Responsibilities:
The Information Security Architect is a hands‑on, standards‑driven security architect responsible for applying security principles directly to enterprise and clinical technology environments. This role emphasizes practical architecture execution, including design reviews, solution integration, and security governance, rather than serving as a purely strategic or advisory position. This role requires the ability to translate security standards into clear, actionable technical guidance for engineering and clinical systems teams. The Information Security Architect plays a critical role in integration, review, and architectural governance, ensuring security controls are consistently applied across infrastructure, applications, cloud, and third‑party solutions. The role partners with engineering, infrastructure, application, and vendor teams to evaluate designs and align implementations with Norton Healthcare standards. This role operates as a key contributor within the security organization and influences outcomes through technical credibility, collaboration, and design authority. This role exercises enterprise influence through architecture ownership, trusted partnerships, and consistent delivery of secure solutions. Enterprise‑wide impact and influence grow over time through demonstrated expertise, consistency, and established trust rather than title alone.
Qualifications:
Required:
Seven or more years of cybersecurity experience, including, enterprise security engineering or architecture, network and infrastructure security. Strong experience with security architecture design, risk assessment and mitigation, security tooling evaluation and integration.
-
CISSP, CISM, CCSP, or equivalent certification.
Desired:
Bachelor Degree in Information Technology, Computer Science, or related field.
Demonstrated experience working in regulated environments (healthcare strongly preferred).