Director of Security Architecture & Engineering

Claritev

United States

On-site

USD 175,000 - 220,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Medical, dental, vision coverage
401(k) with company match
Paid time off and holidays
Parental leave

Job summary

Claritev seeks a Director of Security Architecture & Engineering to lead strategy, design, and delivery of enterprise security architecture, security engineering, and automated security controls across hybrid environments.

The role focuses on secure-by-default architecture, scalable controls, and safe AI enablement, partnering with IAM, GRC, and Product teams while guiding a cross-functional security organization.

Qualifications

  • Minimum 10+ years of cybersecurity leadership experience.
  • Proven ability to build/mature security functions and operating models.
  • Strong background in enterprise security architecture and scalable controls.

Responsibilities

  • Define and lead vision, strategy, and roadmap for security architecture and engineering.
  • Build an operating model across architecture, engineering, and automation.
  • Establish standards, reference patterns, and secure-by-default design principles.
  • Lead security engineering for scalable controls across identity, cloud, endpoints, data, and SaaS.
  • Drive security maturity across SDLC: secure design, threat modeling, code/pipeline security, remediation.

Skills

Security architecture
Security engineering
Application security
Automation
AI security
Leadership
Threat modeling
Cloud security
Communication
Partnering

Education

Bachelor's degree in cybersecurity/related field
10+ years cybersecurity experience

Tools

SAST tooling
DAST tooling
IaC security tools

Job description

JOB DESCRIPTION

We are seeking a Director of Security Architecture & Engineering to lead the strategy, design, and delivery of enterprise security architecture, security engineering, application/product security, AI security enablement, and security automation capabilities. This leader will help modernize the security program for a rapidly evolving technology and threat landscape by advancing secure-by-default architecture, scalable controls, pragmatic automation, and safe use of AI across business and security use cases. The role will partner closely with Security Operations, IAM, GRC, Engineering, Infrastructure, Enterprise Architecture, Data, AI, Product, and business leaders to reduce risk, improve execution, and enable secure technology outcomes across regulated, modern, and legacy environments.

Job Summary
JOB DESCRIPTION

We are seeking a Director of Security Architecture & Engineering to lead the strategy, design, and delivery of enterprise security architecture, security engineering, application/product security, AI security enablement, and security automation capabilities. This leader will help modernize the security program for a rapidly evolving technology and threat landscape by advancing secure-by-default architecture, scalable controls, pragmatic automation, and safe use of AI across business and security use cases. The role will partner closely with Security Operations, IAM, GRC, Engineering, Infrastructure, Enterprise Architecture, Data, AI, Product, and business leaders to reduce risk, improve execution, and enable secure technology outcomes across regulated, modern, and legacy environments.

Job Roles And Responsibilities
  • Define and lead the vision, strategy, roadmap, and operating model for security architecture, security engineering, application/product security, AI security enablement, and security automation, aligned to business priorities, regulatory expectations, and enterprise risk.
  • Build a cohesive operating model across architecture, engineering, application security, and automation, including intake, prioritization, delivery management, role clarity, stakeholder communication, and measurable outcomes.
  • Establish and mature enterprise security architecture standards, reference patterns, secure-by-default design principles, and design review processes that improve consistency, reduce risk, and reduce friction for technology teams.
  • Lead security engineering to deliver scalable preventative and detective controls, hardening, automation, and reusable security patterns across identity, cloud, endpoints/servers, enterprise platforms, SaaS, data, and other core technology environments.
  • Drive application and product security maturity across the software development lifecycle, including secure design, threat modeling, code and pipeline security, SAST/DAST/SCA/IaC coverage, vulnerability remediation practices, developer enablement, and tooling effectiveness.
  • Provide security architecture and engineering leadership for AI and data use cases, including secure design patterns, data protection, access control, AI-generated code risk, agentic AI considerations, guardrails, and alignment with enterprise AI governance expectations.
  • Partner with IAM, AI, and platform teams to mature non-human identity controls, including ownership, inventory, least privilege, secrets lifecycle, scoped permissions, automated revocation, and monitoring for service accounts, workloads, APIs, integrations, and AI agents.
  • Lead practical security automation efforts that improve engineering throughput, application security coverage, vulnerability triage and remediation support, control validation, evidence collection, reporting, and repeatable security workflows.
  • Partner with the SOC Director and Security Operations team to ensure architecture, controls, telemetry, automation, and platform integrations support faster detection, response, containment, and recovery.
  • Modernize security controls and architecture patterns to reduce exposure and potential impact, including support for zero trust network access, microsegmentation, egress controls, phishing-resistant MFA, privileged access controls, endpoint/server hardening, secrets management, cloud security, SaaS security, and compensating controls for legacy assets.
  • Hire, lead, coach, and develop a team that includes, or will include, security architecture, security automation & engineering, product / application security engineering, identity security engineering, and AI security architecture / engineering / governance capabilities, along with contractors and external partners.
  • Partner with Engineering, Infrastructure, Enterprise Architecture, Data, AI, Product, GRC, IAM, SOC, Legal, Procurement, and other business leaders to embed security requirements into major initiatives such as cloud architecture, platform changes, application modernization, third-party integrations, and emerging AI/data use cases.
  • Balance strategic architecture work with pragmatic delivery by focusing the team on the highest-risk, highest-leverage work, improving throughput, removing blockers, and ensuring commitments are met.
  • Assess current tools, vendors, processes, and control effectiveness; simplify, standardize, automate, integrate, or replace where needed to improve scalability, reduce security friction, and support sustainable execution.
  • Provide security architecture and engineering leadership for major technology initiatives, ensuring risks are understood early and practical mitigations are built into plans.
  • Align with peer leaders across the security program, including GRC, Security Operations, IAM, to ensure consistent priorities, messaging, and execution.
  • Define and report on metrics that demonstrate progress, such as control adoption, application security coverage, remediation throughput, automation impact, secure pattern adoption, NHI risk reduction, developer friction, and safe AI adoption.
  • Identify capability gaps and build a practical growth plan for the function as priorities, risks, threats, capabilities, budget, and staffing needs evolve.
  • Select, develop, and evaluate staff to ensure efficient team operations.
  • Ensure compliance with HIPAA regulations and requirements.
  • Demonstrate Company's competencies and core values held within.
  • The position responsibilities outlined above are in no way to be construed as all encompassing. Other duties, responsibilities, and qualifications may be required and/or assigned as necessary.
Job Scope

You will lead security architecture standards and the operating model for security architecture, security engineering, application/product security, AI security enablement, and security automation. You will influence enterprise platform, infrastructure, application, data, AI, and product decisions through partnership, design reviews, engineering leadership, control modernization, and measurable adoption. This role reports to the CISO and leads a team covering security architecture, security engineering, application/product security, automation, non-human identity security, and AI security architecture/governance, including a mix of full-time employees, contractors, and external partners.

REQUIREMENTS (Education, Experience, And Training)
  • 10+ years of progressive experience in cybersecurity, with significant leadership experience spanning security architecture, security engineering, application security, product security, security automation, AI security, and/or closely related domains.
  • Experience leading senior technical teams and managing a mix of full-time employees, contractors, consultants, vendors, and external partners.
  • Demonstrated ability to build or mature security functions, including role clarity, operating model design, prioritization, hiring, coaching, and delivery accountability.
  • Strong background in enterprise security architecture and the design of scalable security patterns and controls for regulated, hybrid, cloud, SaaS, application, identity, data, and AI-enabled environments.
  • Practical experience leading security engineering functions across cloud security, identity, endpoint/server hardening, automation, infrastructure security, SaaS security, and control implementation.
  • Experience building or maturing application and product security programs, including secure SDLC practices, secure design, threat modeling, code and pipeline security, SAST/DAST/SCA/IaC, vulnerability remediation, and developer engagement.
  • Familiarity with AI security, agentic AI considerations, data security, AI governance, AI-generated code risks, model/tool access control, prompt and data leakage risks, shadow AI, and safe AI enablement patterns.
  • Experience or strong working knowledge of non-human identity security, including service accounts, API keys, OAuth applications, tokens, secrets, machine identities, agent identities, ownership, lifecycle management, least privilege, and automated revocation.
  • Experience applying automation to security engineering, application security, vulnerability triage, remediation workflows, compliance evidence, control validation, or reporting.
  • Demonstrated understanding of exposure reduction and impact reduction strategies, including ZTNA, micro-segmentation, egress filtering, privileged access controls, phishing-resistant MFA, device posture, hardening, and compensating controls for legacy systems.
  • Demonstrated ability to partner effectively with Engineering, Infrastructure, Architecture, Data, AI, Product, Legal, Procurement, Finance, Talent, GRC, IAM, SOC, and executive stakeholders.
  • Strong judgment in balancing strategic direction with pragmatic execution in lean, evolving, or resource-constrained organizations.
  • Excellent communication skills, including the ability to simplify complex technical topics, explain risk and tradeoffs, influence senior leaders, and align technical teams around outcomes.
  • Experience in healthcare, regulated environments, or other complex enterprise settings.
  • Experience designing controls that support regulatory compliance requirements, including HIPAA and related security, privacy, and assurance expectations.
  • Familiarity with modern cloud-native architectures, DevSecOps practices, enterprise platform transformation, application modernization, and resilient infrastructure and application design.
  • Experience rationalizing or modernizing security tools and processes, including vendor evaluation, integration strategy, automation opportunities, build-vs-buy decisions, and measurable value realization.
  • Background supporting secure architecture and engineering in hybrid environments with both legacy and modern platforms.
  • A strong technical leader with architectural depth, engineering credibility, and the ability to assess modern security products, AI-enabled capabilities, and automation opportunities.
  • Comfortable operating in a lean organization where prioritization, leverage, and cross-functional influence matter.
  • Able to set direction while also driving execution, removing blockers, and holding teams accountable for measurable outcomes.
  • Skilled at building trust across security, infrastructure, engineering, data, AI, product, and business teams.
  • Focused on outcomes, not just activity, with a bias toward reducing material risk and enabling the business safely.
  • Effective in leading teams through change, role clarity, capability uplift, and maturity improvement.
  • Comfortable inheriting a team with mixed tenure, mixed skill profiles, and contractor support, then shaping it into a more cohesive, automation-enabled function.
  • Individual in this position must be able to work in a standard office environment which requires sitting and viewing monitor(s) for extended periods of time, operating standard office equipment such as, but not limited to, a keyboard, copier, and telephone.
Compensation

The salary range for this position is $175k - $220K. Specific offers take into account a candidate’s education, experience and skills, as well as the candidate’s work location and internal equity. This position is also eligible for health insurance, 401k and bonus opportunity.

About Us
Why Claritev?

Healthcare is complex. We help make it clearer.

About The Team

At Claritev, you'll do work that matters. Together, we’re helping make healthcare more transparent and affordable for all through the power of data, technology, and expertise. We offer meaningful opportunities to grow your career, collaborate with talented colleagues, and make an impact on the clients and communities we serve. If you're looking for purpose, growth, and a team that succeeds together, you'll find it here.

What Guides Us

At Claritev, innovation, agility, and a focus on results drive our success. We embrace bold thinking, work as one team, take ownership, and strive for excellence in everything we do — creating meaningful impact for our clients, communities, and each other.

My Total Value

Claritev’s Global Total Rewards Philosophy — My Total Value — Is Grounded In Investing In Our Associates And Rewarding Performance. This Includes

  • Competitive compensation and incentive opportunities (where eligible)
  • Medical, dental, and vision coverage
  • Life and disability coverage
  • 401(k) with company match
  • Employee stock purchase plan
  • Flexible spending accounts and health savings accounts
  • Paid time off and company holidays
  • Paid parental leave
  • Mental health resources
  • Tuition reimbursement
  • Financial planning resources
  • Professional development opportunities
Our Commitment to Inclusion

At Claritev, we believe diverse perspectives strengthen our teams and lead to better outcomes. We are committed to fostering an inclusive workplace where every associate feels respected, valued, and empowered to succeed.

Claritev is an Equal Opportunity Employer and complies with all applicable laws and regulations. Qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. TPRM Security Analyst
Sr. TPRM Security Analyst

Claritev • United States

On-site
USD 135,000 - 145,000
Health insurance
401(k) with company match
Paid time off
+2
Engineer,Software III
Engineer,Software III

MultiPlan • McLean (VA)

On-site
USD 120,000 - 140,000
Health insurance
401k
Bonus opportunity
QE Architect
QE Architect

Claritev • United States

On-site
USD 30,000 - 145,000
Principal Engineer, Application Engineering (Tech Lead)
Principal Engineer, Application Engineering (Tech Lead)

Claritev • United States

On-site
USD 130,000 - 140,000
Principal Engineer/Architect, AI Innovation
Principal Engineer/Architect, AI Innovation

Claritev • United States

On-site
USD 180,000 - 230,000
Health insurance
Bonus opportunity
401(k)
EUC Support II, DePere office
EUC Support II, DePere office

Claritev • De Pere (WI)

Hybrid
USD 39,000 - 44,000
Medical, dental and vision coverage
401(k) with match
Paid parental leave
+2
DevSecOps Engineer
DevSecOps Engineer

Claritas Rx • Northern (KY)

Hybrid
USD 130,000 - 160,000
Associate Counsel, Product and Tech
Associate Counsel, Product and Tech

Claritev • United States

On-site
USD 155,000 - 170,000
401(k) with company match
Health insurance
Paid time off
Associate Counsel, Product and Tech
Associate Counsel, Product and Tech

MultiPlan • McLean (VA)

On-site
USD 155,000 - 170,000
Director of AI, Provider Network
Director of AI, Provider Network

Claritev • United States

On-site
USD 210,000 - 230,000
Health insurance
401(k) with match
Employee stock purchase plan
+1