This position is a day shift with on call rotation
Work Shift
Day/Evening
Scheduled Weekly Hours
40
Summary
This position supports Mercy's philosophy of patient centered care by ensuring the design, build, testing and implementation of network software and hardware. The Network Security Architect is responsible for applying Mercy Policy and best practices for the protection of patient data and patient safety.
Job Description
Job Duties/Essential Functions
Job Duties
- Creates, validates, updates and communicates the organization's network security policy to engineering teams with direction from CISO.
- Reviews and recommends technical, administrative and physical controls to mitigate risk.
- Designs, implements and maintains the organization's network security infrastructure to include but not limited to Firewalls, Web Security Appliances, Email Security Appliances, VPNs, IPS/IDS, SEIM and AAA Servers.
- Works with Network Engineers to review and design network architecture for compliance with security best practices and/or regulatory requirements while meeting business objectives and budgets.
- Oversees the implementation of security controls and systems by engineers, technicians and administration.
- Serves and a key Advisor on the selection of major and critical technological purchases affecting all aspects of the organization's enterprise architecture.
- Regularly reviews new business and regulatory requirement with the CISO and consulting team to optimize selection of the best security technologies for an organization.
- Works with Vendors and other business units to ensure new and existing technology is implemented in a secure fashion that meets all compliance requirements.
- Assists in design of all security aspects of the organization to include but not limited to Physical Security, Active Directory, Server Infrastructure, Endpoints and Cloud Services.
- Follows Mercy's safety guidelines, carries out job-specific safety duties and responsibilities, and promptly reports any unsafe conditions, situations, incidents and injuries.
Department Specific Duties
- Security Network Design
- Software/Hardware Security evaluation
- Protects patient data and patient safety.
Knowledge, Skills and Abilities
- Has expertise relating to the design and development of information technology architectures across large, diverse organizations.
- Prior specific architectural and design experience in a large enterprise environment.
- Knowledgeable in Enterprise Architecture standards (i.e. TOGAF) and practices, including the ability to translate customer business needs into Network & Security capabilities.
Professional Experience
Required:
- 6+ years of experience or relevant certifications as a security architect or engineer, network or system administrator, IT lead, or similar role focused on information security responsibilities.
- Has expertise relating to the design and development of information technology architectures across large, diverse organizations.
- Experience with design and implementation of network infrastructure and deep understanding of the TCP/IP protocol suite and OSI model. Strong expertise in firewalls, VPN, IPS, DLP, 802.1X, and other security and network technologies.
- Experience troubleshooting complex systems issues in a multi-vendor environment.
- Ability to work independently and with a team.
- Demonstrated ability to manage large diverse technical projects.
- Able to translate business needs into long-term architecture solutions.
- Strong interpersonal and communication (written and verbal) skills; frequest interface with senior management.
- Able to collaborate with non-technical personnel at all levels in the organization.
- Knowledge of technology vulnerabilities and common exploits.
- Preferred:
- Experience in security cloud infrastructure.
- Experience in designing, deploying, and monitoring an enterprise level active directory instance.
- Experience with design, implementation and security of cloud technologies such as AWS, Google Cloud, Azure and other related cloud computing tools.
- Familiarity with identity and access management tools, O365, Authentication methods and identity federation methodologies.
- Familiarity with application development processes and tools as well as secure application development methodologies. Experience with implementing security in DevOps and SecOps environments.
- Experience with technical aspects of incident response.
- Familiarity with regulatory/compliance requirements (e.g. PCI, HIPAA, SOX, FISMA), information security frameworks and controls (e.g. NIST, ISO, CeBIT).
Education
- 4-year degree required.
- Information Technology Degree preferred.
Licensure, Certification, Registration
- Industry certification related to networking or security required.
- HIPAA, CISSP, Comp TIA Security + and Cisco Certifications preferred.
Physical Requirements
Pay Rate Type
Salary
Mercy is an independent, community-based organization supporting the Cedar Rapids area for over 120 years.
Mercy is an equal-opportunity employer. We value diversity, equity, and inclusion and therefore evaluate qualified applicants without regard to race, color, ethnicity, ancestry, sex, sexual orientation, gender identity, marital status, civil union status, parental status, religion, national origin, age, disability, veteran status, and other legally protected characteristics.