Senior Director, Enterprise Security Platform Engineering
Morristown, NJ - USA
Job Summary
At Zelis we Get Stuff Done. So lets get to it!
A Little About Us
Zelis is modernizing the healthcare financial experience across payers providers and healthcare consumers. We serve more than 750 payers including the top five national health plans regional health plans TPAs and millions of healthcare providers and consumers across our platform of solutions. Zelis sees across the system to identify optimize and solve problems holistically with technology built by healthcare experts driving real measurable results for clients.
At Zelis AI is woven into the fabric of how we work. Every associate is expected - and empowered - to partner with AI to challenge the status quo accelerate innovation and amplify their impact. This is a place for builders with a growth mindset who act with agility embrace change and use modern technology to shape smarter solutions exceptional experiences and the future of our industry for our clients customers and our culture.
A Little About You
You bring a unique blend of personality and professional expertise to your work inspiring others with your passion and dedication. Your career is a testament to your diverse experiences community involvement and the valuable lessons youve learned along the way. You are more than just your resume; you are a reflection of your achievements the knowledge youve gained and the personal interests that shape who you are.
Position Overview
The Senior Director Enterprise Security Platform Engineering is a senior leadership role responsible for the strategy architecture engineering and operations of enterprise-wide identity access and data protection programs. The role will report to the Global CISO and part of the Cyber Leadership Team. Operating at the intersection of healthcare and financial technology this leader will ensure that our platforms meet the stringent security and compliance requirements of HIPAA PCI-DSS SOC 2 and other applicable frameworks while enabling a frictionless experience for internal users partners and patients.This executive will build and scale a world-class engineering team partner closely with Product Infrastructure Legal and Compliance leadership and serve as the subject-matter authority for IAM and data security across the organization.
What Youll Do:
Leadership & Team Development
Senior Director Enterprise Security Platform Engineering
- Lead mentor and grow a multi-disciplinary team of engineers architects and analysts across IAM and data security domains both in the US and India.
- Define team structure hiring roadmap and career development frameworks to attract and retain top security engineering talent.
- Foster a culture of ownership continuous learning and security-first engineering.
- Serve as a visible advocate for security engineering practices across engineering and product organizations.
Domain Responsibilities
- Develop a multi-year IAM and data security roadmap aligned to business growth M&A integration and regulatory evolution.
- Own the end-to-end IAM strategy covering workforce identity customer identity (CIAM) privileged access management (PAM) and machine/service identity.
- Architect and deliver Zero Trust access models MFA enforcement SSO RBAC/ABAC policies and identity federation across cloud and on-premises environments.
- Drive adoption of modern identity standards including OAuth 2.0 OpenID Connect SAML SCIM and FIDO2/WebAuthn.
- Oversee privileged access governance and just-in-time access workflows for production healthcare and financial systems.
- Lead the evaluation selection and operationalization of IAM platforms (e.g. MFA IGA PAM Non Human Identity etc.).
- Develop and execute a comprehensive data security strategy spanning data classification data loss prevention (DLP) encryption at rest and in transit tokenization and secrets management.
- Ensure robust protection of Protected Health Information (PHI) and Personally Identifiable Financial Information (PIFI) across all data stores pipelines and APIs.
- Lead implementation and enforcement of data access governance including automated discovery tagging and lineage for sensitive data across cloud data lakes and warehouses.
- Partner with data engineering and ML teams to embed privacy-by-design and security-by-design principles into data platform architectures.
- Ensure IAM and data security controls satisfy HIPAA/HITECH PCI-DSS SOC 2 Type II NIST 800-53 ISO 27001 and state data privacy laws
- Own the IAM and data security sections of audit readiness programs regulatory examinations and third-party assessments.
- Define metrics KPIs and executive dashboards to communicate program health and risk posture to the CISO CTO and Board.
- Partner with Legal and Privacy teams on data breach response regulatory notifications and privacy impact assessments.
- Collaborate with Infrastructure DevOps and Platform Engineering to embed security controls natively into CI/CD pipelines and cloud infrastructure (IaC).
- Evaluate and manage relationships with security technology vendors MSSPs and industry partners.
- Represent the organization in industry forums regulatory engagements and partner/customer security reviews.
What Youll Bring:
- 12 years of progressive experience in information security with at least 5 years in a senior leadership role managing security engineering teams.
- Deep hands-on expertise in IAM technologies: Okta Azure Active Directory / Entra ID SailPoint CyberArk or equivalent enterprise platforms.
- Demonstrated success delivering enterprise IAM and data security programs in highly regulated industries specifically healthcare (HIPAA) and/or financial services (PCI-DSS GLBA).
- Proven ability to architect and implement Zero Trust PAM CIAM and data governance solutions at scale in cloud-native environments (AWS Azure or GCP).
- Strong working knowledge of identity protocols: OAuth 2.0 OIDC SAML 2.0 SCIM and FIDO2.
- Experience with data security tooling: DLP platforms encryption key management tokenization and data discovery/classification.
- Demonstrated executive presence with the ability to communicate complex security concepts to C-suite technical and non-technical stakeholders.
- Experience recruiting developing and retaining diverse high-performing engineering teams.
- Relevant certifications such as CISSP CISM CCSP CISA
- Familiarity with DevSecOps practices security automation and Infrastructure-as-Code security controls (Terraform CloudFormation).
- Experience integrating acquired companies and harmonizing disparate identity environments post-M&A.
- Advanced degree (MS or MBA) in Computer Science Information Security or a related field.
Please note at this time we are unable to proceed with candidates who require visa sponsorship now or in the future.
Location and Workplace Flexibility
Zelis is headquartered in the U.S. with multiple locations across the country and in Hyderabad India. Check out our locations to learn more about our offices. All employee work locations are based on the needs of the position and are determined by the Leadership -office work and activities vary based on work and team objectives in accordance with Company policies.
While location expectations vary by role candidates within approximately 50 miles of a U.S. office are generally preferred to support collaboration when needed. Our hybrid approach is flexible and in-office presence is guided by team and business needs rather than a fixed weekly schedule.
Base Salary Range
$185000.00 - $234650.00At Zelis we are committed to providing fair and equitable compensation packages. The base salary range allows us to make an offer that considers multiple individualized factors including experience education qualifications as well as job-related and industry-related knowledge and skills etc. Base pay is just one part of our Total Rewards package which may also include discretionary bonus plans commissions or other incentives depending on the role.
Zelis full-time associates are eligible for a highly competitive benefits package as well which demonstrates our commitment to our employees health well-being and financial protection. The US-based benefits include a 401k plan with employer match flexible paid time off holidays parental leaves life and disability insurance and health benefits including medical dental vision and prescription drug coverage.
Equal Employment Opportunity
Zelis is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion age sex national origin disability status genetics protected veteran status sexual orientation gender identity or expression or any other characteristic protected by federal state or local laws.
We welcome applicants from all backgrounds and encourage you to apply even if you dont meet 100% of the qualifications for the role. We believe in the value of diverse perspectives and experiences and are committed to building an inclusive workplace for all.
Accessibility Support
We are dedicated to ensuring our application process is accessible to all candidates. If you are a qualified individual with a disability or a disabled veteran and require a reasonable accommodation with any part of the application and/or interview process please email .
Disclaimer
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities duties and skills from time to time.
Required Experience:
Exec
About Company
Discover the connected platform that's bridging gaps and aligning interests of healthcare payers, providers, and healthcare consumers.