Data Security Architect (Remote)

IQVIA

Durham, Pennsylvania(remote)

JOB DETAILS
SKILLS
Access Control, Amazon Web Services (AWS), Analysis Skills, Applications Security, Architectural Services, Artificial Intelligence (AI), Biology, Biotech and Pharmaceutical, CCSP - Cisco Certified Security Professional, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Clinical Data, Clinical Research, Clinical Trial, Cloud Applications, Cloud Computing, Cloud Storage, Communication Skills, Computer Science, Contract Negotiation, Cryptography, Data Analysis, Data Entry, Data Management, Data Modeling, Data Warehousing, Documentation Standards, Embedded Systems, Enterprise Architecture, Financial Services, GxP, HIPAA (Health Insurance Portability and Accountability Act), Healthcare, ISO (International Organization for Standardization), Information/Data Security (InfoSec), Infrastructure as a Service (IaaS), Intellectual Property (IP), International Business, Leadership, Legal, Loss Prevention, Medical Treatment, Mergers and Acquisitions, Metrics, Microsoft Windows Azure, Multiplatform/Cross-Platform, Network Operations Center, Operational Audit, Patient Care, Performance Metrics, Pharmaceutical Data, Platform as a Service (PaaS), Policy Development, Presentation/Verbal Skills, Regulations, Regulatory Compliance, Regulatory Requirements, Risk, Risk Analysis, Risk Modeling, Security Analysis, Security Architecture, Security Information and Event Management (SIEM), Security Infrastructure, Snowflake Schema, Standards Development, Strategic Planning, Structured Data, Taxonomies, Telemetry, Training Data Sets, Transformation Tools, U.S. National Institute of Standards and Technology (NIST), Unstructured Data, Vendor/Supplier Evaluation, Writing Skills
LOCATION
Durham, Pennsylvania
POSTED
3 days ago

The Data Security Architect role presents a foundational opportunity to establish and lead IQVIA’s Data Security Architecture practice. As a data-driven global life sciences company, IQVIA manages one of the world’s most complex and sensitive healthcare data estates — spanning clinical research, real-world evidence, commercial analytics, and patient-level health information across dozens of markets worldwide.


IQVIA’s data environment reflects the scale and complexity of a global enterprise with a significant M&A history: a hybrid estate encompassing on-premises data centers, multi-cloud infrastructure, modern analytical platforms, and a broad portfolio of operational and data movement technologies. Sensitive data — including PHI, PII, pharmaceutical client intellectual property, and clinical trial data — is distributed across this estate and must be protected consistently, at scale, and in alignment with a growing set of global regulatory requirements.


The Data Security Architect will define how IQVIA discovers, classifies, governs, and protects its data assets across the enterprise — building the architecture, standards, and program foundations that underpin regulatory compliance, vendor governance, and AI security as IQVIA advances its data platform strategy.

This role sits within the global Information Security organization and operates in close partnership with the Data Office, Cloud Security, Application Security, IAM, Legal, Privacy, and Compliance. It carries direct engagement with senior data platform and business stakeholders across IQVIA’s global business units.

Principal Responsibilities

  • Define and own IQVIA’s Data Security Architecture strategy, establishing a formal program from the ground up that is aligned to IQVIA’s hybrid, multi-cloud, and post-M&A data environment and the Data Office’s strategic platform direction.
  • Lead the evaluation, selection, and implementation of a Data Security Posture Management (DSPM) platform, encompassing sensitive data discovery, classification, exposure analysis, access risk assessment, and continuous posture monitoring across on-premises and cloud-hosted data environments.
  • Develop and maintain a comprehensive data security architecture covering data classification frameworks, data access governance, encryption standards, tokenization, masking, and data loss prevention controls across structured and unstructured data at scale.
  • Partner closely with the Data Office to align data security architecture with enterprise data governance and platform strategy, ensuring security controls are embedded in data lifecycle management across analytical, operational, and AI workloads.
  • Define security architecture standards and guardrails for IQVIA’s strategic data platforms, including cloud-native analytical environments (Snowflake, Databricks), data movement and transformation tooling, and operational database platforms, ensuring consistent security posture across a diverse and evolving estate.
  • Provide data security architecture input and oversight for platform migrations, legacy system decommissions, and M&A integration programs — assessing inherited data estates for sensitive data exposure, access control gaps, and regulatory risk, and defining remediation roadmaps aligned to integration timelines.
  • Define IQVIA’s data security approach for AI and LLM-integrated platforms, establishing policy and technical controls governing the safe use of AI capabilities embedded in or connected to data platforms, including controls around data inputs, model outputs, and prevention of regulated data exposure in AI workflows.
  • Architect data security controls for advanced analytics and AI/ML pipelines, including protection of training datasets, model pipeline integrity, RAG data source governance, and controls preventing unauthorized use of sensitive data in AI-connected systems.
  • Develop and govern IQVIA’s enterprise data classification taxonomy and policy framework, working with Legal, Privacy, Compliance, and business data owners to define classification tiers, handling requirements, and technical enforcement mechanisms across business units and regions.
  • Establish data access governance principles across IQVIA’s data platforms, including least-privilege access models, periodic entitlement reviews, and integration with IAM and PAM controls at the data tier.
  • Define encryption and key management architecture for data at rest and in transit across on-premises databases, cloud storage, data warehouses, and analytical environments, with particular attention to PHI and cross-border data transfer requirements.
  • Provide security architecture input to data platform vendor evaluations and contract negotiations, ensuring security requirements, data-use restrictions, telemetry controls, and audit rights are appropriately represented.
  • Support regulatory compliance requirements across GDPR, HIPAA, CCPA, GxP, and applicable regional data protection regimes, translating regulatory obligations into architectural controls and providing assurance evidence for audits and assessments.
  • Define metrics, KPIs, and reporting frameworks for data security posture, providing actionable visibility to CISO leadership and Data Office stakeholders on data risk, program coverage, and maturity progression.

Required Experience and Qualifications

  • 6–10 years of progressive experience in Information Security, Data Security, Security Architecture, or related technical roles, with demonstrated ownership of data-centric security programs or initiatives.
  • Deep knowledge of data security architecture principles, including data classification, access governance, encryption, tokenization, masking, and data loss prevention across hybrid environments spanning on-premises data centers and multi-cloud platforms.
  • Hands-on experience with enterprise-scale cloud data platforms (such as Snowflake, Databricks, or equivalent), with the ability to design and assess security controls including governance, access policy, and data sharing frameworks.
  • Experience with cloud environments (Microsoft Azure and/or Amazon AWS), including securing data services across IaaS, PaaS, and cloud-native analytical platforms.
  • Experience evaluating or deploying DSPM, data governance, or data classification platforms such as Varonis, Securiti, Cyera, Microsoft Purview, BigID, or equivalent.
  • Working knowledge of IAM and access governance principles as applied to data platforms, including RBAC, ABAC, and entitlement management across analytical and operational environments.
  • Experience conducting security architecture reviews in complex, heterogeneous data environments, including post-M&A assessments, legacy platform migrations, or on-premises data center programs.
  • Strong understanding of regulatory frameworks governing sensitive data, including HIPAA/HITECH, GDPR, CCPA, and GxP, with the ability to translate regulatory requirements into architectural controls across a diverse platform estate.
  • Foundational to intermediate knowledge of AI and ML security considerations, including LLM application risks, model pipeline security, and the data protection implications of AI features embedded in or connected to enterprise data platforms.
  • Demonstrated ability to operate at the intersection of security and data platform teams, communicating architecture decisions to data engineers, platform architects, business data owners, and senior stakeholders.
  • Experience within regulated industries — life sciences, healthcare, or financial services — with direct exposure to clinical, patient-level, or pharmaceutical data security requirements is preferred.
  • Bachelor’s degree in Computer Science, Information Security, Data Management, or equivalent practical experience is preferred.
  • Relevant certifications such as CISSP, CISM, CDPSE, CCSP, AWS/Azure Security Specialty, or CIPP/E are preferred but not mandatory.
  • Working knowledge of data governance and security frameworks such as NIST Privacy Framework, DAMA-DMBOK, ISO 27001, or similar is an advantage.
  • Strong written and verbal communication skills, including experience producing architecture documentation, security standards, and executive-level reporting for senior leadership and governance forums.

IQVIA is a leading global provider of clinical research services, commercial insights and healthcare intelligence to the life sciences and healthcare industries. We create intelligent connections to accelerate the development and commercialization of innovative medical treatments to help improve patient outcomes and population health worldwide. Learn more at https://jobs.iqvia.com

IQVIA is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other status protected by applicable law. https://jobs.iqvia.com/eoe

IQVIA is committed to integrity in our hiring process and maintains a zero tolerance policy for candidate fraud. All information and credentials submitted in your application must be truthful and complete. Any false statements, misrepresentations, or material omissions during the recruitment process will result in immediate disqualification of your application, or termination of employment if discovered later, in accordance with applicable law. We appreciate your honesty and professionalism.

The potential base pay range for this role, when annualized, is $112,200.00 - $312,700.00. The actual base pay offered may vary based on a number of factors including job-related qualifications such as knowledge, skills, education, and experience; location; and/or schedule (full or part-time). Dependent on the position offered, incentive plans, bonuses, and/or other forms of compensation may be offered, in addition to a range of health and welfare and/or other benefits.

About the Company

I

IQVIA

IQVIA™ is The Human Data Science Company™, focused on using data and science to help healthcare clients find better solutions for their patients. Formed through the merger of IMS Health and Quintiles, IQVIA offers a broad range of solutions that harness advances in healthcare information, technology, analytics and human ingenuity to drive healthcare forward. Healthcare is an industry designed to help humans. As a global community, we continuously invest and commit to advancing human health. To deliver value and real outcomes. To rise to the challenge to find the next breakthrough by making the most of increasingly limited resources. We are inspired by the potential and propelled by the possibilities. We share the vision to drive healthcare forward. To see how we can help accelerate progress and achievements. Others are developing these medical breakthroughs. We do our part by using breakthroughs in insights, technology and human intelligence to reimagine and deliver ways to help make them a reality. It’s bigger than better clinical trials. Or advances in technologies and analytics. Or faster insights. It’s about exploring a new path to better health outcomes via Human Data Science. It’s about harnessing the power of the IQVIA CORE™ to channel the insights, commercial and scientific depth, and executional expertise that drive maximum value for our customers. Motivated by the industry we help, we’re committed to providing solutions that enable life sciences companies to innovate with confidence, maximize opportunities, and, ultimately, drive human health outcomes forward.
COMPANY SIZE
10,000 employees or more
INDUSTRY
Healthcare Services
FOUNDED
1982
WEBSITE
https://www.iqvia.com/