Principal Architect - Enterprise Security - Remote
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion, talented peers, comprehensive benefits and career development opportunities.
About the role
The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions. You'll enjoy the flexibility to work remotely from anywhere within the U.S. For all hires in the Minneapolis or Washington, D.C. area, you will be required to work in the office a minimum of four days per week.
Responsibilities
- Define and own security reference architectures, secure-by-design patterns, and modernization standards for ESRO, and drive their adoption across delivery teams
- Lead the architecture workstream of the ESRO Architecture Transformation accelerator: assess current state, define target-state architecture, and sequence the modernization roadmap
- Translate architecture into implementation with onshore and offshore delivery pods; review designs and provide hands-on technical direction
- Embed security and compliance controls for regulated data (PHI/PCI/HIPAA) across cloud (Azure) and hybrid workloads
- Design and build AI-enabled security automation and tooling, and integrate AI capabilities into security architecture and engineering workflows
- Perform threat modeling, architecture risk reviews, and control mapping against enterprise and regulatory standards
- Set technical standards, review key designs, and mentor engineers across distributed teams
- Partner with security operations, compliance, product, and platform stakeholders to align architecture with business and risk priorities
Requirements
- Bachelor's degree in Computer Science, Information Security, or related field, or equivalent experience
- 8+ years in security or enterprise architecture, including senior/lead-level design ownership
- Deep experience with cloud security architecture (Azure and/or AWS), IAM, network and data protection, and secure-by-design principles
- Experience securing regulated-data environments (HIPAA/PHI, PCI)
- Experience setting technical direction for and collaborating with distributed/offshore delivery teams
- Hands-on experience building AI-enabled or automation solutions
- Proven track record designing reference architectures and patterns adopted across multiple engineering teams
Preferred Qualifications
- Certifications such as CISSP, CCSP, SABSA, and/or TOGAF; Azure Security Engineer or Solutions Architect
- Healthcare or other highly regulated industry experience
- Security automation experience (policy-as-code/IaC, CI/CD security, SIEM/SOAR)
- Proven solid written/verbal communication; able to influence across engineering and leadership
Benefits
- Comprehensive benefits package
- Incentive and recognition programs
- Equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements)
Pay
The salary for this role will range from $134,600 to $230,800 annually based on full-time employment. Pay is based on several factors including but not limited to local labor markets, education, work experience, and certifications.