Security and Access Provisioning Manager – Cloud
TN, Nashville, 500 Great Circle Rd, United States
The Cigna Group
Discover The Cigna Group, a global health company committed to improve the health and vitality of those we serve.Job Posting Title
Security and Access Provisioning Manager – Cloud
Job Description Summary
The job profile for this position is Security and Access Provisioning Manager – Cloud, which is a Band 4 Management role.
The Medicare Technology Operations organization is looking for experienced, innovative and motivated leaders with strong technology engineering and cloud acumen, a strategic mindset, and demonstrated empathic collaboration.
The Security and Access Provisioning Manager is responsible for overseeing and implementing comprehensive security strategies across a company's cloud infrastructure, ensuring the protection of data, applications, and networks by managing security policies, monitoring for threats, and collaborating with other teams to maintain compliance with industry regulations, all within a cloud computing environment; key duties include risk assessments, vulnerability management, incident response planning, and identity and access management (IAM) oversight
Responsibilities
Team Leadership:
Leads, mentors, and manage the engineering team, fostering a culture of innovation, automation, collaboration, and excellence.
Responsible for career development and performance management of the team members.
IAM Management:
Manage user access controls, including provisioning, deprovisioning and least privileged principles.
Architecture Design:
Develop and implement cloud security architecture, including network segmentation, data encryption, and access controls, aligned with industry best practices and company requirement
Security Monitoring:
Utilize cloud security tools to continuously monitor for suspicious activity, log analysis, and anomaly detection.
Compliance Management
Ensure adherence to relevant data privacy regulations (GDPR, HIPAA, etc.) and industry standards (SOC 2, PCI DSS) by monitoring compliance posture and implementing necessary controls.
Threat Assessment, Risk Management and Incident Management
Conduct regular security risk assessments to identify potential vulnerabilities and prioritize mitigation strategies.
Lead incident response activities in case of security breaches, including containment, investigation, remediation, and post-incident analysis.
Required Skillset and Qualifications
Deep understanding of cloud computing platforms (AWS (preferred), Azure, GCP) and their security features
Expertise in network security, application security, and data security principles
Knowledge of security frameworks like NIST, ISO 27001, and CIS
Experience with security tools like SIEM, EDR, and vulnerability scanners
Strong analytical and problem-solving skills
Excellent communication and collaboration skills to work with diverse teams
Relevant security certifications (CISSP, CISA, CCSP, etc.)
Bachelor’s degree in Computer Science, Systems Engineering, or other related discipline and/or equivalent work experience.
Preferred Qualifications
4 years of experience in same or similar field
Medicare/Medicaid knowledge
Experience with a cloud platform such as AWS and the services available in there to build and host the applications. Key services: S3, Lambda, CloudFront, API Gateway, DynamoDB / RDS, IAM, KMS. Experience with ECS/EKS, Docker and Kubernetes are an advantage.
If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload.
About Cigna Healthcare
Cigna Healthcare, a division of The Cigna Group, is an advocate for better health through every stage of life. We guide our customers through the health care system, empowering them with the information and insight they need to make the best choices for improving their health and vitality. Join us in driving growth and improving lives.Qualified applicants will be considered without regard to race, color, age, disability, sex, childbirth (including pregnancy) or related medical conditions including but not limited to lactation, sexual orientation, gender identity or expression, veteran or military status, religion, national origin, ancestry, marital or familial status, genetic information, status with regard to public assistance, citizenship status or any other characteristic protected by applicable equal employment opportunity laws.
If you require reasonable accommodation in completing the online application process, please email: SeeYourself@cigna.com for support. Do not email SeeYourself@cigna.com for an update on your application or to provide your resume as you will not receive a response.
The Cigna Group has a tobacco-free policy and reserves the right not to hire tobacco/nicotine users in states where that is legally permissible. Candidates in such states who use tobacco/nicotine will not be considered for employment unless they enter a qualifying smoking cessation program prior to the start of their employment. These states include: Alabama, Alaska, Arizona, Arkansas, Delaware, Florida, Georgia, Hawaii, Idaho, Iowa, Kansas, Maryland, Massachusetts, Michigan, Nebraska, Ohio, Pennsylvania, Texas, Utah, Vermont, and Washington State.
Qualified applicants with criminal histories will be considered for employment in a manner consistent with all federal, state and local ordinances.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: API Gateway APIs Application security Automation AWS Azure CCSP CISA CISSP Cloud CloudFront Compliance Computer Science Docker DynamoDB EDR Encryption GCP GDPR HIPAA IAM Incident response ISO 27001 Kubernetes Lambda Log analysis Monitoring Network security NIST PCI DSS Privacy Risk assessment Risk management S3 SIEM SOC SOC 2 Vulnerabilities Vulnerability management
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.