368,611open jobs
9,439companies
50,719added this week
Browse all
Location
In office
Seniority
Architect · 7+ years exp
Overview
Company
Impact
Profile match
Lifepoint Health is a major diversified healthcare delivery network and hospital operating system in the United States. Headquartered in Brentwood, Tennessee, the enterprise focuses primarily on providing non-urban communities, regional markets, and growing suburban areas with accessible, high-quality healthcare services.

EEOC Statement

“Lifepoint Health is an Equal Opportunity Employer. Lifepoint Health is committed to Equal Employment Opportunity for all applicants and employees and complies with all applicable laws prohibiting discrimination and harassment in employment.”

You must be authorized to work in the United States without employer sponsorship.

This Position is: Hybrid (Brentwood, TN)

Travel Requirements: Travel up to 25% (To facilities)

Job Summary

The Network Security Architect is responsible for designing, governing, and continuously improving enterprise-grade network security architectures across on-premises, cloud, and hybrid environments. This role provides strategic and technical leadership across multi-vendor security platforms, including Palo Alto Networks, Cisco Meraki, and cloud-delivered security services, spanning firewall architecture, network segmentation, and zero trust in a large, geographically distributed healthcare environment.

The architect partners closely with Infrastructure, Cloud Operations, Security Operations, and Application teams to deliver scalable, resilient, and compliant network security designs that protect patient data, support business continuity, and align with regulatory obligations including HIPAA. This is a senior individual contributor and technical leadership role with significant influence over architecture direction, engineering standards, and vendor strategy.

Key Responsibilities

Architecture & Design

  • Lead the architecture, design, and standardization of multi-vendor network security solutions spanning NGFW, cloud-delivered security, and network access control.

  • Define secure network architectures for data centers, Azure/GCP cloud environments, branch/facility sites, and hybrid connectivity models.

  • Design network segmentation, micro segmentation, zero trust, and least-privilege architectures aligned and enterprise security frameworks.

  • Develop and maintain reference architectures, design standards, technical roadmaps, and reusable security architecture patterns.

  • Evaluate emerging network security technologies and provide adoption recommendations integrated into the enterprise security strategy.

  • Define and govern network security requirements for new facility onboarding, acquisitions, and infrastructure modernization initiatives.

Multi-Vendor Platform Leadership

Palo Alto Networks

  • Define and govern security policy architecture across the Palo Alto platform: zone design, App-ID/User-ID enforcement, threat prevention profiles, URL filtering, DNS Security, and WildFire integration.

  • Architect Panorama-managed policy structures, including device group hierarchy, shared policy design, and rule base standards, to enforce consistent security posture across managed firewalls.

  • Lead security-focused platform migrations from legacy firewall environments to Palo Alto NGFW, ensuring policy intent and threat coverage are preserved and improved.

  • Architect Prisma Access deployments for mobile user and branch security: security policy enforcement, threat inspection, identity integration, and cloud-delivered service chaining.

Cisco Meraki

  • Architect security enforcement across Cisco Meraki MX security appliances: threat prevention, content filtering, IDS/IPS, and site-to-site VPN design for campus and branch environments.

  • Integrate Meraki security controls with the broader security stack, including SIEM and identity systems, to achieve unified threat visibility and policy enforcement.

Compliance, Governance & Security Frameworks

  • Translate regulatory and compliance requirements applicable to healthcare IT environments into network security architecture decisions, design standards, and control implementations.

  • Apply recognized security frameworks, including NIST Cybersecurity Framework, NIST SP 800-53, and CIS Controls, to assess current-state security posture, identify gaps, and prioritize architecture improvements.

  • Implement zero trust architecture principles, driving maturity assessment and phased adoption across network segmentation, identity enforcement, and device trust.

  • Define and enforce network security standards, architecture exception processes, and change governance procedures; conduct architecture reviews and risk assessments to support ongoing governance.

  • Support internal audits, regulatory assessments, and third-party security reviews, providing network architecture documentation, evidence, and remediation roadmaps.

Collaboration & Leadership

  • Serve as the primary technical authority and advisor for network security architecture across the organization.

  • Partner with Network Engineering, Security Operations, Cloud, and Application teams on design reviews, security integration, and incident response support.

  • Review and approve technical designs, change requests, and architecture exception requests.

  • Mentor network security engineers and contribute to engineering standards, design templates, and operational runbooks.

  • Present architecture proposals, risk findings, and strategic recommendations to both technical teams and senior leadership.

Required Qualifications

  • 7+ years of experience in network security engineering, network architecture, or infrastructure architecture roles.

  • Demonstrated architect-level experience with Palo Alto Networks technologies (NGFW, Panorama, Prisma) with depth in Palo Alto expected; multi-vendor breadth is a strong plus, not a disqualifier.

  • Strong expertise in NGFW policy architecture and rule base design; network segmentation and zero trust principles; routing protocols, switching, VPNs, and encrypted traffic inspection; cloud network security (Azure preferred).

  • Experience designing security solutions for large, geographically distributed enterprise environments.

  • Working knowledge of healthcare compliance requirements (HIPAA) or equivalent regulated-industry security design experience.

  • Strong documentation skills; ability to produce architecture diagrams, design standards, and stakeholder-ready presentations.

Preferred Qualifications

Certifications

  • Palo Alto Networks: Specialist/Architect tier certifications

  • Cisco: CCNP Security, CCIE Security, or Cisco Meraki certifications

Domain Experience

  • Healthcare IT with multi-facility, geographically distributed network environments

  • M&A integration: assessing, onboarding, and remediating acquired entity network environments

  • Network forensics and incident response support from an architecture perspective

  • Wireless security architecture for clinical and IoT environments (medical device network segmentation)

Soft Skills

  • Strategic architectural thinking with the ability to translate complex business and regulatory requirements into security designs.

  • Ability to balance security rigor, operational performance, and business enablement making pragmatic risk-based decisions.

  • Comfortable presenting technical designs and risk tradeoffs to both engineering teams and senior leadership.

  • Proven ability to influence and drive alignment across cross-functional teams without direct authority.

  • Self-directed with strong prioritization skills in a complex, fast-paced healthcare environment.

  • Collaborative mindset: sees security architecture as an enabler, not a blocker.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,611 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
Data Engineer 1 day ago
In office • Full-Time • Singapore
Node JS
Python
SQL
JavaScript
Python
Beautiful Soup
Databases
Apache Kafka
MySQL
PostgreSQL
RabbitMQ
SQLite
AI/ML
Hadoop
Spark
DevOps
AWS
AWS Lambda
Azure
CI/CD
GCP
Amazon ECS
Amazon EventBridge
Amazon S3
Analytics
ETL/ELT
QA
Selenium
Apply
$170k – $318k per year (Estimated) • Remote/Hybrid • Full-Time • 12+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
JavaScript
Python
TypeScript
Python
pySpark
AI/ML
Prompt Engineering
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
Jenkins
GitHub
GitLab
Analytics
ETL/ELT
Apply
In office • Full-Time • 3+ years exp • Indonesia
DevOps
AWS
Azure
GCP
IAM
Apply
$19k – $53k per year (Estimated) • In office • Full-Time • Bachelor's Degree • Pune
Bash
JavaScript
Python
TypeScript
Frontend
Angular
React.js
DevOps
AWS
Azure
Datadog
Docker
GCP
Grafana
Kubernetes
Prometheus
Splunk
IAM
Cybersecurity
Keycloak
Apply
$54k – $159k per year (Estimated) • In office • Full-Time • 4+ years exp • Bachelor's Degree • Singapore
Bash
PowerShell
Python
DevOps
Ansible
AWS
Azure
Chef
Docker
Hyper-V
Incident Management
Kubernetes
Puppet
Red Hat
Terraform
VMWare
Windows Server
Apply
In office • High School Diploma
PHP
Apply
Systems Analyst 5 days ago
In office • 2+ years exp • Associate's Degree
DevOps
Windows Server
Cybersecurity
HIPAA
Apply
$58k – $135k per year (Estimated) • In office • High School Diploma • McKinney
PHP
Apply
In office • Master's Degree
PHP
Cybersecurity
HIPAA
Apply
$58k – $135k per year (Estimated) • In office • High School Diploma • Oklahoma City
PHP
Apply
See all jobs
This is one of many
368,611 more open roles from verified company boards, updated every day.