Apply on company website 1010 Rue De la Gauchetière O #1500, Montréal, QC H3B 2N2, Canada Hybrid

LGI Healthcare Solutions Santé Inc. is hiring a Senior Cloud Security Architect

With 40 years of expertise, LGI Healthcare Solutions develops technological software for the healthcare network. We specialize in providing solutions for clinical, financial and material management, performance and analysis, and workforce management, which includes payroll management. Innovation is at the heart of our activities and we partner with our customers to solve crucial issues and ensure the well-being of patients and all members of the health sector. Today, our solutions support 320,000 healthcare professionals and over 6 million patients. At LGI Healthcare Solutions, we value diversity and equal access to employment for all. Should you require specific assistance during the recruitment and integration process, don’t hesitate to let us know. It will be our pleasure to accommodate you while respecting the confidentiality of your personal information. What will your days look like at LGI Healthcare Solutions? LGI Healthcare Solutions improves the performance of healthcare organizations as well as the experience of teams and patients through its innovative technological solutions. In this context, we are looking for a Senior Cloud Security Architect (Azure) who will act as the leader for strategy, architecture, and security governance across all of the company’s Microsoft Azure environments. In this role, under the supervision of the CISO, you will work closely with the CloudOps team, within which you will be operationally integrated, while maintaining authority over strategic direction, risk management, and security standards. Context of the Mandate As part of evolving and strengthening our cloud security posture, we are seeking a senior architect capable of: Taking over and structuring Azure security architecture Significantly reducing the attack surface Eliminating uncontrolled public exposure Establishing formal and sustainable governance Defining and implementing a comprehensive cloud security strategy Ensuring sustainability and continuous improvement of the security posture This is a strategic role. It is not a technical administration position, but rather a mandate focused on architecture, transformation, and structuring at the organizational level. Primary Mandate Define, implement, and maintain the overall Azure security strategy, ensuring: The design of secure architectures Integration of Zero Trust principles Governance of technical controls Structured cloud risk management Continuous and measurable improvement of the security posture Responsibilities 1. Define Azure Security Strategy Develop and maintain the overall security strategy for Microsoft Azure environments Define the roadmap for cloud security transformation and maturity Establish a governance framework aligned with best practices (CIS, Azure Security Benchmark, Zero Trust) 2. Redesign and Secure Cloud Architecture Design secure and scalable Azure architectures Reduce the attack surface and eliminate uncontrolled public exposure Structure network segmentation, data protection, and technical identity management Define secure deployment standards (landing zones, subscriptions, workloads) 3. Implement Sustainable and Automated Controls Define and implement security guardrails (policies, standards, technical controls) Integrate security into CloudOps and DevSecOps practices Promote automation of controls and “security as code” 4. Strengthen Access and Privilege Governance Apply the principle of least privilege Govern RBAC roles, managed identities, and service principals Establish an auditable and controlled access model 5. Ensure Sustainability and Continuous Improvement Define logging, detection, and cloud monitoring requirements Collaborate with the SOC to optimize visibility and response Establish performance and maturity metrics Ensure continuous review of architecture and security standards Requirements Senior experience in Azure cloud security architecture Advanced knowledge of Azure security components Proven experience in cloud environment transformation and structuring Ability to design secure enterprise-scale architectures Experience with Azure Policy, Defender for Cloud, RBAC, Private Endpoints Knowledge of DevSecOps practices and Infrastructure as Code Strong understanding of Zero Trust models Ability to influence, structure, and evolve practices over the long term This position must be bilingual as the candidate will be responsible for working with documentation in both French and English and communicating, orally and in writing, with both French-speaking and English-speaking partners/clients/suppliers/colleagues. Nice to Have Relevant Azure certifications (AZ-500, SC-100, AZ-305 or equivalent) Experience in mature or regulated enterprise environments Knowledge of cloud security frameworks (CIS, NIST, ISO 27001, CSA) Experience in advanced Azure network architecture (segmentation, Private Link, Azure Firewall) Experience with Infrastructure as Code (Terraform, Bicep) and DevSecOps Experience securing modern workloads (AKS, App Services, containers) Experience in transforming or significantly improving cloud security posture
Job Details
Location 1010 Rue De la Gauchetière O #1500, Montréal, QC H3B 2N2, Canada
Work mode Hybrid
Category other
Posted 5 months ago
Application On company website
About company
LGI Healthcare Solutions Santé Inc.
A 40-year-old technology company developing software solutions for healthcare networks, supporting clinical, financial, and workforce management for 320,000 healthcare professionals and over 6 million patients.
All jobs at LGI Healthcare Solutions Santé Inc. Visit website