Director, Security Architecture
Listed on 2026-09-10
-
IT/Tech
Cybersecurity, Systems Engineer, IT Consultant, Information Security & Data Protection
What Information Security and Risk contributes to Cardinal Health
Information Technology oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure or destruction. This job family develops system back-up and disaster recovery plans. Information Technology also conducts incident response, threat management, vulnerability scanning, virus management and intrusion detection and completes risk assessments.
Job SummaryThe Director, Security Architecture is responsible for establishing, leading, and developing the security architecture strategy, standards, and design practices to enable secure, scalable, and resilient technology solutions across the organization. Reporting to the Vice President, Information Security & Risk, this role serves as a technical leader responsible for aligning security architecture with business priorities, risk management objectives, and enterprise GTBS strategies.
This role leads all aspects of security architecture, including architecture strategy and governance, technical security standards, solution design and advisory, architecture reviews, and tooling optimization. It plays a critical role in embedding security into the development lifecycle, guiding technology investments, and ensuring that security requirements are integrated into enterprise architectures and solutions from inception through deployment.
Responsibilities Organizational Leadership & Architecture StrategyDevelop and lead the enterprise security architecture strategy aligned with cybersecurity, risk management, and business objectives
Establish governance frameworks and processes to guide secure design, technology selection, and solution deployment across the organization
Collaborate with cybersecurity leadership, enterprise architecture, and technology teams to define target-state architecture and long-term roadmap
Serve as an advisor to leadership on security architecture priorities, risks, and investment decisions
Develop, maintain, and enforce enterprise security architecture standards, including design principles, control requirements, and implementation guidelines
Ensure standards are aligned with regulatory requirements, industry frameworks, and organizational risk tolerance
Establish governance processes for adoption and enforcement of architecture standards across global cybersecurity and technology teams
Continuously update and refine standards to address emerging threats, technologies, and business needs
Oversee architecture review processes to evaluate solutions and system designs against security standards, risk requirements, and enterprise architecture
Ensure security risks are identified, documented, and addressed prior to implementation
Provide approval and validation of security architecture decisions, including exception handling and risk acceptance processes
Drive consistency and quality in architecture review practices across teams
Provide proactive security guidance and risk-informed recommendations during solution design and development
Partner with application, engineering, and commercial technology teams to embed security requirements early in the development lifecycle
Support security-by-design reviews, pre-implementation assessments, and architecture decision-making for new initiatives and technologies
Act as a technical liaison to translate security requirements and risks for both technical and non-technical stakeholders
Assess, rationalize, and optimize the cybersecurity tooling landscape to reduce complexity, eliminate redundancies, and improve capability coverage
Ensure tooling aligns with enterprise security architecture and supports effective risk management and operational capabilities
Partner with engineering and infrastructure teams to integrate tools into the broader cybersecurity ecosystem
Drive continuous improvement of tooling strategy to support scalability, efficiency, and innovation
Define and support reference…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).