More jobs:
Senior IT Security Architect, Acquisition Integration
Job in
City of Albany, Albany, Albany County, New York, 12201, USA
Listed on 2026-03-07
Listing for:
Cardinal Health
Full Time
position Listed on 2026-03-07
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Working together, we can make a difference in healthcare for our customers and communities. Your contributions, along with colleagues around the world, are helping make healthcare safer and more productive every day.
We currently have a job opening for a Senior IT Security Architect, Acquisition Integration.
OverviewThis role is for a Senior IT Security Architect within our Information Security group, focused on securely integrating acquired companies into Cardinal Health's technology and security environments. This role will drive the secure and efficient transition of acquired entities' IT security programs, tools, and processes to align with Cardinal Health's standards, while mitigating risk and optimizing costs.
Responsibilities- Drive Acquisition IT Security Integration Strategy:
Develop and execute comprehensive security integration strategies for newly acquired entities, aligning with Cardinal Health's security standards, risk appetite, and industry best practices. - Risk Mitigation and Diligence:
Review and analyze security diligence reports, penetration test findings, and third-party risk assessments for acquired entities. Prioritize and drive remediation efforts to reduce security risks effectively and efficiently. - Tool Rationalization and Optimization:
Lead the assessment and rationalization of security tools and technologies within acquired organizations. Develop and implement plans for migrating to or integrating with Cardinal Health's standard security stack, considering cost-effectiveness and operational efficiency. - Provide architectural guidance and oversight for cyber and information security managed services, particularly in post‑acquisition integration.
- Architecture Alignment and Design:
Contribute to the development and documentation of security architectures that support acquisition integration, ensuring alignment with Cardinal Health's reference architectures, design patterns, and technology standards. - Cross‑Functional Collaboration and Facilitation:
Act as a key liaison between acquired company security teams and Cardinal Health's internal security functions (e.g., Application Security, SOC, Vulnerability Management). Facilitate necessary meetings and discussions to define security requirements and ensure seamless onboarding of new assets. - Security Control Implementation Oversight:
Ensure that appropriate security controls are designed and implemented across all phases of acquisition integration, including endpoint security, network security, identity and access management, and data protection. - Security Operations Center (SOC) Onboarding:
Collaborate with the SOC to ensure readiness for onboarding new assets from acquired entities, including defining monitoring requirements, alert tuning, and Tier 1 response plans. - Security Process and Policy Alignment:
Assist in the adaptation and integration of acquired entities' security processes and policies to align with Cardinal Health's established frameworks and compliance requirements. - Vendor and Contract Management Support:
Provide security architecture input and guidance for vendor selection and contract negotiations related to security tools and services for integrated acquisitions. - Emerging Technology Integration:
Assess and advise on the secure integration of emerging technologies or unique solutions present within acquired companies, ensuring they can be managed within Cardinal Health's security ecosystem. - Knowledge Sharing and Mentorship:
Share expertise on acquisition security integration best practices and common challenges with other security team members and project stakeholders.
- Industry‑specific certifications preferred, such as CISSP, CISM, CRISC, or relevant technical security certifications.
- Advanced experience with various security domains, including but not limited to endpoint security, network security, cloud security, identity and access management, vulnerability management, and security operations.
- Strong understanding of common security frameworks and standards (e.g., NIST Cybersecurity Framework, ISO 27001/2, HIPAA, PCI DSS).
- Strong understanding of risk management methodologies and experience applying them…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×