Cybersecurity Architect
Job Description
Banner Health is hiring a Cybersecurity Architect to define enterprise security strategy, lead architectural reviews, and ensure cybersecurity requirements are built into the technology landscape.
Responsibilities
- Act as the senior-most individual contributor for cybersecurity architecture, defining and driving enterprise security strategy, the architecture roadmap, and long-term vision across major technology platforms.
- Provide strategic guidance on security architecture decisions, establish security standards and reference architectures, and embed security throughout the enterprise technology landscape.
- Evaluate solution designs and assess security readiness, providing expert guidance for secure implementation in partnership with infrastructure, engineering, cloud, data, AI, and application teams.
- Lead architectural reviews for new initiatives, identify security risks and mitigation approaches, and influence enterprise-wide technology decisions.
- Create and maintain architectural artifacts, models, patterns, and transition initiatives so strategic goals are achievable, operationally efficient, technically sound, and address cybersecurity considerations.
- Ensure stakeholder cybersecurity requirements supporting Banner’s mission and business processes are addressed across enterprise architecture, including reference models, segment and solution architectures, and the systems that support them.
- Own one or more cybersecurity areas, including threat & vulnerability management, security operations, and GRC, as well as strategy.
- Contribute to the cybersecurity architecture team and center of excellence, developing architectural artifacts, roadmaps, and strategy documentation.
- Educate and influence enterprise stakeholders, advocating for and stewarding Banner’s information assets.
- Design solutions to resolve complex and highly complex cybersecurity-related technical and business issues.
- Analyze the business and IT environment to identify critical cybersecurity deficiencies or redundancies and recommend improvements.
- Collaborate with other architects to develop and maintain cybersecurity capability documentation and target cybersecurity architecture, partnering with IT and the business on architectures aligned to strategic initiatives, goals, and industry trends.
- Serve as an executive advisor on current and future technology appropriateness, considering TCO, ROI, strategic value, and cybersecurity risk.
- Maintain in-depth knowledge of business strategies and goals, regulatory requirements, industry trends, and cybersecurity threats.
- Build relationships with business stakeholders and IT leadership; advise functional leaders and executives on investments influenced by architectural development and cybersecurity risk assessment.
- Ensure consistent adherence to standards for architectural artifact documentation and implementation.
- Perform duties in alignment with established policies, procedures, regulatory and accreditation requirements, and applicable professional standards.
Requirements
- Bachelor’s degree and strong knowledge of business, information security, and/or computer science.
- 10+ years of experience, including at least 10 years in a healthcare environment or an equivalent combination of relevant education, technical, business, and healthcare experience.
- At least 1 year of experience in cybersecurity architecture at the enterprise scale, preferably in healthcare.
- Experience with the acquisition process, including vendor selection, defining requirements, and developing contractual documentation.
- Independent judgment, critical decision-making, strong analytical skills, and excellent verbal and written communication.
- Ability to think and communicate clearly under difficult or complex conditions.
- Ability to balance project workloads with customer support.
- Communication and presentation skills for both technical and non-technical audiences.
- Ability to communicate and interact across facilities and at multiple levels.
- Ability to mentor less experienced team members.
Technologies
- Zero trust
- Network security
- AI security
- Data security
- Cloud security
- Enterprise security architecture
- SASE
- SD-WAN
- ZTNA
- Micro-segmentation
- AWS
- Azure
- GCP
- CCSP
- SSCP
- HCISPP
- CompTIA Security+
- CISSP – Engineering (ISSEP)
- CEH
- SANS GIAC
- CISA
- SABSA Chartered Security Architect – Foundation (SCF)
- CISSP – Architecture (ISSAP)
- TOGAF 9 Foundation
Preferred Qualifications
- 4+ years technical project experience designing, developing, integrating, and implementing solutions to resolve complex technical and business issues.
- Relevant technical and/or professional certification in two or more of the listed areas within one year of entering the position, including: SSCP, HCISPP, CompTIA Security+, CISSP – Engineering (ISSEP), CEH, SANS GIAC, CISA, SABSA Chartered Security Architect – Foundation (SCF) (the remaining certification list is not fully shown in the source).
Compensation & Location
- Location: Phoenix, AZ (remote)
- Estimated pay range: $57.38 - $95.64 per hour