waypointjobs

Dynamed Solutions, LLC

Director Enterprise Security Design

columbia, MD

Check who can apply and the requirements below before continuing.

About this opportunity

Dynamed Solutions, LLC lists this Director Enterprise Security Design opportunity in columbia, Maryland. Review the employer’s description below for duties, qualifications and application requirements.

Job description

Position Title: Director, Enterprise Security Design

Reports Directly To: CISO and Sr. Director of Security and Compliance

Location: Columbia, MD (Hybrid)

Hours: 40 hours, Full-Time

Risk Level: High

Job Summary

CRISP Shared Services (CSS) serves as the technology partner for health information exchange (HIE) organizations in Maryland, DC, West Virginia, Connecticut, Alaska, Virginia, Kentucky, Florida, and other jurisdictions. CSS facilitates the electronic transfer of clinical and public health information to positively impact the healthcare system through improved patient care and outcomes, reduced costs, and data-driven understanding of regional public health concerns.

The Director, Enterprise Security Design, is responsible for defining and advancing the organization's enterprise security architecture strategy, ensuring security is embedded into business and technology initiatives across the enterprise. This role serves as a trusted advisor to executive leadership, drives security-by-design principles, establishes architectural standards, and leads to cross-functional efforts to identify, assess, and mitigate cybersecurity risks. The Director, Enterprise Security Design, maintains a forward-looking view of emerging threats, evolving technologies, and business objectives to strengthen the organization's overall security posture and resilience.

Key Responsibilities

Include the following. Other responsibilities may be assigned.

Develop and maintain the enterprise security architecture roadmap aligned with business objectives

Establish and drive the organization's security-by-design framework across infrastructure, cloud, applications, and data

Influence technology strategy and ensure security requirements are embedded in enterprise architecture decisions

Lead long-term cybersecurity maturity initiatives and continuous improvement programs

Present security risks, recommendations, and investment priorities to executive leadership

Translate business objectives into security capabilities and controls

Define security standards, reference architectures, and engineering guardrails

Provide strategic leadership for enterprise security transformation initiatives

Serve as the primary security advisor to technology and business leaders

Lead security risk reviews for strategic initiatives, acquisitions, and major technology implementations

Develop security metrics, KPIs, and risk dashboards for internal and external reporting

Participate in enterprise governance committees and technology review boards

Drive remediation priorities based on business risk and organizational objectives

Analyze outputs from security tools and coordinate remediation across teams

Perform security risk assessments for change requests and new initiatives

Lead a risk-based vulnerability management program including results from vulnerability scanners, secure code scan, and from security advisories.

Identify risks and develop incident response procedures

Support and enhance security technologies (e.g. SIEM, EDR, NDR, IDPS, vulnerability scanner, security lake)

Investigate security incidents and produce reports with root cause and corrective actions

Track emerging threats and recommend security improvements

Qualifications

To perform this job successfully, the incumbent must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

Required Experience

10+ years of progressive cybersecurity experience

5+ years leading enterprise security architecture, security engineering, or cybersecurity programs

Experience securing hybrid environments across cloud, on-premises, and SaaS ecosystems

Experience developing enterprise security strategies and roadmaps

Experience influencing executive stakeholders and presenting risk-based recommendations

Experience leading cross-functional initiatives without direct authority

Experience overseeing penetration testing and remediation programs

Experience supporting compliance frameworks such as SOC 2, ISO 27001, NIST CSF, HIPAA, PCI-DSS, or similar

Preferred Experience

Experience designing and implementing Zero Trust architectures

Experience with Microsoft security technologies (Defender suite, Sentinel, Entra ID, Purview)

Experience securing cloud-native environments in Azure

Experience conducting enterprise threat modeling

Experience leading incident response during significant cybersecurity events

Experience with mergers, acquisitions, or large-scale technology transformations

Experience developing security architecture standards in highly regulated environments

Familiarity with Artificial Intelligence Concepts

Required

Education and Certifications Requirements

CISSP

Azure Security Engineer (AZ-500)

Certified Incident Handler (GCIH)

Preferred

CCSP

SABSA

TOGAF

AWS Security Specialty

GIAC certifications (GSEC, GCIH, GCIA)

GIAC Penetration Tester (GPEN)

GIAC Reverse Engineering Malware (GREM)

Bachelor's degree or Master's degree, preferred

Compensation

Targeted base salary: $170k - $190k per year, based on experience and qualifications, plus benefits and bonuses.

CRISP Shared Services, Inc. and Dynamed Solutions, LLC are an equal opportunity employers. This means that CRISP Shared Services Inc. and Dynamed Solutions, LLC are dedicated to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, age, marital status, genetic information, disability, military or veteran status, or any other status protected by federal, state, or local law. We celebrate diversity and are committed to creating an inclusive environment for all team members.

#J-18808-Ljbffr

Worksite address

columbia, MD, 21046, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs