Jobs
>
Somerville

    Information Security Architect - Somerville, United States - Mass General Brigham

    Default job background
    Description
    About Us:

    As a not-for-profit organization, Mass General Brigham is committed to supporting patient care, research, teaching, and service to the community by leading innovation across our system. Founded by Brigham and Women's Hospital and Massachusetts General Hospital, Mass General Brigham supports a complete continuum of care including community and specialty hospitals, a managed care organization, a physician network, community health centers, home care and other health-related entities. Several of our hospitals are teaching affiliates of Harvard Medical School, and our system is a national leader in biomedical research.

    We're focused on a people-first culture for our system's patients and our professional family. That's why we provide our employees with more ways to achieve their potential. Mass General Brigham is committed to aligning our employees' personal aspirations with projects that match their capabilities and creating a culture that empowers our managers to become trusted mentors. We support each member of our team to own their personal development-and we recognize success at every step.

    Our employees use the Mass General Brigham values to govern decisions, actions and behaviors. These values guide how we get our work done: Patients, Affordability, Accountability & Service Commitment, Decisiveness, Innovation & Thoughtful Risk; and how we treat each other: Diversity & Inclusion, Integrity & Respect, Learning, Continuous Improvement & Personal Growth, Teamwork & Collaboration.

    General Summary:

    Reporting directly to the Director of Identity and Access Management, Mass General Brigham Digital is seeking a highly skilled and experienced IAM (Identity and Access Management) Architect to join our team. The IAM Architect will be responsible for designing, implementing secure, scalable, and robust IAM solutions for our organization. our identity and access management strategies and systems. The ideal candidate possesses a deep understanding of IAM concepts, industry best practices, and possesses excellent analytical and problem-solving skills.

    Principal Duties and Responsibilities:
    • Design and develop IAM strategies: Collaborate with stakeholders to understand business requirements, define IAM strategies, and develop comprehensive IAM architectures and solutions.
    • IAM system implementation: Lead the implementation and deployment of IAM systems, including identity provisioning, authentication, authorization, single sign-on, and role-based access control (RBAC).
    • Security and compliance: Ensure that IAM systems adhere to industry standards, security best practices, and regulatory requirements. Perform regular audits, vulnerability assessments, and risk analysis to identify and mitigate potential security threats.
    • Identity lifecycle management: Define and implement processes for the entire identity lifecycle, including onboarding, provisioning, entitlements, role management, access reviews, and offboarding.
    • Identity governance: Establish and enforce identity governance policies and procedures to ensure the appropriate use and protection of enterprise resources.
    • Privileged Access Management: Establish and enforce polices and procedures to manage and protect highly privileged access to the MGB environment
    • Integration and interoperability: Collaborate with cross-functional teams to integrate IAM systems with other enterprise applications, directories, and databases, ensuring seamless interoperability.
    • IAM system enhancements and maintenance: Stay updated with the latest IAM technologies, industry trends, and emerging threats. Continuously enhance and optimize existing IAM systems and processes to meet changing business needs.
    • Documentation and reporting: Prepare comprehensive technical documentation, including architecture diagrams, system configurations, and operational procedures. Generate reports on IAM system performance, compliance status, and security incidents.
    • Team collaboration and leadership: Collaborate with other IT teams, stakeholders, and vendors to deliver effective IAM solutions. Provide technical guidance and mentorship to junior team members.
    • Other related duties as assigned
    Qualifications
    • Bachelor's or Master's degree in computer science, information technology, or a related field.
    • 7+ years of proven experience working as an IAM Architect or in a similar role, designing and implementing enterprise-level IAM solutions.
    • Strong knowledge of IAM concepts, protocols, and technologies, including but not limited to identity provisioning, authentication, authorization, RBAC, SSO, and federation.
    • In-depth understanding of industry frameworks and standards such as OAuth, SAML, OpenID Connect, and LDAP.
    • Proficiency in IAM tools and platforms, such as Saviynt, Sailpoint, Azure Active Directory, Entra, CyberArk or similar solutions.
    • Extensive experience with IAM integration, including directory services, HR systems (Workday, Peoplesoft) and cloud-based applications.
    • Familiarity with cybersecurity principles and best practices, including risk management, access controls, and secure coding.
    • Strong analytical and problem-solving skills, with the ability to assess complex business requirements and translate them into practical IAM solutions.
    • Excellent communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and stakeholders at various organizational levels.
    • Relevant certifications such as CISSP, CISM, or vendor-specific IAM certifications are highly desirable.
    Skills/Abilities/Competencies:

    Extensive technical knowledge and experience in the domains of application security, and network administration and maintenance, including:

    Protocol and technical standards including encryption, TCP/IP, SSL, S/MIME, Radius, IPSEC and PKI technology

    Creating actionable secure design patterns in support of technical standard

    Operating system (Windows, Mac OS, Unix) security and hardening

    Database security

    Endpoint security, including encryption technologies, NAC, and related technologie

    Cloud-based technologies and design patterns including Azure, AWS, and Google

    Cloud Access Security Broker toolset

    Authentication solutions and standards including Active Directory, SAML, OAuth, Kerberos, IWA

    All aspects of IAM\IGA including identity lifecycle management, role-based access, directory services, application provisioning, access certification

    Privileged Access Management including best practices and solutions for on premises and cloud-based privilege

    Service Oriented Architecture concepts such as micro-service design and implementation pattern

    Exposure to Clinical and EMR systems such as EPIC

    Knowledge of industry standards such as: ISO27000, NIST SP 800-53, OWASP, and other standards.

    Strong project management skills.

    Ability to compile, analyze, and summarize data for communication.

    Strong interpersonal and communications skills.

    Demonstrated ability to handle heavy multi-tasking.

    Clear ability to complete work with minimal oversight

    EEO Statement

    Mass General Brigham is an Equal Opportunity Employer. By embracing diverse skills, perspectives and ideas, we choose to lead. All qualified applicants will receive consideration for employment without regard to race, color, religious creed, national origin, sex, age, gender identity, disability, sexual orientation, military service, genetic information, and/or other status protected under law. We will ensure that all individuals with a disability are provided a reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment.


  • Allspring Global Investments Boston, United States Full time

    Elevate Your Career · Work where your ideas have impact · COMPANY · Allspring Global Investments is a leading independent asset management firm that offers a broad range of investment products and solutions designed to help meet clients' goals. At Allspring, our vision is to ...


  • Publicis Sapient Boston, United States Full time

    Job Description · As a Azure Security Architect , you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. You'll have the unique opportunity to increase the engineering team productivity by developing and overseein ...


  • Akamai Cambridge, United States

    Are you excited by the prospect of detecting and mitigating the latest cyber attacks? · Would you enjoy protecting the world's leading brands in a busy environment? · Work with industry leading technology · Our Team strives to be the most trusted support services partner and t ...


  • State Street Corporation Cambridge, United States Full time

    Who we are looking for The State Street Global Cybersecurity team is looking for a Staff Security Architect - Identity & Privileged Access. The Cybersecurity team delivers platforms, architecture, and tooling to help Cybersecurity teams make faster, more informed decisions as we ...


  • F2Onsite Boston, United States

    Job Description · Job DescriptionSecurity Architect · Job Summary: · We are seeking an experienced Security Architect with a strong background in application security, architecture reviews, and security risk assessments. The ideal candidate will have significant experience in se ...


  • The Computer Merchant, LTD. San Francisco, United States Permanent

    JOB TITLE: Information Security Architect · JOB LOCATION: Boston, MA · WAGE RANGE : $85-92 · JOB NUMBER: Client C-1003L-103053 · REQUIRED EXPERIENCE: · A minimum of 10 years of experience within information technology A minimum of 10 years ...


  • NavitsPartners Somerville, United States

    Job Description · Job DescriptionPosition: Information Security Architect · Duration: 12 months · Location: Hybrid (Boston, MA) · Work hours: 40 hrs/week · Job Description: · The Information Security Architect is responsible for ensuring the confidentiality, integrity, and avail ...

  • Akamai

    Security Architect II

    4 weeks ago


    Akamai Cambridge, United States

    Are you excited by the prospect of detecting and mitigating the latest cyber attacks? · Would you enjoy protecting the world's leading brands in a busy environment? · Work with industry leading technology · Our Team strives to be the most trusted support services partner and t ...


  • Akamai Cambridge, United States

    Are you excited by the prospect of detecting and mitigating the latest cyber attacks? · Would you enjoy protecting the world's leading brands in a fast-paced environment? · Work with industry leading technology · Our Team strives to be the most trusted support services partner ...


  • Mass General Brigham Somerville, United States

    **Information Security Architect** · **About Us**: · As a not-for-profit organization, Mass General Brigham is committed to supporting patient care, research, teaching, and service to the community by leading innovation across our system. Founded by Brigham and Women's Hospital a ...


  • The Computer Merchant, LTD. Boston, United States

    JOB TITLE: Information Security Architect · JOB LOCATION: Boston, MA · WAGE RANGE*: $85-92 · JOB NUMBER: Client C-1003L-103053 · REQUIRED EXPERIENCE: · A minimum of 10 years of experience within information technology A minimum of 10 years of experience in information security or ...


  • SS&C Waltham, United States

    Software Security Architect page is loaded · Software Security Architect · Apply · locations · Waltham, MA · time type · Full time · posted on · Posted Yesterday · job requisition id · R21995 · SS&C is a global provider of investment and financial services and software ...


  • Publicis Sapient Boston, United States Full time

    Job Description · As a Azure Security Architect , you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. You'll have the unique opportunity to increase the engineering team productivity by developing and overseeing ...


  • Booker DiMaio, LLC Boston, United States

    Job Description · Job DescriptionThis is a hybrid role that will be partially onsite in Boston, MA. · 12 month contract plus extensions · $65/hr on 1099 · Job Description:Ensure the confidentiality, integrity and availability of information by communicating risk. · Create and mai ...


  • State Street Cambridge, United States OTHER

    Who we are looking for · The State Street Global Cybersecurity team is looking for a Staff Security Architect – Identity & Privileged Access. The Cybersecurity team delivers platforms, architecture, and tooling to help Cybersecurity teams make faster, more informed decisions as w ...


  • Booker DiMaio, LLC Boston, United States

    Job Description · Job DescriptionThis is a hybrid role that will be partially onsite in Boston, MA. · 12 month contract plus extensions · $65/hr on 1099 or C2C · Job Description:Ensure the confidentiality, integrity and availability of information by communicating risk. · Create ...


  • NavitsPartners Quincy, United States

    Position: Information Security Architect · Duration: 12 months · Location: Hybrid (Boston, MA) · Work hours: 40 hrs/week · Job Description: · The Information Security Architect is responsible for ensuring the confidentiality, integrity, and availability of information within the ...


  • Meduvi LLC Boston, United States

    40 hours per week Hybrid 2 days onsite in Boston · Responsibilities: · • Ensure the confidentiality, integrity and availability of information by communicating risk. · • Create and maintain enforceable policies supporting processes. · • Ensure compliance with regulatory requireme ...


  • SS&C Technologies Watertown, United States

    SS&C is a global provider of investment and financial services and software for the financial services and healthcare industries. Named to Fortune 1000 list as top U.S. company based on revenue, SS&C is headquartered in Windsor, Connecticut and has 20,000+ employees in over 90 of ...


  • Zones LLC. Boston, United States

    **Company Overview**: · When it comes to IT solution providers, there are a lot of choices. But when it comes to providers with innovative and differentiating end-to-end service offerings, there's really only one: Zones - First Choice for IT.TM · **Position Overview**: · The Solu ...