Director Enterprise Security Design

Dynamed Solutions

Columbia (MD)

Hybrid

USD 170,000 - 190,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Dynamed Solutions in Columbia, MD seeks a Director of Enterprise Security Design to shape and advance the security architecture across the enterprise. This role reports to CISO and Sr.

Director of Security and Compliance, and champions security-by-design in business and technology initiatives. The incumbent will lead security transformation, define standards, and drive risk-based mitigation with cross-functional teams while staying ahead of emerging threats and technologies to strengthen the

Qualifications

  • 10+ years of progressive cybersecurity experience.
  • 5+ years leading enterprise security architecture or programs.
  • Experience securing hybrid cloud/on-prem/SaaS environments.
  • Experience developing enterprise security strategies and roadmaps.
  • Experience influencing executive stakeholders and presenting risk-based recommendations.
  • Experience leading cross-functional initiatives without direct authority.
  • Experience overseeing penetration testing and remediation programs.
  • Experience supporting compliance frameworks (SOC 2, ISO 27001, NIST CSF, HIPAA, PCI-DSS).

Responsibilities

  • Develop and maintain the enterprise security architecture roadmap aligned with business objectives.
  • Establish and drive security-by-design across infrastructure, cloud, applications, and data.
  • Lead long-term cybersecurity maturity initiatives and improvement programs.
  • Present security risks, recommendations, and investment priorities to executives.
  • Translate business objectives into security capabilities and controls.
  • Define security standards, reference architectures, and engineering guardrails.
  • Lead security transformation initiatives and advise technology and business leaders.
  • Drive remediation priorities based on risk and objectives.
  • Analyze outputs from security tools and coordinate remediation across teams.

Skills

Cybersecurity leadership
Executive communication
Security architecture
Threat modeling

Education

CISSP
Azure Security Engineer (AZ-500)
Certified Incident Handler (GCIH)

Tools

Microsoft Defender
Azure Sentinel
Entra ID
Purview

Job description

Position Title: Director, Enterprise Security Design

Reports Directly To: CISO and Sr. Director of Security and Compliance

Location: Columbia, MD (Hybrid)

Hours: 40 hours, Full-Time

Risk Level: High

Job Summary

CRISP Shared Services (CSS) serves as the technology partner for health information exchange (HIE) organizations in Maryland, DC, West Virginia, Connecticut, Alaska, Virginia, Kentucky, Florida, and other jurisdictions. CSS facilitates the electronic transfer of clinical and public health information to positively impact the healthcare system through improved patient care and outcomes, reduced costs, and data-driven understanding of regional public health concerns.

The Director, Enterprise Security Design, is responsible for defining and advancing the organization's enterprise security architecture strategy, ensuring security is embedded into business and technology initiatives across the enterprise. This role serves as a trusted advisor to executive leadership, drives security-by-design principles, establishes architectural standards, and leads to cross-functional efforts to identify, assess, and mitigate cybersecurity risks. The Director, Enterprise Security Design, maintains a forward-looking view of emerging threats, evolving technologies, and business objectives to strengthen the organization's overall security posture and resilience.

Key Responsibilities
  • Develop and maintain the enterprise security architecture roadmap aligned with business objectives
  • Establish and drive the organization's security-by-design framework across infrastructure, cloud, applications, and data
  • Influence technology strategy and ensure security requirements are embedded in enterprise architecture decisions
  • Lead long-term cybersecurity maturity initiatives and continuous improvement programs
  • Present security risks, recommendations, and investment priorities to executive leadership
  • Translate business objectives into security capabilities and controls
  • Define security standards, reference architectures, and engineering guardrails
  • Provide strategic leadership for enterprise security transformation initiatives
  • Serve as the primary security advisor to technology and business leaders
  • Lead security risk reviews for strategic initiatives, acquisitions, and major technology implementations
  • Develop security metrics, KPIs, and risk dashboards for internal and external reporting
  • Participate in enterprise governance committees and technology review boards
  • Drive remediation priorities based on business risk and organizational objectives
  • Analyze outputs from security tools and coordinate remediation across teams
  • Perform security risk assessments for change requests and new initiatives
  • Lead a risk-based vulnerability management program including results from vulnerability scanners, secure code scan, and from security advisories.
  • Identify risks and develop incident response procedures
  • Support and enhance security technologies (e.g. SIEM, EDR, NDR, IDPS, vulnerability scanner, security lake)
  • Investigate security incidents and produce reports with root cause and corrective actions
  • Track emerging threats and recommend security improvements
Qualifications

To perform this job successfully, the incumbent must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

Required Experience
  • 10+ years of progressive cybersecurity experience
  • 5+ years leading enterprise security architecture, security engineering, or cybersecurity programs
  • Experience securing hybrid environments across cloud, on-premises, and SaaS ecosystems
  • Experience developing enterprise security strategies and roadmaps
  • Experience influencing executive stakeholders and presenting risk-based recommendations
  • Experience leading cross-functional initiatives without direct authority
  • Experience overseeing penetration testing and remediation programs
  • Experience supporting compliance frameworks such as SOC 2, ISO 27001, NIST CSF, HIPAA, PCI-DSS, or similar
Preferred Experience
  • Experience designing and implementing Zero Trust architectures
  • Experience with Microsoft security technologies (Defender suite, Sentinel, Entra ID, Purview)
  • Experience securing cloud-native environments in Azure
  • Experience conducting enterprise threat modeling
  • Experience leading incident response during significant cybersecurity events
  • Experience with mergers, acquisitions, or large-scale technology transformations
  • Experience developing security architecture standards in highly regulated environments
  • Familiarity with Artificial Intelligence Concepts
Education and Certifications Requirements
Required
  • CISSP
  • Azure Security Engineer (AZ-500)
  • Certified Incident Handler (GCIH)
Preferred
  • CCSP
  • SABSA
  • TOGAF
  • AWS Security Specialty
  • GIAC certifications (GSEC, GCIH, GCIA)
  • GIAC Penetration Tester (GPEN)
  • GIAC Reverse Engineering Malware (GREM)
  • Bachelor’s degree or Master’s degree, preferred
Compensation
  • Targeted base salary: $170k - $190k per year, based on experience and qualifications, plus benefits and bonuses.
Equal Opportunity Statement

CRISP Shared Services, Inc. and Dynamed Solutions, LLC are an equal opportunity employers. This means that CRISP Shared Services Inc. and Dynamed Solutions, LLC are dedicated to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, age, marital status, genetic information, disability, military or veteran status, or any other status protected by federal, state, or local law. We celebrate diversity and are committed to creating an inclusive environment for all team members.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director Enterprise Security Design
Director Enterprise Security Design

Dynamed Solutions, LLC • Columbia (MD)

Hybrid
USD 170,000 - 190,000
Enterprise Security Design Director
Enterprise Security Design Director

Piper Companies • Columbia (MD)

Hybrid
USD 170,000 - 190,000
Director of Security Engineering and Architecture
Director of Security Engineering and Architecture

Verramobility • Mesa (AZ)

Hybrid
USD 120,000 - 160,000
Sr. Director IT Cyber Security
Sr. Director IT Cyber Security

Daikin Comfort • Waller (TX)

On-site
USD 150,000 - 200,000
Director, Security Risk Management
Director, Security Risk Management

CardWorks Servicing LLC • United States

Hybrid
USD 151,000 - 168,000
Medical, Dental, and Vision coverage
401(k) Plan with Company Match
Paid vacation and sick days
Senior Director, IT Security
Senior Director, IT Security

Global Lending Services • Greenville (SC)

On-site
USD 120,000 - 170,000
Competitive base pay
Medical, dental, vision insurance
401K with employer match
+2
Cybersecurity Architect
Cybersecurity Architect

Cymertek Corporation • Tysons (VA)

On-site
USD 150,000 - 190,000
Excellent salaries
Flexible schedule
401k matching
+5
Cybersecurity Architect
Cybersecurity Architect

Cymertek Corporation • Maryland

On-site
USD 110,000 - 150,000
Excellent Salaries
Flexible Work Schedule
401k & Benefits
Senior Director, Information Security (Relocation eligible)
Senior Director, Information Security (Relocation eligible)

Solving IT • Nashville (TN)

On-site
USD 180,000 - 260,000
Manager - Cybersecurity
Manager - Cybersecurity

Clinical Reference Laboratory • Lenexa (KS)

On-site
USD 110,000 - 245,000
Medical benefits
Dental benefits
Vision benefits
+4