Ensemble Health Partners

Cybersecurity Architect

Ensemble Health Partners$163K — $245K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field; or equivalent experience
  • 5 to 8 years of information security experience
  • Minimum of 2 years in a cybersecurity or security architecture role
  • Experience designing and securing cloud, application, infrastructure, and data environments
  • Experience conducting threat modeling and risk assessments
  • Familiarity with HIPAA, HITRUST, and NIST Cybersecurity Framework requirements

Responsibilities

  • Design and review security architectures using secure-by-default principles
  • Develop and maintain threat models for assigned systems
  • Participate in architecture and design reviews, providing security guidance
  • Contribute to the cybersecurity architecture roadmap and evaluate emerging technologies
  • Serve as a subject matter expert on security architecture for various teams
  • Promote zero-trust security principles and least-privilege access models
  • Mentor engineers on secure design practices and adherence to security standards
  • Translate regulatory requirements into technical architecture

Benefits

  • Remote position with some travel required
  • Opportunity for professional development through mentorship
  • Exposure to cutting-edge security technologies and frameworks
  • Work in a collaborative environment with cross-functional teams
  • Potential for career advancement in a growing cybersecurity field
Full Job Description

The Opportunity:

The Cybersecurity Architect is responsible for designing, reviewing, and advancing security architecture across infrastructure, applications, cloud platforms, identity services, networks, and data environments. This hands-on technical role partners with engineering, infrastructure, product, and business teams to ensure security is integrated throughout the technology lifecycle. The Cybersecurity Architect develops threat models, conducts architecture and design reviews, and applies secure-by-design principles to support the organization's cybersecurity strategy.

This role translates business objectives and regulatory requirements, including HIPAA, HITRUST, and NIST Cybersecurity Framework requirements, into practical architectural solutions and security controls. The Cybersecurity Architect serves as a trusted advisor to technology teams, helping to ensure that solutions are secure, resilient, scalable, and aligned with organizational standards and regulatory obligations. The position reports to the Director of Cybersecurity and functions as an individual contributor.

Essential Job Functions:

  • Design and review security architectures for cloud, infrastructure, application, identity, network, and data environments using secure-by-default principles and established security patterns.
  • Develop and maintain threat models for assigned systems, identifying attack surfaces, security risks, and recommended mitigations.
  • Participate in architecture and design reviews, providing security guidance and  recommendations to project and engineering teams.
  • Contribute to the cybersecurity architecture roadmap and evaluate emerging technologies to support future-state security initiatives.
  • Serve as a subject matter expert on security architecture for engineering, infrastructure, and product teams.
  • Promote and support zero-trust security principles, least-privilege access models, and defense-in-depth strategies across enterprise systems.
  • Mentor engineers and technical teams on secure design practices and adherence to approved security standards and patterns.
  • Translate regulatory and security framework requirements, including HIPAA, HITRUST, and NIST CSF, into technical architecture requirements and control mappings.
  • Collaborate with Legal, Privacy, Compliance, and Governance, Risk, and Compliance (GRC) teams to ensure solutions meet internal policies and external regulatory requirements.
  • Conduct risk assessments and develop architecture recommendations, remediation strategies, and mitigation plans for leadership review.
  • Act as a liaison between cybersecurity, infrastructure, application development, and business stakeholders.
  • Provide security architecture consultation for new technology initiatives, projects, and third-party vendor integrations.
  • Support customer security reviews and third-party due diligence activities by articulating architecture decisions and validating security controls.
  • Partner with cybersecurity analysts, engineers, and architects to ensure effective security controls are implemented across enterprise systems, cloud platforms, and applications.

Employment Qualifications:

  • Bachelor's degree in Computer Science, Information Security, Information Technology, or a related field; or equivalent combination of education and relevant experience.
  • 5 to 8 years of overall information security experience.
  • Minimum of 2 years of experience in a cybersecurity or security architecture role.
  • Experience designing and securing cloud, application, infrastructure, and data environments.(Role requirement inferred directly from documented responsibilities.)
  • Experience conducting threat modeling, architectural reviews, and security risk assessments.
  • Experience working within regulated environments and supporting compliance requirements such as HIPAA, HITRUST, and NIST CSF.

Preferred Certifications:

  • One or more of the following certifications is preferred:
  • CISSP (Certified Information Systems Security Professional)
  • CCSP (Certified Cloud Security Professional)
  • AWS Certified Security – Specialty
  • Microsoft Azure Security Engineer Associate (AZ-500)
  • Equivalent cloud security or architecture certification

Knowledge, Skills and Abilities:

  • Security architecture design and review methodologies.
  • Threat modeling, attack surface analysis, and risk assessment.
  • Cloud security architecture across AWS and Azure environments.
  • Secure application, infrastructure, network, identity, and data architecture principles.
  • Zero Trust, least privilege, and defense-in-depth security strategies.
  • Knowledge of HIPAA, HITRUST, NIST CSF, and healthcare security requirements.
  • Strong communication and stakeholder management skills with the ability to translate technical security requirements into business-focused recommendations.
  • Ability to influence engineering teams and mentor technical staff on secure design practices.
  • Experience collaborating across cybersecurity, engineering, privacy, compliance, legal, and business organizations.
  • Strong analytical, problem-solving, and decision-making capabilities.
  • Must be inquisitive and demonstrate openness to innovation including AI to explore better processes and ways to alleviate friction and improve patient and client experiences.
  • This is a remote position; however, candidates must be willing and able to travel to and work onsite at client, temporary, or corporate office locations as business needs require.
  • This position pays between $163,700-$245,500 based on experience

This posting addresses s state specific requirements to provide pay transparency. Compensation decisions consider many job-related factors, including but not limited to geographic location; knowledge; skills; relevant experience; education; licensure; internal equity; time in position. A candidate entry rate of pay does not typically fall at the minimum or maximum of the roles range.

#LI-LP1

#LI-Remote

Similar Jobs

More Jobs at Ensemble Health Partners

More Information Technology Jobs

Find similar Cybersecurity Architect jobs: