The Information Security Architect will lead the design and implementation of enterprise security architecture with a primary focus on Telecom infrastructure & devices, IoT ecosystems, AI systems, and HIPAA-compliant environments.
This role requires deep, hands-on experience and a proven track record in these critical areas. The architect will ensure defense-in-depth security across cloud, hybrid, and on-prem environments while aligning with regulatory requirements including HIPAA, FCC, and CPNI.
This position emphasizes practical implementation experience — the ability to articulate real-world scenarios, specific tools/platforms used, and measurable outcomes — rather than theoretical knowledge alone.
What you will do:
Telecom, Mobile & IoT Security (Primary Focus)
- Architect and implement security for voice and telecom networks, including signaling protocols (SIP, RTP), carrier devices, and device provisioning systems.
- Design secure configurations, firmware lifecycle management, encryption, authentication, and network segmentation for IoT endpoints and fleets.
- Implement zero-trust architecture patterns for IoT and telecom environments.
- Ensure telecom infrastructure meets FCC, CPNI, and CALEA requirements.
AI and Data Security (Primary Focus)
- Define and implement AI/ML and Agentic AI security guardrails, including model access controls, prompt sanitization, model drift monitoring, and data provenance.
- Develop governance policies for secure use of AI APIs, LLMs, and autonomous agent frameworks.
- Secure AI data pipelines to comply with HIPAA and privacy regulations.
- Address AI-specific risks such as model poisoning, adversarial attacks, and data leakage.
HIPAA & Regulatory Compliance
- Design, implement, and maintain HIPAA-compliant security programs with strong emphasis on technical safeguards for PHI.
- Lead security risk assessments, audits, and remediation efforts related to HIPAA and FCC requirements.
- Ensure security-by-design principles are embedded in all relevant technology initiatives.
Security Architecture & Collaboration
- Partner with SecOps, Network Engineering, Cloud, and AI Innovation teams on threat modeling, detection strategy, and incident response architecture.
- Evaluate and recommend security technologies and processes specifically addressing Telecom, IoT, AI, and HIPAA challenges.
- Contribute to vulnerability management, SIEM architecture, and secure configuration baselines.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, or related field
- 7+ years of progressive experience in Information Security Architecture roles with significant depth in Telecom infrastructure/devices, IoT, AI/ML security, and HIPAA.
- Demonstrated ability to articulate “been there, done that” experience — including specific tools, platforms, implementation details, and project outcomes.
Required Experience
- IoT fleet security, device identity management, and segmentation
- AI/ML security, including governance of LLMs and agentic AI systems
- Designing and maintaining HIPAA-compliant environments and PHI protections
- Strong understanding of relevant frameworks (NIST, ISO 27001, CIS) and cloud-native security (AWS, Azure).
- Experience with security tools such as Rapid7 (vulnerability management), Cisco security infrastructure, and EDR platforms (e.g., Crowdstrike) is preferred.
- Certifications: CISSP, CCSP, or equivalent strongly preferred. AI Security or Telecom-related certifications a plus.
This role prioritizes candidates who have successfully designed, implemented, and operated security solutions in the above domains and can clearly demonstrate their experience during the interview process.