CVS Health logo
CVS Health

Bringing our heart to every moment of your health.

Distinguished Architect - Security

Security AnalystSecurity AnalystFull TimeRemoteMid LevelTeam 10,001+Since 1963H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

74 days ago

Salary

$175K - $334K / year

Seniority

Mid Level

Job Description

Distinguished Architect - Security

CVS Health

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. We are seeking a highly experienced and technically skilled Distinguished Architect specializing in security to help drive our technology organization’s future strategy. This role will require a deep understanding of the application of security to business applications. The successful candidate will be responsible for architecting security reference architectures that meet the needs of the broader technology organization. We are seeking a Distinguished Architect who: - Possesses significant (IC) leadership experience and has driven large technical initiatives across an enterprise in an influencing role. - Is deeply passionate about security with significant (deep and broad) experience in these areas. - Can dive deep into the details of how secure solutions but also can communicate a broader vision. - Has worked in a broad architecture role in a large enterprise with a very complex technology landscape. - Builds strong relationships and is highly collaborative with others. What you will do: - Be part of a team responsible for enabling secure technology solutions that meets our business strategy and drives business value. - Define and collaborate on the creation of security roadmaps, security reference architectures, standards, best practice documents, and secure-by-design reference implementations that accelerate delivery while ensuring safety and compliance. - Evaluate market trends in cybersecurity, execute buy vs. build decisions and assess cost and the risk impact on targeted business outcomes. - Define future state security architecture that supports secure adoption of Artificial Intelligence, APIs, data stores, cloud infrastructures, cloud services, and microservices. - Collaborate and consult with technology, cybersecurity, and business partners to optimize business applications and systems that adopt modern and secure architectures, especially around AI. - Develop and maintain a strategic vision for the secure use of AI technologies, aligned to the CVS Health platform based on key business drivers, regulatory requirements, and emerging threat trends. - Define and collaborate on the creation of security frameworks for the enterprise that promote reuse, reduces cost, manages risk, and increases speed to market. - Effectively build and maintain strong relationships with technology, cybersecurity, and business partners to establish trust and influence key security decisions. - Provide guidance, direction and mentorship to engineers and other stakeholders regarding security architecture and secure design of enterprise applications. - Ensure all Non-Functional Security Requirements (e.g., authentication, authorization, resilience, encryption, auditability, availability, etc.) are properly articulated, and work with all parties to guarantee that delivered software products meet these objectives. - Participates in high-level security estimation and security evaluation of AI-enabled solutions. - Mentor and coach junior architects and seek the opportunity to bring continuous improvement in secure engineering and enterprise security practices. - Strategize and outline long-term security architectural plans for a complex technology environment. Required Qualifications: - 15+ years of relevant work experience (10+ years in technical security leadership roles) - 10+ years of experience building or securing large-scale business applications using modern technologies and architectural patterns. - 10+ years of experience designing secure integrations with a focus on performance, resilience, and loose coupling using APIs, microservices, and event-driven architecture. - Evidence of significant contributions in previous roles and/or to the broader industry. - Expert-level understanding of security architectural methodologies/best practices, regulatory and compliance requirements, and risk frameworks that influence architecture decisions. - Recognized technical leader with full stack technology knowledge and recognized as an expert in multiple security domains such as: Identity & access management (IAM), network security, cloud security (AWS/Azure/GCP), data protection, zero trust, or security operations. - Experience recognizing the impact security architecture decisions can have on strategic business decisions. - Substantial experience with requirements analysis, risk assessment, estimation, and secure application design. - Expert understanding of architectural governance, security design patterns, AI safety controls, secure development standards, and best practices. - A diverse technical background with key areas of depth around AI/ML/Agentic AI security, cloud security, data platform security, hybrid solutions and operating securely at scale. - Excellent collaboration, influencing, negotiation, coaching and coalition-building skills. Preferred Qualifications: - Experience developing security architecture using agile methodology. - Experience in AI security architecture and practical application of AI technologies. - Experience with the concepts and practical application of AI security, and the future of secure autonomous systems. - A self-starter that is naturally inquisitive and proactive in identifying threats and emerging risks. - Infrastructure experience and expertise (e.g. private/public cloud) - Master’s or PhD. degree. Education Bachelor’s degree in computer science or related field. Pay Range The typical pay range for this role is: $175,100.00 - $334,750.00 This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above. This position also includes an award target in the company’s equity award program. Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong. Great benefits for great people We take pride in our comprehensive and competitive mix of pay and benefits – investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include: - Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan. - No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching. - Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility. For more information, visit https://jobs.cvshealth.com/us/en/benefits We anticipate the application window for this opening will close on: 06/29/2026 Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

Related Job Pages

More Security Analyst Jobs

Senior IAM Security Analyst

ALSAC - American Lebanese Syrian Associated Charities

The American Lebanese Syrian Associated Charities (ALSAC) is a division of St. Jude Children's Research Hospital that is dedicated to raising funding and awaren

Security Analyst74 days ago

• Independently lead activities related to assigned project/area (including implementation of security controls, risk assessments, security risk management processes, risk awareness activities) • Lead setting up and optimization of security management processes for internal customers as assigned • Guide and direct team members around issues related to systems/procedures • Actively contribute in project teams, panels, technological platforms and meetings • Participate in meetings with cross-functional teams to understand business/organizational processes and identify emerging security requirements • Train and guide users and other business teams in relation to security controls, processes, and issues • Train and mentor team members around new security controls/systems/processes • Perform other duties as assigned to meet the goals and objectives of the department and institution • Maintains regular and predictable attendance.

Tennessee
$94.6K - $169.5K / year
Job Closed
Treantly logo

Senior SOC Analyst (L3)

Treantly

Treantly is a Canadian-based recruitment agency that facilitates the connection between businesses in North America and exceptional remote staff in the Philippines.

Security Analyst74 days ago

Treantly is a Canadian-based recruitment agency that facilitates the connection between businesses in North America and exceptional remote staff in the Philippines.  Job Summary: We are seeking a highly skilled Senior SOC Analyst (L3) to join our cybersecurity team. As an L3 Analyst, you will be responsible for leading advanced threat detection, incident response, and security operations. You will serve as the escalation point for complex security incidents, mentor junior analysts, and develop security strategies to enhance our organization’s security posture. Key Responsibilities: - Act as the final escalation point for security incidents, conducting deep-dive investigations and forensic analysis. - Develop, implement, and enhance security monitoring and threat-hunting processes. - Lead incident response efforts, including containment, eradication, and recovery from security breaches. - Conduct threat intelligence analysis and proactively identify emerging security threats. - Tune and optimize security tools such as SIEM, IDS/IPS, endpoint protection, and vulnerability management solutions. - Collaborate with internal teams and external vendors to improve security architecture and processes. - Provide guidance and mentorship to L1 and L2 SOC analysts. - Develop and maintain security policies, playbooks, and incident response procedures. - Ensure compliance with industry regulations and security best practices. - Conduct red teaming exercises and penetration testing simulations.

Philippines
Job Closed
Treantly logo

Senior SOC Analyst (L3)

Treantly

Treantly is a Canadian-based recruitment agency that facilitates the connection between businesses in North America and exceptional remote staff in the Philippines.

Security Analyst74 days ago

Treantly is a Canadian-based recruitment agency that facilitates the connection between businesses in North America and exceptional remote staff in the Philippines.  Job Summary: We are seeking a highly skilled Senior SOC Analyst (L3) to join our cybersecurity team. As an L3 Analyst, you will be responsible for leading advanced threat detection, incident response, and security operations. You will serve as the escalation point for complex security incidents, mentor junior analysts, and develop security strategies to enhance our organization’s security posture. Key Responsibilities: - Act as the final escalation point for security incidents, conducting deep-dive investigations and forensic analysis. - Develop, implement, and enhance security monitoring and threat-hunting processes. - Lead incident response efforts, including containment, eradication, and recovery from security breaches. - Conduct threat intelligence analysis and proactively identify emerging security threats. - Tune and optimize security tools such as SIEM, IDS/IPS, endpoint protection, and vulnerability management solutions. - Collaborate with internal teams and external vendors to improve security architecture and processes. - Provide guidance and mentorship to L1 and L2 SOC analysts. - Develop and maintain security policies, playbooks, and incident response procedures. - Ensure compliance with industry regulations and security best practices. - Conduct red teaming exercises and penetration testing simulations.

Philippines
CivicPlus logo

Information Security Compliance Analyst

CivicPlus

Powering and Empowering Government

Security Analyst74 days ago
Full TimeRemoteTeam 501-1,000Since 2001H1B Sponsor

• Maintain and update information security policies, standards, and procedures in alignment with modern cybersecurity frameworks and regulatory requirements, including GovRAMP, FedRAMP, ISO 27001, PCI DSS, and SOC 2. • Maintain System Security Plans (SSPs) to ensure system boundaries, control implementations, and control inheritance accurately reflect the current state of production systems. • Coordinate and manage internal and external compliance assessment activities, including audit planning, audit fieldwork coordination, evidence collection and preservation, and support of audit responses. • Manage continuous monitoring activities, including tracking, updating, and reporting Plan of Actions and Milestones (POA&Ms) to support risk remediation and security posture communication. • Support risk assessments and control gap analyses by identifying security and compliance deficiencies and collaborating with stakeholders to define remediation approaches. • Define, track, and report key compliance metrics to measure program effectiveness and communicate compliance posture to leadership and governance committees. • Partner closely with engineering, operations, and production teams to ensure security requirements are documented, implemented consistently, and remain audit-ready across systems. • Develop and maintain audit-ready evidence repositories to support repeatable, efficient compliance assessments and reduce audit cycle time. • Provide guidance to system owners and control owners on compliance expectations, documentation standards, and control implementation requirements.

United States
$61.7K - $87.6K / year
Job Closed