Cloud Security Architect

Elevance HealthOverland Park, KS
23hHybrid

About The Position

Cloud Security Architect Location: This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace. Alternate locations may be considered if candidates reside within a commuting distance from an office. Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law. The Cloud Security Architect is responsible for enabling, maturing, and operationalizing cyber defense capabilities across Elevance Health’s enterprise and subsidiary cloud environments. This role partners closely with Cloud Infrastructure, Application Engineering, Detection Engineering, and Security Operations to ensure cloud-native security telemetry, detection, and response capabilities are deployed, monitored, and continuously improved.

Requirements

  • Requires BS/BA in Information Technology or related field of study and a minimum of 10 years experience in systems administration and security aspects of information systems, access management and network security technologies, network communications, computer networking, telecommunications, systems development and management, hardware, software, data, and people; experience with multiple technical and business disciplines required; or any combination of education and experience, which would provide an equivalent background.

Nice To Haves

  • Fluency with all 3 major cloud service providers: AWS, Azure & Google Cloud Platform.
  • Experience designing, implementing or operating cloud security programs in an enterprise environment.
  • Cloud security certifications such as CCSP or CSP-specific security certifications .
  • Experience with Oracle Cloud Infrastructure.

Responsibilities

  • Lead efforts to integrate cyber defense and security operations capabilities into enterprise and subsidiary cloud environments (AWS, Azure, GCP, and OCI), ensuring consistent visibility and detection coverage across platforms.
  • Partner with cloud infrastructure and application teams to ensure security controls, logging, and telemetry are properly enabled, validated, and operational for cloud services and workloads.
  • Work with app, platform and engineering teams to ensure the appropriate level of logging is enabled within their respective environments.
  • Define roadmap and strategy for the future of cloud cyber defense, including CSPM, threat detection, logging pipelines, and incident response integration.
  • Develop an approach that is tailored to the organization and keeps us out in front of developing threats.
  • Propose and develop cloud threat monitoring use cases.
  • Train SOC analysts on how to properly triage, investigate and remediate alerts based on those use cases.
  • Collaborate with security operations and incident response teams to investigate complex cloud security events (e.g. threat detection events, misconfigurations, exposed resources) and support remediation efforts.
  • Infuse automation and AI-driven capabilities into cloud threat management operations.
  • Work with vendors to evaluate, select, and onboard technologies.
  • Partner with vendor contacts to ensure product roadmaps address evolving business and technical requirements.
  • Support pursuit of new business by designing new cloud architectures that are compliant with FedRAMP or other regulatory requirements.
  • Participate in and contribute to governance review for new cloud services, AI-enabled platforms, and SaaS offerings, ensuring security requirements, logging, and guardrails are defined before approval.
  • Act as Subject Matter Expert in all aspects of cloud cyber defense.
  • Advise executive leadership on matters relating to cloud security.
  • Train and mentor junior team members.
  • Draft business-level presentations that garner executive and stakeholder support for cloud cyber defense initiatives.
  • Develop policies, technical standards and other foundational documentation.
  • Support regulatory and audit initiatives by validating cloud security controls, evidence collection, and alignment with frameworks such as SOC2, PCI, HITRUST, and FedRAMP.

Benefits

  • We offer a range of market-competitive total rewards that include merit increases, paid holidays, Paid Time Off, and incentive bonus programs (unless covered by a collective bargaining agreement), medical, dental, vision, short and long term disability benefits, 401(k) +match, stock purchase plan, life insurance, wellness programs and financial education resources, to name a few.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service