remote
Principal Security Architect - Brown University Health
Software Engineer
Lead the design and governance of secure hybrid and multi‑cloud architectures, partnering with infrastructure, application, and data teams to embed industry best practices and regulatory controls into reference models and standards.
About the role
Key Responsibilities
- Develop and maintain secure reference architectures for hybrid on‑premises and multi‑cloud environments, ensuring alignment with the organization’s security strategy and regulatory requirements.
- Partner with infrastructure, application, data, and cloud platform teams to translate security strategy into practical design patterns, standards, and controls.
- Lead the implementation of Zero Trust principles, IAM, and secure SDLC practices across all technology stacks.
- Conduct architecture reviews, risk assessments, and gap analyses to identify and remediate security weaknesses.
- Provide subject‑matter expertise on compliance frameworks (HIPAA, FERPA, NIST, ISO 27001) and guide teams in meeting audit and certification requirements.
Requirements
- 10+ years of experience in security architecture, with a strong focus on cloud and hybrid environments.
- Deep expertise in AWS, Azure, and/or GCP security services and best practices.
- Proven track record of designing and implementing Zero Trust and secure SDLC processes.
- Strong knowledge of regulatory compliance (HIPAA, FERPA, NIST, ISO 27001) and experience leading audit engagements.
- Excellent communication skills, able to translate complex security concepts to technical and non‑technical stakeholders.