Connecting the world’s health data to improve patient outcomes.
Senior Application Security Architect
Location
United States
Posted
116 days ago
Salary
$184K - $230K / year
Seniority
Senior
Job Description
Senior Application Security Architect
Datavant
• Lead secure architecture and design reviews across Datavant’s portfolio of applications. • Provide expert guidance on risk mitigation and actionable security recommendations. • Collaborate closely with engineering teams and compliance stakeholders. • Own and conduct security/threat model reviews and provide expertise on security architecture. • Manage security-related requests and feedback to development teams for control implementation.
Job Requirements
- 6+ years of working in architectural and threat modeling review areas.
- 6+ years of working with compliance standards.
- Hands-on experience developing in multiple programming languages.
- Deep understanding of Application and Cloud security.
- Strong understanding of security controls, both in audit standards and practical controls.
- Ability to articulate security's role throughout the software development lifecycle.
- Ability to understand trade-offs in security for legacy systems.
- Proven success in fast-paced environments where security is a partner to engineering teams.
Benefits
- Health insurance
- Vacation time
- Flexible work arrangements
- Professional development opportunities
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Evaluate AI Performance: Assess the accuracy and efficacy of AI algorithms used in the DSI solution • Quality Assurance: Conduct rigorous testing and validation of the AI components • Data Analysis: Analyze data patterns and trends • Feedback and Improvement: Provide actionable feedback • Documentation: Create comprehensive reports
• Conduct comprehensive assessments of clients' current ad tech practices and identify compliance gaps related to privacy regulations. • Implement changes in various Ad Tech technologies to operationalize compliance strategy. • Develop and deploy methodologies on integrating data protection by design principles to the SDLC, including requirements, elicitation, design, implementation, testing, deployment, and ongoing administration and maintenance. • Develop and deploy methodologies to advise clients on applying consent models to cookies, pixels, beacons, and other tracking technologies for websites and mobile applications. • Develop and deploy website scanning strategies and technologies; recommend and implement technical measures to support compliance with consent and preference management obligations. • Oversee delivery of engagements related to Privacy Technology implementations, integrations, and configurations; privacy by design; Software / Solution Development Lifecycle (SDLC) integration; privacy source code analysis; website and application compliance; and Privacy Technology training and adoption. • Design and develop robust API/system integrations utilizing cutting-edge privacy tools, acting as a key system architect. • Monitor and troubleshoot integration issues, ensuring system reliability and performance. • Assist with in-depth analyses of network traffic and employ advanced network scanning tools. • Create documentation identifying data flows between various systems and technologies. • Lead day-to-day activities of engagements including interaction with other team members, subject matter experts, external counsel, and client contacts. • Manage all facets of client engagements, including project planning, work stream supervision, budgeting, and billing. • Create project status summaries, reports, metrics, written analyses, assessments, and other presentations of work performed. • Create and update policies and procedures to support compliance with various regulations. • Actively participate in and lead internal and external team meetings including client assessments, presentations, and status meetings. • Manage time and tasks to meet internal and external deadlines. • Develop standardized metrics, methodologies, and other work products to be delivered by client project teams. • Stay informed on industry trends and best practices in system architecture, automation and integration.
Infrastructure and Endpoint Security Engineer
Devoted StudiosCreating equal opportunity for talent to work on games of their dreams
• Design and maintain secure network and infrastructure architecture • Configure and manage firewalls, VPNs, access controls, and network segmentation • Secure servers, cloud resources, containers, and virtual machines • Secure employee workstations and enforce security baselines • Monitor endpoints and infrastructure for suspicious activity • Collect, analyze, and correlate security logs • Detect, investigate, and respond to security incidents • Perform vulnerability analysis, risk assessment, and remediation • Conduct system and network hardening • Develop and deliver internal security trainings and awareness sessions • Manage and maintain security training platforms and learning content • Organize phishing simulations and awareness campaigns • Collaborate with IT, DevOps, Infrastructure, and HR teams • Complete and review clients security questionnaires and security assessment forms to demonstrate the company’s security posture • Participate in security and compliance calls with client information security specialists and stakeholders • Set up and maintain security monitoring and alerting • Investigate anomalies and security incidents • Perform root-cause analysis and post-incident reviews • Improve detection, response, and prevention processes • Plan and deliver security awareness programs • Manage training platforms and user enrollment • Track training completion and effectiveness • Continuously improve training materials based on incidents and risks
Information Security Officer
Ipsos North AmericaUltimately, success comes down to a simple truth: YOU ACT BETTER WHEN YOU ARE SURE
• Plan, implement, and sustain ISO 27001 security controls as per the standard. • Oversee and manage information security projects across their lifecycle. • Develop and enforce information security policies, procedures, and processes. • Conduct risk assessments and snap audits for potential security threats. • Coordinate internal and external audits for compliance and certification and manage business continuity plans. • Develop and maintain Business continuity plan and conduct tabletop exercise for BCDR scenarios.




