JOB SUMMARYThis role is responsible for designing, implementing, and operationalizing security architecture and controls across multi-cloud environments, including Azure, AWS, and GCP. Ensures cloud deployments are secure, compliant, and aligned with institutional policies, regulatory standards, and industry best practices. Acts as a subject matter expert on cloud security architecture, governance, risk management, and modern security technologies. Leads strategic security initiatives to strengthen UTSW's cloud security posture and reduce risk across all cloud-based systems and services. Works under the general supervision of the Assistant Vice President, Information Security.
Incumbent MUST RESIDE IN DFW AREA. Hybrid role requiring a weekly presence in the office.BENEFITSUT Southwestern is proud to offer a competitive and comprehensive benefits package to eligible employees. Our benefits are designed to support your overall wellbeing, and include:
- PPO medical plan, available day one at no cost for full-time employee-only coverage
- 100% coverage for preventive healthcare-no copay
- Paid Time Off, available day one
- Retirement Programs through the Teacher Retirement System of Texas (TRS)
- Paid Parental Leave Benefit
- Wellness programs
- Tuition Reimbursement
- Public Service Loan Forgiveness (PSLF) Qualified Employer
- Learn more about these and other UTSW employee benefits!
EXPERIENCE AND EDUCATIONRequired- Education
Bachelor's Degree in related field.
- Experience
5 years designing, securing, and implementing solutions in at least two of the following public cloud platforms: Azure, AWS, GCP and
2 years in an architect role with managing large cloud environments.
- Licenses and Certifications
(CISSP) CERT INFO SYSTEMS SECURTY PROF within 1 Year or
Cloud security certification (e.g., CCSP, AWS Security Specialty, Azure Security Engineer) Upon Hire
Preferred- Education
Master's Degree in related field
- Experience
Managing large cloud migrations in Azure & AWS environment for academic medical centers.
JOB DUTIES- Develop and maintain secure cloud architecture standards and reference designs for Azure, AWS, and GCP environments to support research, academic, and healthcare operations.
- Collaborate closely with the Cloud Engineering & operations team, Enterprise Architecture, DevOps, and Infrastructure teams to ensure secure design and implementation of cloud services and workloads.
- Work with application owners and development teams to integrate security into solution architectures and DevSecOps pipelines.
- Engage with senior leadership, compliance, and business stakeholders to align cloud security initiatives with institutional goals and regulatory requirements.
- Conduct threat modeling and security risk assessments for new and existing cloud deployments and services.
- Lead the development, implementation, and enforcement of cloud security policies, standards, and procedures.
- Evaluate and integrate cloud-native and third-party security tools (e.g., CSPM, CNAPP, CASB, IAM solutions) in collaboration with technical teams.
- Manage and operate cloud security posture management (CSPM) platforms such as Wiz, including configuring policies, monitoring findings, analyzing risks, and working with stakeholders to remediate vulnerabilities.
- Provide technical expertise in interpreting Wiz findings, correlating them to institutional risk, and translating technical issues into actionable remediation plans.
- Serve as the technical expert for investigating and responding to cloud security incidents, working closely with Information Security Operations and Incident Response teams.
- Perform security reviews and architecture assessments of cloud solutions to identify gaps and recommend mitigation strategies.
- Track and interpret compliance requirements relevant to cloud services (e.g., HIPAA, GDPR, Texas DIR) and collaborate with Compliance teams to ensure adherence.
- Develop key performance indicators (KPIs) and executive reporting metrics to measure cloud security program effectiveness and communicate outcomes to leadership.
- Mentor team members and promote knowledge sharing across Information Security, Cloud, and Architecture teams.
- Participate in enterprise security architecture reviews and advise on secure design patterns for cloud adoption and migration projects.
- Perform other duties as assigned.