Solutions Architect MIT; JR
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, Data Security, Systems Engineer
Location: City of Yonkers
Introduction
To heal, to teach, to discover and to advance the health of the communities we serve.
To learn more about the “Montefiore Difference” – who we are at Montefiore and all that we have to offer our associates, please .
OverviewMontefiore is ranked among the top hospitals nationally and regionally by U.S. News & World Report. For more than 100 years we have been innovating new treatments, procedures, and approaches to patient care, producing stellar outcomes and raising the bar for academic medical centers in the region and around the world. Our work to improve health outcomes in underserved communities is unparalleled in the United States.
Our workforce is among the most diverse in the US:
Montefiore associates speak 60+ languages.
As Montefiore has built paths to deliver lifesaving health outcomes to underserved communities, we are looking to the future of tech-enabled care delivery to create better experiences for patients, providers, and operations teams. Montefiore is actively investing in its technology teams as a system-level priority. We are seeking a Cloud Cybersecurity Architect.
The Cloud Cybersecurity Architect is responsible for designing, validating, and governing secure cloud architectures across AWS and Azure. This role reviews designs and operations from a cybersecurity architecture and operations perspective and will work closely with risk, compliance and policy teams within the Cybersecurity team—covering PHI/PII protection, identity, network segmentation, data security, monitoring, incident response, and gathering evidence for audit requests from the Cyber team.
The Architect partners with Cloud Engineering, Security Operations, Cybersecurity, Networking, Cyber Compliance/GRC, and clinical application teams (e.g., EHR/VDI/PACS) to ensure secure‑by‑default, audit‑ready platforms that meet HIPAA, HITECH, and HITRUST requirements while enabling delivery velocity and cost efficiency.
The Cloud Cybersecurity Architect leads the definition and validation of cloud security controls, ensures compliance with healthcare regulations at the direction of the Cybersecurity team and reduces risk via secure reference architectures, guardrails, and automated checks embedded in pipelines and making sure standards such as CIS are applied and maintained.
Responsibilities- AWS Organizational Governance:
Service Control Policies (SCP) design, multi‑account patterns, delegated admin setups. - Logging & Audit Foundations:
Org Cloud Trail, AWS Config aggregator, S3 log archive hardening, Guard Duty, Security Hub. - CSPM / CNAPP Operations(Wiz.io):
Onboarding accounts/resources, tuning posture policies, integrating with ticketing and log routing (e.g., Cribl/SIEM). - Infrastructure as Code:
Terraform modules, reusable patterns, policy‑as‑code integration, CI scanning. - Vulnerability & Risk Prioritization:
Combining CVSS, exploit context, asset criticality, and signal sources into severity logic. - Automation & Scripting:
Python (boto3), AWS CLI, shell tooling for validation, evidence export, reporting. - Identity & Access: IAM least privilege, cross‑account role assumptions, permission boundaries, automation roles.
- Observability / Data Routing (Plus):
Cribl / Firehose / Kinesis or equivalent pipeline familiarity. - Compliance Awareness: HIPAA safeguard themes (auditability, access control, data protection, etc.).
- Metrics & Reporting:
Designing & extracting KPIs (coverage %, MTTR, SLA compliance, control efficacy). - Define secure, compliant reference architectures (landing zones, IAM, network segmentation, encryption, logging/monitoring, backup/DR).
- Work with the Cyberteam on the above to ensure they meet their requirements, standards and policies and that they are included and in all designs and sign off on them.
- Review and approve solution designs and changes through an architecture review process; perform threat modeling and risk assessments in close coordination with the Cyber and enterprise Architecture teams and processes.
- Map HIPAA/HITECH safeguards and HITRUST/NIST controls to cloud‑native services and operating procedures; maintain control matrices and evidence catalogs.
- Establish identity and access strategies:…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).