Dir Chief Information Security Architect

Integris Health Inc

Oklahoma City, OK

JOB DETAILS
SKILLS
Agile Programming Methodologies, Amazon Web Services (AWS), Application Programming Interface (API), Applications Security, Budgeting, Business Model, Business Strategy, Cloud Applications, Cloud Computing, Coaching, Communication Skills, Computer Engineering, Computer Science, Cost Benefit Analysis, Cryptography, Ecosystems, Enterprise Architecture, Enterprise Protection, Establish Priorities, Financial Modeling, GCP (Good Clinical Practices), HIPAA (Health Insurance Portability and Accountability Act), Health Plan, Healthcare, ISO (International Organization for Standardization), IT Service Management (ITSM), ITIL (IT Infrastructure Library), Identity Data Management, Information Architecture, Information Technology & Information Systems, Information/Data Security (InfoSec), Infrastructure as a Service (IaaS), International Electro-Technical Commission (IEC), Internet Security, Internet of Things, Interpersonal Skills, Leadership, Lean Manufacturing, Medical Equipment, Mentoring, Mergers and Acquisitions, Microservices, Microsoft Windows Azure, Negotiation Skills, Network Security, Network Security Design, Nonprofit, Operational Strategy, Operations Planning, Platform as a Service (PaaS), Predictive Modeling, Presentation/Verbal Skills, Privacy Regulations, Psychiatry and Mental Health, Public Key Infrastructure (PKI), Regulations, Regulatory Requirements, Reporting Skills, Risk, Risk Management, Security Architecture, Security Consulting, Security Information and Event Management (SIEM), Service-Oriented Architecture (fka Distributed Object Architecture), Software Development Lifecycle (SDLC), Software as a Service (SaaS), Strategic Planning, TOGAF - The Open Group Architecture Framework, Team Player, Technology Analysis, Threat and risk analysis (TRA), Trend Analysis, U.S. National Institute of Standards and Technology (NIST), Writing Skills
LOCATION
Oklahoma City, OK
POSTED
2 days ago

Get to Know Your Team

  • INTEGRIS Health, Oklahoma''s largest not-for-profit health system, is seeking a dedicated caregiver to join us in our mission to partner with people to live healthier lives.
  • Benefits of being an INTEGRIS Health caregiver include front-loaded PTO, medical benefits through the extensive INTEGRIS Health network, financial assistance for continued education, 24/7 mental health support and more.
  • Take the first step toward growing your career by joining us. at INTEGRIS Health Corporate Office.

The Dir Chief Information Security Architect proactively and holistically defines, guides, and governs the enterprise information security architecture, partnering with clinical, business, and IT leaders, product managers, product owners, and distributed product delivery teams to embed security into transformation and optimization initiatives. Reporting to the VP & Chief Information Security Officer, this leader translates business strategy, risk appetite, and regulatory obligations into secure, resilient, and scalable architecture. The role's scope of activities includes helping the organization achieve targeted outcomes related to protecting patient and enterprise data, reducing cyber risk, enabling safe clinical and digital innovation, optimizing security investment, and improving resilience. They focus on the development of the security strategy and the enterprise security architecture of the organization as a whole.

INTEGRIS Health is an Equal Opportunity/Affirmative Action Employer.

  • Master's or bachelor's degree in cybersecurity, computer science, computer engineering, information systems, or a related field of study, or equivalent experience.

  • 8+ years of experience in information security, security architecture, or strategic and operations planning, or experience as a security architecture consultant.

  • 8+ years of experience across at least three disciplines, such as security architecture, identity and access management, cloud security, network and infrastructure security, application/product security, data protection, or security operations in a multitier environment.

  • Knowledge of business ecosystems, SaaS, infrastructure as a service (IaaS), platform as a service (PaaS), SOA, APIs, microservices, event-driven IT, and predictive analytics, and the security implications of each.

  • Depth in Zero Trust architecture, IAM, encryption and PKI, secure network design, cloud security (AWS/Azure/GCP), SIEM/SOAR, EDR, and DevSecOps.

  • Understanding of business models, operating models, financial models, cost-benefit analysis, budgeting, and risk management as applied to security investment.

  • Insight into information management practices, system development life cycle management, IT service management, agile and lean methodologies, infrastructure and operations, and EA and ITIL frameworks.

  • Working knowledge of NIST Cybersecurity Framework, NIST SP 800-53, and ISO/IEC 27001.

  • CISSP required; CISSP-ISSAP (Information Systems Security Architecture Professional) or SABSA strongly preferred; TOGAF a plus.

  • HITRUST CSF and HIPAA Security Rule expertise, with a strong understanding of healthcare regulatory and privacy obligations.

  • Understanding of various operating models such as project-centric and product-centric, and different agile principles, methodologies, and frameworks, especially those designed to be scaled at the enterprise level.

  • Effective leadership skills with exceptional soft and interpersonal skills, including teamwork, facilitation, and negotiation.

  • Written and verbal communication skills with the ability to present complex information in a clear, concise manner to all audiences.

INTEGRIS is an Equal Opportunity/Affirmative Action Employer. All applicants will receive consideration regardless of membership in any protected status as defined by applicable state or federal law, including protected veteran or disability status.

The Dir Chief Information Security Architect responsibilities include, but are not limited to, the following:

  • Define, maintain, and evolve the enterprise information security reference architecture, standards, patterns, and guardrails that enable secure-by-design and secure-by-default delivery.

  • Facilitate alignment between security, business, and IT, and across the democratized IT and clinical technology landscape.

  • Engage business, clinical, and IT stakeholders, building and maintaining trusted relationships.

  • Lead security architecture across identity and access management, data protection and encryption, network segmentation, cloud, application security, and Zero Trust.

  • Analyze threat, technology, and regulatory trends and disruptions, and assess their impact on targeted business and risk-reduction outcomes.

  • Translate risk assessments and threat intelligence into architecture decisions and prioritized roadmaps that visualize the future state and trigger long-term planning.

  • Ensure security architecture aligns with HIPAA, HITRUST CSF, and other applicable healthcare and privacy regulatory requirements.

  • Provide security architecture review and guidance for new initiatives, major projects, cloud adoption, medical device and IoT integration, mergers and acquisitions, and third-party/vendor solutions.

  • Support various operating models such as project-centric and product-centric delivery.

  • Communicate the value of the security architecture function and its portfolio of services.

  • Drive the evolution of the security architecture team's services and operating model.

  • Coach and mentor other architects, engineers, product owners/managers, and business stakeholders to instill security-architecture thinking.

The Dir Chief Information Security Architect responsibilities include, but are not limited to, the following:

  • Define, maintain, and evolve the enterprise information security reference architecture, standards, patterns, and guardrails that enable secure-by-design and secure-by-default delivery.

  • Facilitate alignment between security, business, and IT, and across the democratized IT and clinical technology landscape.

  • Engage business, clinical, and IT stakeholders, building and maintaining trusted relationships.

  • Lead security architecture across identity and access management, data protection and encryption, network segmentation, cloud, application security, and Zero Trust.

  • Analyze threat, technology, and regulatory trends and disruptions, and assess their impact on targeted business and risk-reduction outcomes.

  • Translate risk assessments and threat intelligence into architecture decisions and prioritized roadmaps that visualize the future state and trigger long-term planning.

  • Ensure security architecture aligns with HIPAA, HITRUST CSF, and other applicable healthcare and privacy regulatory requirements.

  • Provide security architecture review and guidance for new initiatives, major projects, cloud adoption, medical device and IoT integration, mergers and acquisitions, and third-party/vendor solutions.

  • Support various operating models such as project-centric and product-centric delivery.

  • Communicate the value of the security architecture function and its portfolio of services.

  • Drive the evolution of the security architecture team's services and operating model.

  • Coach and mentor other architects, engineers, product owners/managers, and business stakeholders to instill security-architecture thinking.

About the Company

I

Integris Health Inc