Jobs
>
Philadelphia

    Information Security Architect - Philadelphia, United States - NBME

    Default job background
    Description

    POSITION OVERVIEW

    The Information Security Architect brings an innovative, hands-on approach in evaluating and solutioning information security controls, recommending and identifying security measures to protect information against unauthorized data modification and exposure, access control, intrusion detection, malware protection, incident response, security engineering, are some of the areas that this position engages in on a regular basis.

    Diversity, Equity, and Inclusion Statement

    At NBME , we continue to innovate and improve how we fulfill the evolving needs of the health care community. This commitment starts and ends with the people at NBME. By recruiting and empowering talented individuals from various disciplines and backgrounds, which includes professionals with diverse life experiences, abilities, and perspectives, NBME can take a well-informed, robust approach to advancing medical education and assessment for years to come. We also continue to focus on ensuring that our DEI work is impactful and ingrained in everything we do, including with our staff, workplace culture, products and services, the Philadelphia community and the broader medical education landscape.

    RESPONSIBILITIES

    • Work with Solutions Architects in Information Technology and liaise with various other stakeholders and areas of the organization to ensure the appropriate level of security controls are in place to meet the needs of the business, the requirements of regulatory bodies, and industry best practices.
    • Develop/integrate cybersecurity designs for systems and networks with multilevel security requirements or requirements for the processing of multiple classification levels of data. Determine the protection needs (i.e., security controls) for the information system(s) and network(s) and document appropriately. Requires an understanding of attack vectors, current threats, and remediation strategies.
    • Serve as security architect for enterprise level infrastructure and application software projects. Develop architecture patterns and security approaches to new technologies. Design security models and educate stakeholders on the creation of threat models and review for appropriate security controls.
    • Ensure that acquired or developed system(s) and architecture(s) are consistent with organization's cybersecurity architecture guidelines.
    • Perform security reviews, identify gaps in security architecture, and develop a security risk management plan, including quantifying risk to the business.
    • Serve on various governance teams with a focus on DevSecOps and Cloud Security to ensure security is appropriately integrated and aligned with best practices.
    • Keeps abreast of current and emerging security technologies and threats.

    DELIVERABLES (IF APPLICABLE)

    • Lead and develop security design and reference architecture on large enterprise projects.
    • Develop strategies and plans to enforce security requirements to address identified risks. Provide guidance and direction on best practices for the protection of information.
    • Perform threat models for internal and external systems (e.g., cloud services) and ensure the appropriate controls are designed into the services.
    • Research, evaluate, design, recommend and plan the implementation of new security controls to reduce the risk of data loss. Preemptively counter the possibility of system breach through unauthorized access of data.
    • Provide written analysis on security threats and recommended next steps.

    QUALIFICATIONS

    Skills and Abilities

    • Knowledge of the application firewall concepts and functions (e.g., single point of authentication/audit/policy enforcement, message scanning for malicious content, data anonymization for PCI and PII compliance, data loss protection scanning, accelerated cryptographic operations, SSL security, REST/JSON processing).
    • Ability to design architectures and frameworks.
    • Knowledge of remote access technology concepts.
    • Excellent written and verbal communication and presentation abilities.
    • Orchestration of high priority security initiatives across multiple layers of management and heterogeneous departments.
    • A self-starter who is able to perform independent research to support critical security decisions and to keep stakeholders informed of industry security trends.
    • Ability to quickly come up to speed on the cyber security aspects of new platforms you many not have experienced before

    Experience

    • 10 years of experience; minimum of 5 years in cyber security.
    • Recent experience with reviewing AWS/Azure security, including authentication, identity configuration, key management systems, and API security is preferred.

    Education

    • Bachelor's degree in an information technology related field or a combination of equivalent education and experience.
    • CISSP required. AWS SA, CCSK or similar certification desirable

    About NBME:

    NBME offers a versatile selection of high-quality assessments and educational services for students, professionals, educators, regulators and institutions dedicated to the evolving needs of medical education and health care. To ensure our assessments meet the highest standards of quality, stay relevant and align to the current curriculum in medical schools and training programs, we rely on a wide network of collaborators. These include the volunteers who help develop our exam questions, the committees and panels who represent various groups within the medical education community, external researchers and health profession organizations.

    We are committed to meeting the needs of educators and learners globally with assessment products and expert services such as NBME Subject Examinations, Customized Assessment Services, Self-Assessments, the International Foundations of Medicine Program and Item Writing Workshops. Together with the Federation of State Medical Boards, NBME develops and manages the United States Medical Licensing Examination, which measures the ability to apply knowledge and skills that form the basis of safe and effective patient care. Our Competency-based Assessment unit is focused on new methods as well as the optimization of assessment in the workplace and education.

    As a result of leadership in ongoing research, innovative measurement practices and the exploration of forward-thinking assessment modalities and improvements, NBME advances assessment science. Our grant and funding opportunities further support this dedication to medical education and assessment science. We help develop the next generation of assessment professionals through our Summer Psychometric Internship Program. Through the Stemmler Fund, Strategic EducatorsEnhancement Fund and Latin America Grants Program, researchers and educators can continue to improve the assessment of health care professionals around the world.

    NBME views diversity, equity and inclusion (DEI) as foundational and enduring to our strategy and vision. We continue to focus on ensuring that our DEI work is impactful and ingrained in everything we do, including with our staff, culture, products and services, the Philadelphia community and the broader medical education landscape. Our commitment manifests in our hiring and staff development, recruitment for committees, grants programs, design and review of our assessments, and involvement in our local and national communities.

    Learn more about NBME at .

    The NBME offers competitive salaries, excellent benefits, and a rewarding work environment. Excellent Benefits include: Healthcare, Dental, Prescription, and Vision plans; 401(k) w/match; Retirement Income Plan, Tuition Reimbursement Plan, Commuter Benefit: Public Transit or Parking options. Remote Friendly Workplace.

    NBME is an equal opportunity employer as defined by the EEOC.



  • NBME Philadelphia, United States

    **POSITION OVERVIEW** · The Information Security Architect brings an innovative, hands-on approach in evaluating and solutioning information security controls, recommending and identifying security measures to protect information against unauthorized data modification and exposur ...

  • Experis ManpowerGroup Sp. z o.o.

    Security Architect

    2 weeks ago


    Experis ManpowerGroup Sp. z o.o. Trenton, United States

    Experis to światowy lider rekrutacji specjalistów i kadry zarządzającej w kluczowych obszarach IT. Z nami znajdziesz konkurencyjne oferty zatrudnienia oraz ciekawe projekty IT skierowane zarówno do ekspertów z wieloletnim doświadczeniem, jak i osób, które dopiero zaczynają swoją ...

  • Motion Recruitment Partners, LLC

    Security Architect

    1 week ago


    Motion Recruitment Partners, LLC Philadelphia, United States

    With one of the most well-established internal IT Departments, this Philadelphia-based non-profit is looking to bring on a Security Architect that will spearhead a team of security folks. This is a core "blue-team" architect that has a well-rounded security background, and an acu ...

  • Insight Global

    Security Architect

    1 week ago


    Insight Global Philadelphia, United States

    A large healthcare system is looking to hire a Security Architect in Philadelphia, PA. This is a hybrid role Monday/Friday WFH and Tuesday-Thursday in the office. The Cybersecurity Architect will be responsible for designing and implementing robust security solutions to protect c ...

  • Saxon Global

    Security Architect

    4 days ago


    Saxon Global Philadelphia, United States

    Security Architect - Contract To Hire · 3 days onsite · Our client located in King of Prussia is seeking a Security Architect with 10+ years of experience for a contract role that might convert to perm for the right person. This position will be responsible for working closely ...

  • Temple University

    Security Architect

    1 week ago


    Temple University Philadelphia, United States

    Reference #: Description Grade:T29 The link below will give you information about the University's "T" salary structure. . A variety of important factors are reviewed by HR when considering salary, including job duties, the applicant's education and experience, all relevant inter ...


  • Motion Recruitment Partners, LLC Philadelphia, United States

    A Biopharma corporation based in Philadelphia is currently in search of a Senior Application Security Architect to join their security team. This position calls for an seasoned individual in application security, involving elements of security, DevOps, and software development. I ...


  • Motion Recruitment Partners, LLC Philadelphia, United States

    A financial firm in the Kennett Square, PA area is looking for a cloud security architect to help mature their program. This person will be the most senior, hands on individual on the team and report directly to the director of cloud security. For the beginning phases of their pr ...


  • Motion Recruitment Philadelphia, United States

    A financial firm in the Kennett Square, PA area is looking for a cloud security architect to help mature their program. This person will be the most senior, hands on individual on the team and report directly to the director of cloud security. For the beginning phases of their pr ...


  • NBME Philadelphia, United States

    POSITION OVERVIEW · The Information Security Architect brings an innovative, hands-on approach in evaluating and solutioning information security controls, recommending and identifying security measures to protect information against unauthorized data modification and exposure, ...


  • Motion Recruitment Partners, LLC Philadelphia, United States

    Local to the Tri-State (PA, NJ, MD) Area and looking for a Team Lead/Security Architect opportunity? This Philly-based Healthcare Provider is looking to bring on a Security Architect onto the team The organization has a robust, mature security program, with engineers satisfying e ...


  • ElasticSearch Inc. Philadelphia, United States

    Reference #: R7717 Elastic is a free and open search company that powers enterprise search, observability, and security solutions built on one technology stack that can be deployed anywhere. From finding documents to monitoring infrastructure to hunting for threats, Elastic makes ...


  • Brown Brothers Harriman Philadelphia, United States

    At BBH we value diverse backgrounds, so if your experience looks a little different from what we've outlined and you think you can bring value to the role, we will still welcome your application · What You Can Expect At BBH: · If you join BBH you will find a collaborative envir ...


  • Brown Brothers Harriman Philadelphia, United States

    At BBH we value diverse backgrounds, so if your experience looks a little different from what we've outlined and you think you can bring value to the role, we will still welcome your application · What You Can Expect At BBH: · If you join BBH you will find a collaborative envir ...


  • Terra Nova Group Exton, PA, United States Freelance

    Introduction · As the Senior Secure DevOps Architect, you will play a crucial role in designing and implementing secure DevOps architectures for our clients in Exton, PA. This position requires a deep understanding of DevOps principles, security best practices, and strong archite ...


  • Department of Defense Philadelphia, PA, United States

    Duties · • You will monitor construction activity to ensure compliance with contract plans, specifications, and scheduling. · • You will manage the technical submittal process to ensure submittals meet contract requirements. · • You will manage the change order process required t ...

  • e-Primary

    Security Architect

    2 weeks ago


    e-Primary Trenton, United States

    Parsippany , · NJ · Contract To Perm · Dec 20, 2023 · Title: Security Architect · Location: Parsippany, NJ (Remote) · Duration: 1 year temp to perm · Description: · The Security Architect role presents a dynamic opportunity to ensure the secure operation of the company's glo ...

  • Reed Technology & Information Services

    Security Architect

    6 days ago


    Reed Technology & Information Services Horsham, United States

    Security Architect · Would you enjoy working on our cutting-edge products? · Would you enjoy ensuring the highest quality output? · About Us · LexisNexis, a part of RELX, is a leading global provider of legal, regulatory, and business information. We help customers increase pr ...

  • Berkley

    Security Architect

    1 week ago


    Berkley Wilmington, United States

    Company Details · Berkley Technology Services (BTS) is the dynamic technology solution for W. R. Berkley Corporation, a Fortune 500 Commercial Lines Insurance Company. With key locations in Urbandale, IA and Wilmington, DE, BTS provides innovative and customer-focused IT soluti ...


  • Apex Systems Plymouth Meeting, United States

    Job#: · Job Description: · Apex Systems is partnered with one of local clients, who is looking to add talent to their existing Cyber Security Team, who reports directly into the Office of the CTO. We are looking to add both experienced Cyber Security Architects and Cyber Securi ...