Talent.com
Sr Application Security Architect- FedRAMP

Sr Application Security Architect- FedRAMP

DatavantColumbia, SC, United States
Hace 12 horas
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format.

Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care.

By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare.

What We're Looking For :

As a Sr Application Security Architect, you will be focused on guiding Datavant's engineering teams operating in a FedRAMP authorized environment. You will engage heavily with leadership and individual contributors, making prioritized security recommendations and help translate compliance requirements into concrete actions.

You Will :

Focus primarily on securing Datavant's Life Sciences platform within the FedRAMP boundary, ensuring the systems that power data exchange and analytics for clinical and research partners remain compliant, performant, and secure. This supports meaningful, life-impacting use cases.

Work directly with security senior leadership to ensure maturity, depth, and coverage of security controls. You'll be expected to interface with our Development Engineering leadership as well as Security Engineering leadership daily

Build the cases and represent changes in the Datavant boundary to US governmental agencies

Define and maintain the FedRAMP system's boundary, drive control implementation and validation, and manage the technical portions of the System Security Plan (SSP), System Assessment Plan (SAP), System Assessment Report (SAR), Plan of Action & Milestones (POA&M), and Continuous Monitoring (ConMon) submissions.

Prepare for and support annual FedRAMP 3PAO assessments by validating control evidence, resolving findings, and reviewing audit artifacts.

Drive Significant Change Request (SCR) reviews by evaluating proposed architecture changes, assessing security impact, and preparing updated boundary diagrams and control evidence.

Partner with GRC, Platform, Product, and Engineering teams to translate compliance requirements into actionable technical tasks.

Act as the primary security point of contact for 3PAOs, agency reviewers, and internal stakeholders to facilitate walkthroughs, explain design decisions, and ensure technical accuracy in all submissions.

Help facilitate quarterly planning discussions by providing strategic prioritization of all security-related requests, including (but not limited to) architectural feedback, vulnerability remediation, compliance control implementation, etc.

Translate compliance control intent into modern engineering workflows. Rather than applying controls literally, decompose their requirements into their core assurance goals, then rebuild them as scalable, low-friction implementations that achieve the same assurance (or better) through automation, auditable development workflows, and practical risk management

Review application projects our development teams build. This will mean putting eyes on code through secure code reviews as well as working with the teams to understand the broad architecture of systems being built. You'll be very comfortable providing control feedback in a review environment to development teams. This role is not merely a +1, you'll be adept at using your knowledge to the application of practical risk management.

Own and conduct security / threat model reviews and provide expertise on AppSec and security architecture-related topics

Own new projects for advancing security in our environment. Be the deep technical expert and collaborate with others on the teams to ensure project success. Your impact here cannot be understated, you are a core contributor and have deep influence to empower Datavant greatness

What You Need to Succeed :

You are humble

Deep experiencing representing companies to government agencies for FedRAMP High and Moderate environments

Have a deep understanding of Application and Cloud security. You'll use this knowledge to provide architectural reviews and contributions to our development teams

Have a strong understanding of security controls, both those that exist in audit standards as well as practical controls that can help reduce risk and increase safety in application development environments and AWS and / or Azure

You understand how the broad parts of a security team function and operate in unison

You can articulate start to finish what role security should play in ideation and build with development teams

You have opinions and options on most of the steps

You are a consummate collaborator, it's inherent in your work behavior

Ability to understand the tradeoffs between ideal security and what is necessary to appropriately secure a legacy system

You are heavily focused on delivery and being impactful; Understand how to operate and succeed in a very fast-paced environment where the security team should be a partner and enabler for the engineering team rather than a blocker

6+ years of working in architectural and threat modeling review areas

6+ years of working with compliance standards

We lean deeply into individuals who have experience and have practical knowledge of applying standards in low friction ways

Broad scoped projects don't scare you, they energize you. However, you like to get things done fast (and help others) with limited dependencies

What Helps You Stand Out :

You are often viewed as the "expert in the room" on building security controls. Development teams know they can depend on you to provide appropriate guidance and build predictable review programs

You have experience with security in healthcare or other highly regulated space. Examples : HIPAA, HITRUST, SOC 2, and PCI experience from an operational response standpoint

We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status.

At Datavant our total rewards strategy powers a high-growth, high-performance, health technology company that rewards our employees for transforming health care through creating industry-defining data logistics products and services.

The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job.

The estimated total cash compensation range for this role is :

$184,000-$230,000 USD

To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and / or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and / or religion.

This job is not eligible for employment sponsorship.

Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here () . Know Your Rights () , explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay.

At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren't even able to see whether you've responded.) Responding is entirely optional and will not affect your application or hiring process in any way.

Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please request it here, () by selecting the 'Interview Accommodation Request' category. You will need your requisition ID when submitting your request, you can find instructions for locating it here () . Requests for reasonable accommodations will be reviewed on a case-by-case basis.

For more information about how we collect and use your data, please review our Privacy Policy () .

Crear una alerta de empleo para esta búsqueda

Sr Security Architect • Columbia, SC, United States

Ofertas relacionadas
  • Oferta promocionada
  • Nueva oferta
Senior Security Architect

Senior Security Architect

OracleColumbia, SC, United States
A tiempo completo
Provides advanced level skills and knowledge in the design and review of secure networks,.Corporate information security policies and processes, as well as Line of. Business (including Cloud) securi...Mostrar másÚltima actualización: hace 12 horas
  • Oferta promocionada
  • Nueva oferta
Security Architect

Security Architect

HTC Global ServicesColumbia, SC, United States
A tiempo completo
Come build new things with us and advance your career.At HTC Global you'll collaborate with experts.You'll join successful teams contributing to our clients' success. You'll work side by side with o...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
Senior Director, Security Architecture

Senior Director, Security Architecture

OracleColumbia, SC, United States
A tiempo completo
Oracle seeks a Senior Director of Security Architecture to lead enterprise-wide product security architecture for Oracle Cloud and Applications. You will set the strategy and operate a modern, risk-...Mostrar másÚltima actualización: hace más de 30 días
  • Oferta promocionada
  • Nueva oferta
AI Security Program Architect

AI Security Program Architect

OracleColumbia, SC, United States
A tiempo completo
Lead cross-functional programs to accelerate AI adoption in Oracle's Security Operations Center, driving AI-based security automation and ensuring compliance with corporate and industry standards.A...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
Architect, Information Security, IAM

Architect, Information Security, IAM

Edwards LifesciencesNorth, SC, United States
A tiempo completo
Innovation starts from the heart.At Edwards Lifesciences, were dedicated to developing ground-breaking technologies with a genuine impact on patients lives. At the core of this commitment is our inv...Mostrar másÚltima actualización: hace 4 días
  • Oferta promocionada
SAP S / 4HANA Technical Architect (Hybrid)

SAP S / 4HANA Technical Architect (Hybrid)

Serigor Inc.Columbia, SC, US
A tiempo completo
SAP S / 4HANA Technical Architect (Hybrid).We are seeking a highly skilled SAP S / 4HANA Technical Architect to participate in the design, implementation, and optimization of end-to-end SAP technical s...Mostrar másÚltima actualización: hace 25 días
  • Oferta promocionada
  • Nueva oferta
Security Architect 8-11

Security Architect 8-11

Focused HR Solutions LLCWest Columbia, SC, United States
Temporal
This range is provided by Focused HR Solutions.Your actual pay will be based on your skills and experience talk with your recruiter to learn more. This job is 100% on-site in Columbia, SC.This posit...Mostrar másÚltima actualización: hace 21 horas
  • Oferta promocionada
IT - SCDOI - Security Architect - Advanced

IT - SCDOI - Security Architect - Advanced

RAPS CONSULTING INCColumbia, SC, United States
A tiempo completo
We're seeking a proactive and detail-oriented Information Security Officer to lead the implementation of security policies and procedures across our organization. This role is critical in shaping ou...Mostrar másÚltima actualización: hace más de 30 días
  • Oferta promocionada
  • Nueva oferta
Security Architect - Consultant

Security Architect - Consultant

InterSourcesColumbia, SC, United States
A tiempo completo
Security Architect - Consultant (8404).Columbia, SC (25% Hybrid - Onsite preferred).Initial Microsoft Teams (on camera); final in-person. Implement and manage Identity and Access Management (IAM) so...Mostrar másÚltima actualización: hace 21 horas
Security Architect 8-11

Security Architect 8-11

Focused HR SolutionsColumbia, South Carolina, United States
A tiempo completo
Quick Apply
This job is 100% on-site in Columbia, SC .Our direct client has an opening for a Security Architect 10945-1.This position is up to 6 months, with the option of extension, and is in Columbia, S...Mostrar másÚltima actualización: hace más de 30 días
  • Oferta promocionada
  • Nueva oferta
Security Architect - Secure Technology, Architecture and Safety

Security Architect - Secure Technology, Architecture and Safety

OracleColumbia, SC, United States
A tiempo completo
You will design and govern security reference architectures, standards, and controls for cloud primitives (compute, network, storage), identity and access, data protection, container / Kubernetes pla...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
  • Nueva oferta
Security Architect

Security Architect

OracleColumbia, SC, United States
A tiempo completo
Design, develop, troubleshoot and debug software programs for databases, applications, tools, networks etc.The Security Architect will design secure software systems, integrate DevSecOps practices,...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
  • Nueva oferta
Security Architect Consultant

Security Architect Consultant

United Global TechnologiesColumbia, SC, United States
A tiempo completo
Interview Process : INITIAL ROUND OF INTERVIEWS ON MICROSOFT TEAMS (ON CAMERA) WITH IN-PERSON INTERVIEWS PREFERRED BEFORE FINAL SELECTION. Duration of the Contract : 12 Months.Possibility for Extensio...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
  • Nueva oferta
IT Security Engineering Advisor Sr

IT Security Engineering Advisor Sr

SedgwickColumbia, SC, United States
A tiempo completo
By joining Sedgwick, you'll be part of something truly meaningful.It’s what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your c...Mostrar másÚltima actualización: hace 21 horas
  • Oferta promocionada
Security Architect - Advanced

Security Architect - Advanced

InterSourcesColumbia, SC, United States
A tiempo completo
Onsite (1st Month, Later 3 days onsite).Note : Work Location : Hybrid - the first month will be fully onsite (5 days / week) and then move to 3 days in office / 2 remote after the first month.A Bachelor'...Mostrar másÚltima actualización: hace más de 30 días
  • Oferta promocionada
  • Nueva oferta
Security Architect - Consultant

Security Architect - Consultant

Syntricate TechnologiesColumbia, SC, United States
A tiempo completo
Identity And Access Management - Ensuring That Appropriate Identity Management, Single Sign On, Multi-Factor Authentication, Active Directory And Applications Are Properly Implemented And Configure...Mostrar másÚltima actualización: hace 22 horas
  • Oferta promocionada
Security Architect - Consultant

Security Architect - Consultant

RAPS CONSULTING INCColumbia, SC, United States
A tiempo completo
Important Notes Please read before submitting candidates : : : : : .Resumes should be the work and words of the candidate in order to accurately reflect the candidate's written communication skills.Ca...Mostrar másÚltima actualización: hace más de 30 días
  • Oferta promocionada
Security Analyst - Consultant (Hybrid)

Security Analyst - Consultant (Hybrid)

Serigor Inc.Blythewood, SC, US
A tiempo completo
Security Analyst - Consultant (Hybrid).DAILY DUTIES / RESPONSIBILITIES : .Champion DevSecOps through Security Automation : Leverage your full-stack development expertise to design, implement, and main...Mostrar másÚltima actualización: hace 27 días