Anticipated End Date:2026-06-17
Position Title:Information Security Sr Advisor - Automation Engineer
Job Description:Location: Atlanta GA, Mason OH, Indianapolis IN, Norfolk VA, Louisville KY
Hours: Standard Working hours
Travel: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace. Alternate locations may be considered if candidates reside within a commuting distance from an office. Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law.
Position Overview: Develops, recommends, and implements enterprise information security policies, technical standards, guidelines, procedures, and integration solutions necessary to support secure cloud account provisioning, enterprise security platforms, and data at rest protection capabilities in compliance with established company policies, regulatory requirements, and generally accepted information security controls. Responsible for the design, development, and delivery of scalable cloud-native integration services, secure API frameworks, and automation solutions supporting enterprise encryption, access control, and secure transaction/messaging platforms across hybrid and cloud environments.
How You Will Make an Impact:- Supports system and network architecture initiatives for information and network security technologies
- Supports the development and execution of risk assessment methodologies to fit business, regulatory, and technical environment considerations
- Contributes to requirements gathering, system architecture, and software design activities for security products and services
- Assists with the discovery, evaluation, and response to emerging networking threats and security vulnerabilities
- Develops security incident response plans and strategies
- Provides trouble resolution and serves as point of technical escalation on complex problems
- Creates presentations and seeks IT management approval and acceptance of significant replacements or reconfigurations of major security systems serving the Enterprise
- May be assigned to project teams for technical consultation to business partners and developers
- Designs & engineers comprehensive access management and network security technical solutions based on business requirements and defined technology standards; works with architecture to update technology direction & strategy
- Develops reports supporting strategy and direction for management
- Capable of serving as technical merger & acquisition lead
- Acts as a subject matter expert among peers, with manager and senior management
- Must be capable of providing top-tier support for 5 or more of the information security technology common body of knowledge skill sets: 1) Access Control, 2) Application Security, 3) Business Continuity and Disaster Recovery Planning, 4) Cryptography, 5) Information Security and Risk Management 6) Legal, Regulations, 7) Compliance and Investigations, 8) Operations Security, 9) Physical (Environmental) Security, 10) Security Architecture and Design, 11) Telecommunications and Network Security
- Designs and develops secure integration services connecting cloud account/project provisioning systems, ServiceNow workflows, middleware platforms, and enterprise security tooling through APIs
- Builds resilient cloud-native automation services with observability, retry logic, fault tolerance, and secure service-to-service communication across distributed systems
- Develops and deploys containerized applications leveraging Kubernetes/EKS, CI/CD pipelines, Infrastructure as Code, and DevSecOps best practices
Required Qualifications: - Requires BS/BA in information Technology or related field of study and a minimum of 8 years experience in systems administration and security aspects of information systems, access management and network security technologies, network communications, computer networking, telecommunications, systems development and management, hardware, software, data, and people; experience with multiple technical and business disciplines required; requires broad-based experience to plan and design highly complex systems; or any combination of education and experience, which would provide an equivalent background.
Preferred Qualifications: - Experience developing integrations and automation services using Python, Java, or Go
- Experience building and consuming REST APIs and integrating with enterprise security platforms via APIs
- Experience with AWS cloud technologies including EKS, IAM, and secure cloud-native architectures
- Must have experience with Docker, Kubernetes, and containerized application deployments
- Preferred experience with CI/CD pipelines including GitHub Actions, Jenkins, or GitLab CI
- Preferred experience with Infrastructure as Code tools such as Terraform
- Strongly preferred experience implementing secure development practices including secrets management, dependency scanning, and code analysis
- Preferred experience with ServiceNow integrations, workflows, and middleware orchestration platforms
- Preferred experience with event-driven architectures including Kafka, SNS, and SQS
- Strongly preferred understanding of distributed systems, resiliency patterns, fault tolerance, and observability practices
- Must be a team player and participate as a team member in the automation and development process
- Security Certifications: CISSP and other advanced technical security certifications (e.g. Information Systems Security Architecture Professional, Information Security Engineering Professional, Certification and Accreditation Professional, or equivalent certifications) strongly preferred
Job Level:Non-Management Exempt
Workshift:1st Shift (United States of America)
Job Family:IFT > IT Security & Compliance
Please be advised that Elevance Health only accepts resumes for compensation from agencies that have a signed agreement with Elevance Health. Any unsolicited resumes, including those submitted to hiring managers, are deemed to be the property of Elevance Health.
NOTE: Workday keeps job postings active through 11:59:59 PM on the day before the listed end date. Example: If the end date is 3/13, the posting will automatically come down on 3/12 at 11:59:59 PM. In other words - the job is posted until 3/13, not through 3/13.