Anticipated End Date:2026-09-25
Position Title:Principal Cloud Security Architect
Job Description:Principal Cloud Security ArchitectLocation: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace. Alternate locations may be considered if candidates reside within a commuting distance from an office.
Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law.
PLEASE NOTE: This position is not eligible for current or future visa sponsorship.
The
Principal Cloud Security Architect works with the business and technology stakeholders on the development and delivery of end-to-end application technology products and services for enterprise-wide technology application platforms that are aligned with the organization's strategic objectives and initiatives.
How you will make an Impact:- In partnership with OCISO and Enterprise Architecture, author and evangelize whitepapers/position papers covering all facets of cloud security.
- Lead the design of secure, scalable, and resilient cloud architectures across AWS, Azure, and/or GCP environments.
- Define enterprise cloud security policies, standards, reference architectures, and engineering guardrails aligned with Elevance Health policies.
- Design compliance-automation with healthcare regulations and frameworks (HIPAA, HITRUST, NIST, ISO).
- Design automated, secure patterns for IAM, encryption, network security, and zero trust architecture.
- Lead threat modeling, risk assessments, and remediation strategies for cloud-based systems.
- Champion DevSecOps practices; automated security testing, policy-as-code, and secure CI/CD pipelines.
- Partner with enterprise architecture, application teams, and security organizations to embed security into the cloud SDLC.
- Serve as a key advisor to leadership on cloud risk, strategy, and emerging technologies.
- Partners with leadership to design processes that will shape the foundation for emerging cloud technologies.
- Leads initiatives relating to cloud governance.
- Recommends new technology solutions and products are delivered to stakeholders and align with enterprise strategic objectives.
- Oversee the development and delivery of technical and/or functional specifications.
- Oversee the technical design reviews and testing to architectural technologies for application solutions and products meet business requirements.
- Assesses the compatibility and integration of solutions and products.
- Provides continuous consulting services and direction on projects.
- Champions and responsible for architectural standards, guidelines, principles, frameworks, and reference models.
Minimum Requirements: Requires an BA/BS degree in Information Technology, Computer Science or related field of study a minimum of 11 years experience; multi dimensional platform experience, expert level experience with business and technical applications; or any combination of education and experience, which would provide an equivalent background.
Preferred Skills, Experiences and Competencies:- Hands on experience with AI tooling; IDE and Services
- Strong expertise in cloud security including IAM, encryption, network security, and workload protection.
- Hands-on experience with infrastructure-as-code and automation tools.
- Deep understanding of networking concepts including VPCs, subnets, firewalls, and zero trust.
- Hands on experience implementing DevSecOps and secure CI/CD pipelines.
- Experience working in regulated environments, preferably healthcare.
- Strong knowledge of compliance frameworks such as HIPAA, HITRUST, NIST, and SOC2.
- Strong knowledge, and expertise, in cloud control policies and frameworks.
- Experience working with a variety of executives and their teams in a matrixed environment to deliver value and drive change. Cross-functional experience (e.g., strategy, change management, business process management).
- Industry certifications such as AWS Solutions Architect, AWS Security Specialty, Azure Security Engineer, or CISSP.
- Experience with containerization and orchestration (Docker, Kubernetes).
- Experience with cloud security tools such as CSPM, CWPP, SIEM, and secrets management platforms.
- Strong background in application security and secure coding practices.
- Experience in large-scale enterprise healthcare environments.
Job Level:Non-Management Exempt
Workshift:1st Shift (United States of America)
Job Family:IFT > Engineering/Dev
Please be advised that Elevance Health only accepts resumes for compensation from agencies that have a signed agreement with Elevance Health. Any unsolicited resumes, including those submitted to hiring managers, are deemed to be the property of Elevance Health.
NOTE: Workday keeps job postings active through 11:59:59 PM on the day before the listed end date. Example: If the end date is 3/13, the posting will automatically come down on 3/12 at 11:59:59 PM. In other words - the job is posted until 3/13, not through 3/13.