Enterprise Security Architect, AI Health Cloud

BrightSpring Health Services
  • Louisville, KY
    4 days ago

    Job Description

    Our Company

    BrightSpring Health Services

    Overview

    We are seeking a highly experienced Senior Enterprise Security Architect to lead the design, strategy, and governance of enterprise-wide security for our AI Health Cloud platform. This role is responsible for securing cloud-native applications, AI/ML systems, healthcare data ecosystems, and enterprise integrations.

    You will define the security architecture across platforms, data, APIs, and AI systems, ensuring that all capabilities are secure, compliant, resilient, and aligned with healthcare regulations and Responsible AI standards.

    Responsibilities

    • Define and lead enterprise security architecture across cloud platforms, AI/ML systems, and applications
    • Establish security standards, policies, and reference architectures
    • Architect zero-trust security frameworks, identity and access management, and data protection strategies
    • Secure AI/ML systems including LLMs, RAG pipelines, and model lifecycle
    • Design API security, encryption, secrets management, and key management
    • Ensure compliance with HIPAA, CMS, HITRUST, and other healthcare regulations
    • Partner with engineering, product, and compliance teams to embed security into SDLC and MLOps
    • Lead threat modeling, risk assessments, and security architecture reviews

    Cloud, Platform & AI Security

    • Define security design patterns for cloud-native architectures (Azure preferred)
    • Implement network security, container security (Docker/Kubernetes), and workload protections
    • Secure AI pipelines including training, inference, and model monitoring
    • Establish safeguards for prompt injection, data leakage, and model abuse

    Security Engineering & Operations

    • Integrate security into CI/CD pipelines (DevSecOps)
    • Define automated security testing (SAST, DAST, SCA)
    • Implement observability and incident response frameworks
    • Define security logging, monitoring, and threat detection strategies

    Governance, Risk & Compliance

    • Lead risk-based security frameworks and controls
    • Ensure audit readiness and regulatory compliance
    • Support governance of data privacy and protection
    • Define policies for secure data usage across payer, provider, and pharmacy domains

    Qualifications

    • 12+ years of experience in enterprise security architecture
    • Strong background in cloud security, identity management, and application security
    • Experience securing AI/ML platforms and data systems
    • Deep knowledge of healthcare compliance and data standards
    • Experience with DevSecOps and modern security tooling
    • Strong leadership and stakeholder influence

    Preferred Qualifications

    • Experience with Azure security stack and cloud-native services
    • Knowledge of LLM security and Responsible AI principles
    • Familiarity with HITRUST, NIST, ISO 27001 frameworks
    • Certifications such as CISSP, CCSP, or equivalent

    About our Line of Business

    BrightSpring Health Services provides complementary home- and community-based health solutions for complex populations in need of specialized and/or chronic care. Through the Company's service lines, including pharmacy, home health care, and rehabilitation, we provide comprehensive and more integrated care and clinical solutions in all 50 states to over 475,000 customers, clients and patients daily. BrightSpring has consistently demonstrated strong and industry-leading quality metrics across its services lines, while improving the health and quality of life for high-need individuals and reducing overall healthcare system costs. For more information, please visit www.brightspringhealth.com. Follow us on Facebook, LinkedIn, and X.

    Additional Job Information

    Success Metrics

    • Reduction in security vulnerabilities and incidents
    • Strong compliance and audit outcomes
    • Improved security posture across cloud and AI systems
    • Effective integration of security into engineering lifecycle

    Why Join Us

    • Lead security strategy for a next-generation AI healthcare platform
    • Work on cutting-edge AI, cloud, and healthcare challenges
    • Collaborate with top-tier architects, engineers, and clinical leaders
    • Competitive compensation and flexible work environment

    Numbers & Facts

    LocationLouisville, KY

    Skills

    • Application Programming Interface (API)unmatched
    • Applications Securityunmatched
    • Artificial Intelligence (AI)unmatched
    • CCSP - Cisco Certified Security Professionalunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Applicationsunmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Community Healthunmatched
    • Computer Securityunmatched
    • Content Management Systems (CMS)unmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Cryptographyunmatched
    • Data Modelingunmatched
    • Design Patterns Programming Methodologiesunmatched
    • Dockerunmatched
    • Ecosystemsunmatched
    • Enterprise Architectureunmatched
    • Enterprise Data Integrationunmatched
    • Enterprise Protectionunmatched
    • HIPAA (Health Insurance Portability and Accountability Act)unmatched
    • Healthcareunmatched
    • Home Careunmatched
    • ISO (International Organization for Standardization)unmatched
    • Identity Data Managementunmatched
    • Incident Responseunmatched
    • Information/Data Security (InfoSec)unmatched
    • Injectionsunmatched
    • Leadershipunmatched
    • LinkedInunmatched
    • Machine Toolunmatched
    • Maintain Complianceunmatched
    • Metricsunmatched
    • Microsoft Windows Azureunmatched
    • Multiplatform/Cross-Platformunmatched
    • Network Securityunmatched
    • Pharmacyunmatched
    • Policy Developmentunmatched
    • Privacy Controlsunmatched
    • Quality Metricsunmatched
    • Regulationsunmatched
    • Regulatory Complianceunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Security Analysisunmatched
    • Security Architectureunmatched
    • Security Complianceunmatched
    • Security Designunmatched
    • Security Monitoringunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • Test Automationunmatched
    • Threat Modelingunmatched
    • Threat and risk analysis (TRA)unmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder