control technologies, information systems security issues, safeguards, and techniques. - Perform security reviews and identify security gaps in security architecture, resulting in recommendations for inclusion into the risk mitigation strategy

  • Provide Security Architecture guidance to Senior EITS Management within NYC Health + Hospitals and engage with multiple cross functional teams - Conduct application vulnerability scans, recognize vulnerabilities in security systems, and design countermeasures to identified security risks - Design security controls based on information assurance (IA) principles and tenets

  • Work with the enterprise architecture team to ensure that there is a convergence of business, technical and security requirements; liaise with IT management to align existing technical installed base and skills with future architectural requirements.

  • Develop a strong working relationship with the security engineering team to develop and implement controls and configurations aligned with security policies and legal, regulatory and audit requirements

  • Keep informed on current threats and industry regulations.

Requirements

Strong Knowledge of infrastructure, application and security protocols in addition to configuration management techniques and risk management/compliance/audit standards

  • Deep knowledge of HIPAA/HITECH, NIST CSF, ISO27001/27002 and PCI-DSS Standards and Requirements - Knowledge of encryption algorithms - Knowledge of known vulnerabilities from alerts, advisories, errata, and bulletins - Knowledge of network security architecture concepts, including topology, protocols, components, principles (e.g. application of defense-in-depth), and traffic flows across the network (e.g. TCP & TCP/IP, OSI, etc.)

  • Experience working with network access, identity, and access management (e.g. Active Directory, access federation, multifactor authentication, PKI) - Experience working with operating systems (Microsoft Windows, Linux, UNIX, MacOS X) - Knowledge of security management and secure configuration management techniques - Knowledge of software engineering - Skill in assessing the robustness of security systems and designs and determining how it should work (including its resilience and dependability capabilities) - Knowledge of IT supply chain security/risk management policies, requirements, and procedures

Other Preferred Skills:

  • Must possess a high degree of integrity and trust along with the ability to work independently

  • Participate in special projects as needed and perform other duties as assigned

  • Must be able to work independently as well as work as part of a fast-moving team

  • Must be able to work at various locations when necessary along with working various shifts

Educational Level:

  • A bachelor’s degree in information systems

  • CISSP, CISM, GSEC, CEH, or other relevant security qualification

Years of Experience:

  • A minimum of ten years of IT experience, with at least 7 years dedicated to IT/Cyber Security, including Solution Design

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all