Job Closed

This listing is no longer active.

Security Architect

Security EngineerSecurity EngineerOtherRemoteMid LevelTeam 10,001+Since 1876H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

142 days ago

Salary

$141K - $246K / year

Seniority

Mid Level

Job Description

Security Architect

Eli Lilly and Company

At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, Indiana. Our employees around the world work to discover and bring life-changing medicines to those who need them, improve the understanding and management of disease, and give back to our communities through philanthropy and volunteerism. We give our best effort to our work, and we put people first. We’re looking for people who are determined to make life better for people around the world. What You'll Be Doing As a Security Architect, you will serve as a technical lead for security consulting engagements, threat modeling initiatives, and third-party security assessments. You will develop threat models, security architectures, and reference patterns — including for cloud and hybrid environments — while providing guidance on secure design principles. This role involves close collaboration across teams to integrate security into the development lifecycle and evaluate vendor security posture. You will also leverage AI-powered tools to enhance the efficiency and depth of security assessments. How You'll Succeed - Technical expertise: Deep domain knowledge across security engineering, threat modeling, cloud architectures, application security, and third-party risk management. Ability to use AI tooling to accelerate and improve security work. - Strategic thinking: Ability to develop reference architectures and integrate complex systems across on-premises and cloud environments, balancing security risk with business enablement. - Consultative approach: Provide expert security guidance to teams, stakeholders, and external vendors throughout assessment engagements, including evaluating and advising on the secure use of AI platforms. - Leadership: Lead technical initiatives and architecture reviews while mentoring junior security professionals. - Innovation: Actively promote cloud-native security patterns and the responsible adoption of AI technologies across teams. - Communication: Translate complex security concepts and technical risk findings into clear, business-friendly language for executive stakeholders and audiences with different technical backgrounds. Key Responsibilities - Develop and conduct threat modeling exercises across application, infrastructure, and cloud environments using established frameworks (MITRE ATT&CK, STRIDE, NIST 800-53, ISO 27001) - Create and maintain security architectures and design patterns, including cloud and hybrid reference architectures - Conduct security architecture reviews for internal initiatives, new technologies, and third-party vendors. - Perform third-party security assessments, including vendor questionnaire reviews, SOC 2 evaluations, and risk acceptance documentation - Leverage AI tools and technologies to streamline assessment workflows, analyze vendor documentation, identify risk patterns, and improve assessment quality and consistency - Provide security consulting services across the organization, enabling business objectives while clearly communicating risk - Develop and document security best practices, standards, and guidance — including responsible AI tool usage in security workflows - Lead security briefings and workshops; mentor junior security engineers and drive adoption of security standards Your Basic Qualifications - High Schol Diploma/GED - Deep expertise in threat modeling methodologies and security architecture design across cloud (AWS, Azure, GCP), SaaS, and hybrid environments - Strong background in security consulting, risk assessment, and third-party cyber risk management, including SOC 2 review and HIPAA compliance evaluation - Minimum seven years of cybersecurity or related experience - Qualified applicants must be authorized to work in the United States on a full-time basis. Lilly will not provide support for or sponsor work authorization or visas for this role now or in the future, including but not limited to F-1 CPT, F-1 OPT, F-1 STEM OPT, J-1, H-1B, TN, O-1, E-3, H-1B1, or L-1. What You Should Bring - Bachelor's degree in Computer Science, Information Security, or related field preferred - Experience with or willingness to adopt AI tools for document analysis, risk summarization, and pattern identification; understanding of AI/ML security considerations - Knowledge of Zero Trust principles and major security frameworks (MITRE ATT&CK, STRIDE, NIST 800-53, ISO 27001) - Excellence in technical documentation and executive-level risk communication - Experience mentoring, collaborating across teams, and engaging stakeholders at varying levels of technical expertise - Project management and strategic planning skills - Commitment to continuous learning and professional development, including staying current on developments relevant to cybersecurity Lilly is dedicated to helping individuals with disabilities to actively engage in the workforce, ensuring equal opportunities when vying for positions. If you require accommodation to submit a resume for a position at Lilly, please complete the accommodation request form (https://careers.lilly.com/us/en/workplace-accommodation) for further assistance. Please note this is for individuals to request an accommodation as part of the application process and any other correspondence will not receive a response. Lilly is proud to be an EEO Employer and does not discriminate on the basis of age, race, color, religion, gender identity, sex, gender expression, sexual orientation, genetic information, ancestry, national origin, protected veteran status, disability, or any other legally protected status. Our employee resource groups (ERGs) offer strong support networks for their members and are open to all employees. Our current groups include: Africa, Middle East, Central Asia Network, Black Employees at Lilly, Chinese Culture Network, Japanese International Leadership Network (JILN), Lilly India Network, Organization of Latinx at Lilly (OLA), PRIDE (LGBTQ+ Allies), Veterans Leadership Network (VLN), Women’s Initiative for Leading at Lilly (WILL), enAble (for people with disabilities). Learn more about all of our groups. Actual compensation will depend on a candidate’s education, experience, skills, and geographic location. The anticipated wage for this position is $141,000 - $246,400 Full-time equivalent employees also will be eligible for a company bonus (depending, in part, on company and individual performance). In addition, Lilly offers a comprehensive benefit program to eligible employees, including eligibility to participate in a company-sponsored 401(k); pension; vacation benefits; eligibility for medical, dental, vision and prescription drug benefits; flexible benefits (e.g., healthcare and/or dependent day care flexible spending accounts); life insurance and death benefits; certain time off and leave of absence benefits; and well-being benefits (e.g., employee assistance program, fitness benefits, and employee clubs and activities).Lilly reserves the right to amend, modify, or terminate its compensation and benefit programs in its sole discretion and Lilly’s compensation practices and guidelines will apply regarding the details of any promotion or transfer of Lilly employees. #WeAreLilly

Related Categories

Related Job Pages

More Security Engineer Jobs

Businessolver logo

Information Security Architect

Businessolver

Benefits Technology, Powered by People

Security Engineer142 days ago
OtherRemoteTeam 1,001-5,000Since 1998H1B Sponsor

Since 1998, Businessolver has delivered market-changing benefits technology and services supported by an intrinsic responsiveness to client needs. The company creates client programs that maximize benefits program investment, minimize risk exposure, and engage employees with easy-to-use solutions and communication tools to assist them in making wise and cost-efficient benefits selections. Founded by HR professionals, Businessolver's unwavering service-oriented culture and secure SaaS platform provide measurable success in its mission to provide complete client delight. The Information Security Architect is responsible for designing and implementing secure systems, networks, and applications to protect the organization’s data and technology assets. This role maintains compliance with Businessolver’s security framework, policies, and standards, ensuring security is built into systems from the ground up. Responsibilities include assessing risks, identifying vulnerabilities, selecting appropriate security technologies, and guiding teams on secure design principles. This role will partner closely with IT, engineering, and business leaders to balance security requirements with operational and business needs, ensuring resilience against evolving cyber threats. At Businessolver you have opportunities for individual development through our common language: Respond Readily. Trust through transparency. Assume positive intent. Be real. Live a growth attitude. Embrace the reverse golden rule. Essential Duties: - Ensure all security practices, systems, and architectures adhere to applicable laws, regulations, frameworks, and industry standards. - Maintain documentation to demonstrate compliance and support audits. - Develop and document secure technical architectures that integrate cybersecurity best practices into enterprise systems, applications, and cloud environments. - Balance security requirements with business needs to enable scalable, resilient solutions. - Engineer and implement security controls for systems, applications, and networks to safeguard against unauthorized access, data breaches, and service disruptions. - Conduct risk assessments to identify potential vulnerabilities and apply appropriate mitigations. - Partner with infrastructure, operations, and development teams to embed security throughout the technology lifecycle. - Provide guidance during planning, design, development, testing, and deployment to ensure secure-by-design outcomes. - Perform and coordinate penetration testing, vulnerability scanning, code reviews, and other security validation activities. - Interpret results, recommend remediation strategies, and ensure corrective actions are effectively implemented. - Establish monitoring processes, tools, and dashboards to proactively detect and respond to anomalies or threats. - Continuously assess and refine security controls, processes, and technologies to address evolving risks and improve maturity. - Assist in the identification, investigation, containment, and recovery of security incidents. - Provide technical expertise to incident response teams and contribute to post-incident reviews to strengthen defenses and reduce recurrence. - Performs other duties as assigned. - Comply with all policies and standards - Qualifications: - Bachelor's degree (Computer Science, Information Technology, Cybersecurity, Information Assurance, Information Systems) - Master’s degree preferred in Cybersecurity, Information Assurance, or Business Administration - Certifications One required, Multiple preferred (CISSP, CISM, CISA, CEH, Security+, CCSP, TOGAF) - 5-10 years of IT and Security Experience - 2-4 years of cloud computing security experience - 5 years of demonstrated experience designing and implementing security Solutions - 5 years of experience interacting with business partners to achieve security goals The pay range for this position is $89K to $149K per year (pay to be determined by the applicant’s education, experience, knowledge, skills, and abilities, as well as internal equity and alignment with market data). This role is eligible to participate in the annual bonus incentive plan. Interested? Great, we look forward to reviewing your application. Other Compensation: If this position is full-time or part-time benefit eligible, you will receive a comprehensive benefits package which can be viewed here: https://businessolver.foleon.com/bsc/job-board-businessolver-virtual-benefits-guide/ Dear Applicant. At Businessolver, we take our responsibility to protect our clients, employees, and company seriously and that begins with the hiring process. Our approach is thoughtful and thorough. We’ve built a multi-layered screening process designed to identify top talent and ensure the integrity of every hire. This includes quickly filtering out individuals who may attempt to misrepresent themselves or act in bad faith. We also partner with trusted, best-in-class providers to conduct background checks, verify identities, and confirm references. These steps aren’t just about compliance, they’re about ensuring fairness, safety, and trust for everyone involved. Put simply: we will always confirm that you are who you say you are. It's just one of the many ways we uphold the standards that matter most, to you, to us, and to the people we serve. With heart, The Businessolver Recruiting Team Businessolver is committed to maintaining an environment that protects client data. We train our employees to maintain leading class security practices and expect all employees to adhere to policy, procedures and controls. (Applicable to all roles at an AVP, DIR, VP, Head Of or SVP and above level): Serve as a security contact for the business unit. Responsible for driving adoption and compliance with information security and privacy practices. Serve as a liaison with the information security team on security and privacy matters. Equal Opportunity at Businessolver: Businessolver is an Affirmative Action and Equal Opportunity Employer and is proud to offer equal employment opportunity to everyone regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, and more. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. #LI-Remote

United States
$65K - $75K / year
Job Closed
DrAnsay.com logo

Security Specialist

DrAnsay.com

We make health care solutions digital and easier to access for everyone.

Security Engineer142 days ago
Full TimeRemoteTeam 11-50Since 2018H1B No Sponsor

• Take ownership of application and cloud security across our services, APIs, mobile apps, and Kubernetes-based GCP infrastructure • Conduct hands-on penetration testing (Node.js/TypeScript, APIs, iOS/Android), including tools such as Burp Suite • Identify and remediate vulnerabilities (e.g., auth bypass, injection, deserialization flaws) • Define and implement secure API standards (JWT/OAuth, TLS/mTLS, validation, rate limiting, CORS) • Harden infrastructure (Kubernetes/GCP, Postgres, Redis/BullMQ) and secure mobile applications • Establish and continuously improve Secure SDLC practices (threat modeling, reviews, SAST/DAST in CI/CD) • Implement automated monitoring (eBPF, Falco) and support incident response • Contribute to GDPR, ISO 27001, and SOC 2 initiatives

Germany
Job Closed
Simeio logo

IAM Architect

Simeio

We simplify IAM complexities for global organizations to ensure security goals are met, backed with right tech & people!

Security Engineer142 days ago
OtherRemoteTeam 501-1,000H1B Sponsor

IAM Architect Location: Remote (US or Canada)Role Overview We are seeking an experienced IAM Architect to lead the design and implementation of enterprise identity and access management solutions. This role will own architecture across Identity Governance (IGA), Access Management (AM), and Authentication platforms. Our environment is primarily SailPoint Identity Security Cloud (ISC), with significant use of Ping Identity solutions and Saviynt. The ideal candidate has experience designing across these platforms and can translate business, security, and compliance requirements into scalable IAM architectures. This is a hands-on architecture role — not strategy-only. Responsibilities - ​​​​​Define and lead enterprise IAM architecture strategy - Design and implement identity governance solutions (SailPoint ISC, Saviynt) - Design and support access management solutions (PingFederate, PingOne, SSO, MFA) - Architect lifecycle management, RBAC models, and access certification frameworks - Lead integration design for AD, Azure/Entra ID, HR systems, ERP platforms, and SaaS applications - Design SSO, federation (SAML, OIDC, OAuth), and MFA strategies - Ensure IAM solutions align with security, audit, and compliance requirements - Provide technical leadership to IAM engineers and implementation teams - Support cloud-first identity strategies and Zero Trust initiatives Required Experience - 8+ years in IAM / cybersecurity architecture - Strong experience with SailPoint (preferably ISC) - Experience with Ping Identity products (PingFederate, PingOne, MFA) - Experience with Saviynt or other IGA platforms - Deep understanding of IGA, SSO, federation, and access control models - Experience integrating IAM platforms with enterprise applications and cloud services - Knowledge of SAML, OAuth, OIDC, SCIM, and REST APIs Preferred - SailPoint ISC or Saviynt certifications - Ping Identity certifications - Experience in regulated industries - Experience leading IAM modernization or migration programs Why Simeio?: Simeio is a global managed services provider offering Identity and Access Management solutions delivered as a service and interoperable with leading IAM tools. With 700+ employees worldwide, Simeio secures over 160 million identities globally for large enterprises and government entities. Services and solutions from Simeio include Customer Identity & Access Management, Privileged Access Management, Identity Proofing, Access Management & Federation, Identity Governance & Administration, Application Onboarding, and Simeio Identity Orchestrator. The company has been recognized for its business and technical leadership and highly rated by Gartner, Forrester, and KuppingerCole, and was ranked by Great Places to Work®. For more information visit simeio.com ​​​​​​​ Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at recruitment@simeio.com or +1 404-882-3700.

United States + 1 moreAll locations: United States | Canada
Simeio logo

IAM Architect - Saviynt

Simeio

We simplify IAM complexities for global organizations to ensure security goals are met, backed with right tech & people!

Security Engineer142 days ago
OtherRemoteTeam 501-1,000H1B Sponsor

Role: IAM Architect - Saviynt Location: Remote (US or Canada)Role Overview We are seeking a hands-on Saviynt Architect with proven experience delivering multiple full lifecycle Saviynt IGA implementations. This role requires ownership of solution design, configuration, integrations, and deployment in complex enterprise environments. This is not a strategy-only role — the ideal candidate must be able to architect the solution and execute the build. Responsibilities - Lead end-to-end Saviynt implementations - Design scalable identity governance and access control models - Configure lifecycle management, access requests, certifications, and RBAC - Build and configure connectors for AD, Azure/Entra ID, SAP, Workday, and SaaS applications - Develop provisioning workflows, approval processes, and access policies - Configure SoD controls and compliance reporting - Translate business requirements into technical design documentation - Troubleshoot and optimize Saviynt configurations - Support go-live and post-implementation stabilization Required Experience - Architecture & hands-on Saviynt experience - Experience delivering at least 2 full Saviynt implementations - Strong understanding of Identity Governance and Administration (IGA) - Experience integrating Saviynt with AD, HR systems, ERP platforms, and SaaS applications - Experience with REST APIs and web service integrations - Strong SQL knowledge (Saviynt relies heavily on database configuration) Preferred - Saviynt certification - Experience with Saviynt EIC (Enterprise Identity Cloud) - Experience in regulated industries (Finance, Healthcare, etc.) - Scripting experience (PowerShell, Python) Why Simeio?: Simeio is a global managed services provider offering Identity and Access Management solutions delivered as a service and interoperable with leading IAM tools. With 700+ employees worldwide, Simeio secures over 160 million identities globally for large enterprises and government entities. Services and solutions from Simeio include Customer Identity & Access Management, Privileged Access Management, Identity Proofing, Access Management & Federation, Identity Governance & Administration, Application Onboarding, and Simeio Identity Orchestrator. The company has been recognized for its business and technical leadership and highly rated by Gartner, Forrester, and KuppingerCole, and was ranked by Great Places to Work®. For more information visit simeio.com Simeio is an equal opportunity employer. If you require assistance with completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please direct your inquiries to any of the recruitment team at recruitment@simeio.com or +1 404-882-3700.

United States + 1 moreAll locations: United States | Canada