- Develop and maintain the enterprise cybersecurity and risk management architecture strategy and roadmap for our organization.
- Manage a team of architects.
- Responsible for the budget, and staff recruitment, performance, engagement, and retention.
- Work closely with CISO and other cybersecurity leadership to align our security technology investments with our business objectives.
- Define and maintain our enterprise cybersecurity architecture standards and guidelines.
- Provide leadership and guidance to our IT, security, and infrastructure teams.
- Ensure that our systems and solutions are integrated, scalable, and secure.
- Remain current with new cybersecurity threats and assess systems to ensure they can defend the business.
- Stay on top of new and disruptive trends in the security industry. Formally communicate trends to EA and CISO. Advise CISO and leadership team in vendor/product/service selection, assist in educating and persuading business and operational leaders with adoption of security controls.
- Own development of rolling 18-month cycle to achieve To-Be architecture for Cybersecurity and risk management.
- Review vendor technology roadmaps into cybersecurity domain roadmaps to ensure continuous improvements to cyber domain operations, including cost-to-serve and other financial KPIs.
- Oversee development and maturity of Cybersecurity response, containment, recovery and restore playbooks for the enterprise.
- Partner with office of CISO to deploy Enterprise and Cyber Resiliency processes, procedures and methods.
- Oversee development and maintenance of blueprint of Disaster Recovery of critical business systems from Cyber induced disaster events.
- Partner with IT, Applications, Operations, IT GRC, Cybersecurity and other teams to simulate a Cybersecurity disaster and recovery drills, tabletop exercises.
- Partner with CISO to document gaps and drive collaboration to remediate.
- Partner with CISO to develop cohesive strategy to implement frictionless security controls and achieve industry certifications, such as HITRUST, SOC-II
- Partner with CISO to develop implementable roadmap to deploy controls aligning to security industry best practices, such as Zero Trust Network Access, Defense in Depth.
- Stay up-to-date with emerging technologies and industry trends.
- Drive innovation and continuous improvement in our technology landscape.
- Collaborate with our IT and security teams to ensure that our technology investments comply with healthcare industry standards and regulations.
- Conduct architecture assessments and provide recommendations for improvement.
- Develop and maintain architecture-related policies and procedures.
- Provide guidance and support for technology procurement and vendor management
Enterprise Architecture