- Location
- Brentwood, TN, US
- Workplace
- Remote
- Type
- Full-time
- Department
- IT
- Seniority
- Manager
- Closing date
- Today
- Source
- iCIMS
Description
Overview
Ardent Health is a leading provider of healthcare in growing mid-sized urban communities across the U.S. With a focus on people and investments in innovative services and technologies, Ardent is passionate about making healthcare better and easier to access. Through its subsidiaries, Ardent delivers care through a system of 30 acute care hospitals, 24,000+ team members and more than 280 sites of care with over 1,800 affiliated providers across six states.
POSITION SUMMARY:
The Cloud Security Manager is responsible for both working independently and leading a team of security professionals who design, maintain and manage alerts in Microsoft Azure. The Manager will work closely with the Microsoft cloud infrastructure team, Architectural team, Network teams, cloud providers, third-party vendors, contractors, and remote staff to proactively identify potential issues and fix existing problems. You will also lead the administration, operations, and tasks of the team of engineers to drive the vision and goals of Ardent and the leaders above the role. A successful candidate in this role strives to enforce Information security best practices, policies, standards, and guidance to ensure the safeguard of proprietary data, physical infrastructure and resources from internal and external threats. This role will also assist other members of the Ardent Information Security Operations team and key corporate/partner/business units in support of the AHS Company Mission and strategic business initiatives
Responsibilities
- Manage / define cloud processes, procedures, and playbooks.
- Define and enforce the compliance and the security requirements in building and managing Microsoft’s cloud environment which includes Identity protection, Data security (classification and DLP, and CoPilot.
- Manage security team members and coordinate activities to deliver security compliance in our growing cloud footprint in Microsoft Azure.
- Engage and collaborate with other Engineering teams to advocate and advance our security posture.
- Participate in tabletop exercises / training.
- Research and recommend solutions that meet security standards while ensuring functionality for business continuity.
- Mentor security engineers/analyst in their professional growth.
- Assist in development of disaster recovery and contingency plans.
Qualifications
Required Qualifications
- BS/BA degree in computer science, information technology or specialized information security technical training.
- A reputable security certification (Microsoft AZ-500, CCSP, CISSP, CISSP w/specialization HCISPP, etc.)
- 6+ years of progressive Information Security experience.
- Previous team lead or management experience.
- Comprehensive knowledge of Microsoft Azure cloud services.
- ITIL experience - managing incidents, requests, and changes.
- The ability to lead and mentor teams to:
- Support existing security initiatives both from an implementation and operational perspective
- Develop support documentation, including professional diagrams and operational documentation
- Prepare and present plans / designs to IT and business leaders
- Prioritize tasks effectively to meet project deadlines and deliverables
- Knowledge of Federal and state laws regarding security and privacy of electronic information assets, within the context of the healthcare industry is highly preferred (e.g., HIPAA, Sarbanes-Oxley, etc.); Industry security frameworks (e.g., NIST) is required;
Preferred Qualifications
- Graduate degree.
- Must be willing to travel occasionally.
- Must be willing to respond to security issues 24x7.
- Cloud security related strategies, policies and standards.
- Data Loss Prevention design, implementation and support.
- Ability to relate business requirements and risks to technology implementation for security-related activities.
- Ability to collaborate with IT&S and business area professionals to identify/recommend applicable security practices/controls rather than dictating security methods.
- Strong customer service focus and ability to manage client (e.g., facility) expectations.
- Excellent oral and written communication skills with the ability to present and discuss technical information in a manner suitable for the audience.
- Solid project management and collaboration skills, especially in a cross-functional dynamic team environment.