Job Title : Senior Lead Cloud Security Engineer
Position Type : 6+ months Contract-to-Hire with extensions
Location : Philadelphia, PA (80% remote, 20% onsite)
Client : Childrens Hospital of Philadelphia
Overview
A leading healthcare organization in Philadelphia, PA is seeking a Cloud Security Principal Engineer to spearhead a large-scale cloud migration initiative. This role requires a strong leader with deep expertise in cloud security, regulatory compliance, and enterprise-scale transformation.
Key Requirements
Mandatory : CISSP certification; additional cloud security certifications strongly preferred.
Experience :
12+ years across IT disciplines (architecture, network, application, database, operations).
6+ years in information security, compliance, and risk management.
3+ years in Identity & Access Management (IAM), RBAC, and user provisioning.
Technical Expertise :
Multi-cloud security (Azure required; AWS and Google Cloud relevant).
Application scanning tools, CSPM platforms, SIEM / EDR solutions (Sentinel, Splunk, Microsoft Defender, Wiz).
Secure configuration management, automation pipelines (Terraform, PowerShell).
Networking protocols, firewalls, NAC, encryption standards.
Microsoft Active Directory, UNIX; ERP / clinical systems experience.
Frameworks & Compliance :
NIST SP 800-53, HIPAA, PCI-DSS, CIS Benchmarks, ISO 27000, Zero Trust (ZTMM).
DevSecOps experience, ERP / clinical application security, mentoring / leadership background.
Responsibilities
Lead and advise on cloud security strategy for a major healthcare cloud migration.
Design, implement, and optimize multi-cloud security controls and IAM / RBAC models.
Collaborate with IT, vendors, and MSPs to enhance detection, prevention, and automation capabilities.
Drive incident response planning, tabletop exercises, and system hardening.
Align architectures with organizational policies and external frameworks (NIST, HIPAA, CIS).
Support audits, compliance assessments, and risk remediation.
Mentor junior engineers and shape scalable, enterprise-ready security service lines.
Champion DevSecOps practices to embed security into cloud-native strategies.
Cloud Security Engineer • Philadelphia, PA, US