ICS Security Architect

Signature Performance, Inc

United States

On-site

USD 135,000 - 151,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Health Insurance
Life Insurance
Paid Vacation
401(k) with Employer Match
Professional Development

Job summary

Signature Performance, Inc is seeking an IC Security Architect with extensive experience in security architecture for regulated environments like federal clouds and SaaS. The role involves leading the design and implementation of security standards based on compliance regulations such as FedRAMP, NIST, and HIPAA.

The ideal candidate is passionate about maintaining security across cloud, hybrid and on-premises deployments and will contribute to enhancing the company’s security posture.

Qualifications

  • 8+ years of experience in information security or security architecture.
  • Experience with federal compliance standards like FedRAMP, NIST, and HIPAA.
  • Understanding of cloud environments: Azure and multi-cloud.

Responsibilities

  • Lead security architecture planning for regulated cloud solutions.
  • Translate compliance requirements into secure design.
  • Conduct threat modeling and security design reviews.

Skills

Security Architecture
Cloud Security
Identity Management
DevSecOps
Risk Management
Compliance Standards
Technical Writing

Education

Bachelor's degree in a relevant technical field
CISSP certification
CCSP certification
CISM certification

Job description

You are a person who is passionate about leading security architecture planning and design recommendations for regulated SaaS, cloud, on-premises, hybrid, and future multi-cloud environments, including Azure Government and other federal or high-compliance environments. We need someone who has experience translating FedRAMP Moderate/High, NIST, FIPS, HIPAA, FISMA, CMMC, and other applicable security requirements into technical designs, implementation guidance, standards, and audit-ready evidence, with depth in identity, authentication and authorization, password less access, PIV/CAC, federal integrations, encryption, segmentation, logging, DevSecOps, and continuous monitoring.

In the role of IC Security Architect, you will be responsible for supporting regulated cloud, SaaS, federal enclave, and high-compliance architecture priorities. Secondary support may include corporate and enterprise security architecture initiatives as business priorities require, consistent with the position's responsibility to advance Signature's security posture across cloud, on-premises, hybrid, and SaaS environments.

  • Tell us about your experience with Information, Security & Architecture.
  • Are you a team player and a self-motivator?
  • We are counting on you to manage multiple projects using your problem-solving skills.
  • We are looking for someone UNCOMMON. What is uncommon about you?

Are you highly committed? Are you team-oriented? Do you value professionalism, trust, honesty, and integrity? If so, we cannot wait to meet you.

About The Position
  • Lead security architecture planning, design recommendations, and implementation guidance for regulated SaaS solutions, federal cloud environments, high‑compliance enclaves, and hybrid/on‑premises deployments.
  • Define authorization boundaries, trust zones, data flows, interconnections, and inheritance.
  • Translate FedRAMP Moderate/High, NIST, CMMC, HIPAA, FISMA, FIPS, and other applicable security requirements into secure designs, standards, implementation guidance, and evidence.
  • Design IAM, least privilege, passwordless, PIV/CAC, privileged/service access, and federal integrations.
  • Define and recommend FIPS‑aligned cryptography, PKI, key/secret management, TLS/mTLS, and encryption patterns.
  • Establish secure Azure, Azure Government, on‑premises, hybrid, and multi‑cloud patterns.
  • Design reusable security architecture patterns that can be adapted across customer‑managed, company‑managed, SaaS, cloud‑hosted, on‑premises, and hybrid deployment models.
  • Evaluate deployment models, shared‑responsibility boundaries, authorization boundaries, inherited controls, customer‑managed responsibilities, and interconnection risks to ensure security requirements are clearly defined and supportable.
  • Lead threat modeling, security design reviews, risk assessments, and development of security architecture artifacts.
  • Embed SAST/SCA/DAST, SBOM, secrets, IaC, container, and release gates into DevSecOps.
  • Define logging, SIEM, audit, continuous monitoring, vulnerability management, incident response, and POA&M requirements in coordination with responsible operational teams.
  • Develop SSPs, control narratives, diagrams, interconnections, standards, and evidence.
  • Support SaaS, federal, corporate, and enterprise security architecture initiatives as business priorities require, with primary focus on regulated technology environments and high‑compliance architecture needs.
  • Assess vendor, contractor, supply‑chain, and shared‑responsibility risk; recommend action.
  • Must be able to meet applicable federal background, credentialing, and access requirements, including NACLC or successor federal suitability/clearing requirements when applicable.
  • Bachelor's degree in a relevant technical field or equivalent experience.
  • CISSP, CCSP, CISM, or comparable advanced certification strongly preferred.
  • Eight (8)+ years of progressive experience in information security, security architecture, application security, cloud security, or related regulated‑technology environments.
  • Azure/Azure Government, on‑premises, and hybrid experience; multi‑cloud preferred.
  • Expert IAM: OIDC/SAML, MFA/passwordless, PIV/CAC, PKI, RBAC/ABAC, and PAM.
  • Experience with VA or other federal‑customer integrations.
  • Architecture artifacts: boundaries, data flows, threat models, interconnections, and ADRs.
  • Experience with SSPs, POA&Ms, ConMon, 3PAO/audit, assessments, and evidence.
  • Experience supporting security architecture for SaaS offerings operating in regulated or federally authorized environments, including shared‑responsibility models, inherited controls, customer responsibility matrices, system interconnections, evidence support, and continuous monitoring obligations.
  • Experience designing security patterns for configurable workflow, case management, or business process automation platforms that may be deployed across cloud, on‑premises, hybrid, or customer‑managed environments.
  • SIEM, vulnerability management, DevSecOps, API security, Zero Trust, segmentation, and keys.
  • Proficient understanding of computer and network systems, security protocols, vulnerability assessment tools, security software, and secure system design.
  • Skilled in technical writing, including IT security policies, procedures, standards, reports, control narratives, and architectural drawings.
  • Strong decision leadership, risk communication, vendor management, and prioritization.
About Us

You are uncommon. We are, too. We are looking for people to help us in our mission of working hard at lowering healthcare administrative costs for federal government agencies, payers, and providers. At Signature, our mission is to improve the health of our clients' business and make the lives of the people we work with better. As we continue to experience exponential growth, we are looking for uncommon individuals to enhance our vision. We will continue to accomplish our mission by leading with our values of Passion, Courage, Integrity, and Respect in all interactions, making us a consistent annual Best Places to Work organization. We need uncommon leaders with uncommon qualities to shape our uncommon culture and achieve our uncommon mission.

About the Benefits

When you are a member of Signature Performance, you are a part of a solutions-based organization where the values of passion, integrity, courage, and respect are the driving forces behind all our decision-making. We trust you to do important work and bring the best version of yourself to work every day, so we want to help you achieve a work-life balance while consistently challenging yourself. Signature believes in fully developing each one of our Associates. Our performance-driven philosophy boasts competitive pay and additional position specific incentives, where world‑class training and development, resources, and events drive our award‑winning culture where everyone thrives.

  • Health Insurance
  • Fully Paid Life Insurance
  • Fully Paid Short- & Long-Term Disability
  • Paid Vacation
  • Paid Holidays
  • Professional Development and Tuition Assistance Program
  • 401(k) Program with Employer Match
Security Requirements
  • U.S. Citizenship or naturalized citizenship is required for this position.
  • All work on all positions at Signature Performance must be completed in the continental United States, Alaska, or Hawaii.

Signature Performance requires candidates to participate in interviews with their camera enabled. Interviews may be recorded for evaluation, training, quality assurance, and hiring purposes. Candidates will be provided the opportunity to consent during the application process and notified before recording begins. These requirements are applied consistently to all applicants and are a condition of participation in the selection process. Failure to meet these requirements may result in removal from consideration. Candidates who have questions, concerns or require accommodation regarding recording should notify the Talent Attraction & Strategy team before proceeding.

Work Schedule

Monday through Friday, 8am to 5pm CST (40 Hours)

Compensation Range

$135,000-$151,000/annually

Position Type

Full Time

Employer Privacy Policy

This Company is an Equal Opportunity Employer, and does not discriminate on the basis of race, gender, ethnicity, religion, national origin, age, disability, veteran status, or on any other basis prohibited by law. Information on race, gender and national origin will only be used for statistical and recordkeeping purposes, and will not be used in making any employment decisions. All information provided will be kept separate from your expression of interest. Providing this information is strictly voluntary, and you will not be subjected to any adverse action or treatment if you choose not to provide this information. If you do not choose to answer these questions, we ask that you select "Decline to Identify" for each question. Thank you for your voluntary cooperation.

EEO is the Law

ADP Privacy Statement

Artificial Intelligence

Google Privacy Policy

Google Terms of Service

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Solutions Configuration Analyst III
Solutions Configuration Analyst III

Signature Performance, Inc • United States

On-site
USD 100,000 - 150,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disable
+4
IR&D Configuration Analyst
IR&D Configuration Analyst

Signature Performance, Inc. • Northern (KY)

Hybrid
USD 100,000 - 150,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disable
+4
ICS Security Architect
ICS Security Architect

Signature Performance, Inc. • United States

On-site
USD 160,000 - 220,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disable
+4
IT Security Administrator - Remote/Nationwide
IT Security Administrator - Remote/Nationwide

MaineGuide • Portland (ME)

Hybrid
USD 80,000 - 100,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disabil
+5
ClaimsXM Security Administrator I
ClaimsXM Security Administrator I

Signature Performance, Inc. • Northern (KY)

Hybrid
USD 72,000 - 79,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disable
+4
Solutions Configuration Analyst III
Solutions Configuration Analyst III

Signature Performance, Inc. • United States

On-site
USD 90,000 - 120,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disab.
+4
IR&D SQA Engineer II
IR&D SQA Engineer II

Signature Performance, Inc. • Northern (KY)

Hybrid
USD 95,000 - 115,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disabled
+4
Payer Payment & Reimbursement Analyst
Payer Payment & Reimbursement Analyst

Signature Performance, Inc. • Northern (KY)

Hybrid
USD 89,100 - 108,900
Health Insurance
Life Insurance
Paid Vacation
+1
ClaimsXM Application Developer II
ClaimsXM Application Developer II

Signature Performance, Inc. • Northern (KY)

Hybrid
USD 100,000 - 120,000
Health Insurance
Paid Vacation
Paid Holidays
+4
Software Application Engineer II
Software Application Engineer II

Worky • United States

On-site
USD 90,000 - 130,000
Health Insurance
Fully Paid Life Insurance
Fully Paid Short- & Long-Term Disabled
+5