Baptist Health is the region's largest not-for-profit healthcare organization, with 12 hospitals, over 29,000 employees, 4,500 physicians and 200 outpatient centers, urgent care facilities and physician practices across Miami-Dade, Monroe, Broward and Palm Beach counties. With internationally renowned centers of excellence in cancer, cardiovascular care, orthopedics and sports medicine, and neurosciences, Baptist Health is supported by philanthropy and driven by its faith-based mission of medical excellence. For 26 years, we've been named one of Fortune's 100 Best Companies to Work For, and in the 2025-2026 U.S. News & World Report Best Hospital Rankings, Baptist Health was the most awarded healthcare system in South Florida, earning 63 high-performing honors.
What truly sets us apart is our people. At Baptist Health, we create personal connections with our colleagues that go beyond the workplace, and we form meaningful relationships with patients and their families that extend beyond delivering care. Many of us have walked in our patients' shoes ourselves and that shared experience fuels out commitment to compassion and quality. Our culture is rooted in purpose, and every team member plays a part in making a positive impact – because when it comes to caring for people, we're all in.
At Baptist Health, we’re committed to supporting our employees at every stage of their journey, both personally and professionally. Our approach is rooted in a “grow our own” philosophy, designed to help our team members build meaningful, long-term careers with us, supported by benefits that make a real difference, including:
-
Career growth and development opportunities, with clear pathways and ongoing support
-
Comprehensive health and wellness resources that go beyond traditional benefits
-
A wellness program that can help employees eliminate their medical plan deductible, reducing out-of-pocket healthcare costs
-
Tuition reimbursement to support continued learning and advancement
-
And so much more
Together, these benefits and others reflect our commitment to caring for our people, so they can build fulfilling careers with us while making a meaningful impact every day.
-
Own the implementation, management, and continuous enhancement of security controls protecting organizational data, applications, systems, and networks across on-premises and cloud environments.
-
Own security standards, technical requirements, and security practices for cloud platforms, applications, APIs, AI solutions, and other enterprise technologies.
-
Provide senior technical direction for complex security issues involving cloud infrastructure, applications, AI solutions, third-party technologies, and emerging security risks.
-
Own AI security for business and application use cases, including LLM-based solutions, AI gateways, model interactions, access controls, data protection, and security monitoring.
-
Evaluate application security holistically across IAM, authentication and authorization, machine-to-machine authentication, secrets and certificates, logging and monitoring, network controls, data protection, APIs, and application-layer security.
-
Serve as the Cloudflare security administrator, owning configuration and governance of WAF, access controls, traffic protections, and other edge-security capabilities for externally facing applications.
-
Own vulnerability and security-risk analysis across cloud, AI, applications, APIs, and infrastructure, including configuration and infrastructure-as-code reviews.
-
Establish and maintain enterprise security standards, technical requirements, patterns, and guardrails for cloud, AI, application security, and related technologies.
-
Work across Cloud Operations, Application, Infrastructure, Network, DevOps, Risk, and other cross-functional teams to identify security risks and drive secure implementation.
-
Provide authoritative security guidance for significant and high-risk technology initiatives and ensure implementations align with organizational security standards.
-
Other duties as assigned.
Estimated salary range for this position is $144738.24 - $188159.71 / year depending on experience.
Degrees:
-
Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, Information Technology, Electrical Engineering, or a related field. Master's degree preferred.
Additional Qualifications:
-
12+ years of progressively responsible experience in information security, application security, cloud security, infrastructure security, or related technical disciplines.
-
Deep experience securing enterprise applications, cloud platforms, APIs, infrastructure, and emerging technologies.
-
Strong working knowledge of AWS and GCP security, with familiarity with Azure and cloud infrastructure and operational concepts.
-
Demonstrated ability to define security standards, technical requirements, guardrails, and controls and drive their implementation across engineering teams.
-
Strong knowledge of OWASP Top 10 risks for web applications, APIs, and LLM applications, including appropriate mitigation strategies.
-
Advanced knowledge of application and API security, including IAM, OAuth, OIDC, SAML, JWT, machine identities, secrets management, certificates, encryption, authentication, and authorization.
-
Experience securing AI and LLM-based applications, including AI gateways, model access, data-flow security, third-party model integrations, and enterprise AI use cases.
-
Strong experience with Cloudflare, WAFs, API protection, access controls, rate limiting, and edge-security protections for externally exposed applications.
-
Familiarity with CI/CD, Git, infrastructure as code, containers, Terraform, configuration management, and cloud operations sufficient to secure modern engineering environments.
-
Experience reviewing infrastructure as code, configurations, scripts, or source code to identify security weaknesses and drive remediation.
-
Strong ability to independently analyze complex security risks, make security decisions, and communicate requirements effectively with engineers, business stakeholders, and senior leadership.
-
Relevant technical or cloud-security certifications such as AWS, GCP, Azure, OSCP, GWAPT, eWPT, or equivalent are preferred.
Minimum Required Experience: 8 Years
EOE, including disability/vets