Lead Cyber Security Architect

McKesson Corporation

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Richmond, VA
Salary
$143,000–$238,400 / yr
Posted
38 days ago
Freshness
Confirmed live today
Closes
Oct 2, 2026

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $180k
This role $191k
$118k most similar roles pay here $251k

This role pays more than 67% of similar roles. Most pay $153,000–$207,905 — the shaded band above. At the midpoint, this role pays about $191k versus about $180k for comparable roles.

Based on 240 similar postings.

Employer

About McKesson Corporation

McKesson Corporation is a premier American healthcare services company that distributes pharmaceuticals, medical-surgical supplies, and provides technology to the healthcare industry.

McKesson Corporation currently has 61 open roles on FindRole.

Listed pay typically runs $121,100–$201,900 across 61 roles with salary data.

Most-posted roles

View all roles at McKesson Corporation

At a glance

TL;DR · Lead Cyber Security Architect

Lead Cyber Security Architect The Lead Cyber Security Architect joins the MMS team to establish and evolve security architecture, patterns, and guardrails that protect the business while enabling innovation. This role involves partnering with leadership and engineering teams to drive consistent security outcomes across the enterprise by translating policy and regulatory requirements into practical technical standards. The architect will design cloud, network, identity, endpoint, and data protection solutions, ensuring they are secure-by-design and compliant with healthcare regulations like HIPAA and HITRUST. Key responsibilities include overseeing DevSecOps integration, managing infrastructure-as-code, and mentoring engineers. The role requires expertise in Zero Trust, IAM/PAM, SIEM, EDR/XDR, SOAR, and scripting using Bash, Python, or PowerShell. This position addresses the critical challenge of securing sensitive PII and PHI data within a complex healthcare distribution and medical-surgical supply chain environment.

What you'll do

  • Develop and evolve security architecture reference patterns and guardrails across cloud, network, identity, endpoint, application, and data protection domains.
  • Conduct architectural reviews for new platforms, major applications, third-party integrations, and B2B/B2C capabilities to ensure secure-by-design outcomes.
  • Translate complex security policies and regulatory requirements into practical engineering requirements, reusable design standards, and implementation guidance.
  • Define target-state security roadmaps and align stakeholders across security, technology, and business units on prioritization.
  • Embed security into the development lifecycle by advising on DevSecOps practices, including CI/CD controls and infrastructure-as-code.
  • Establish and track measurable metrics to evaluate guardrail coverage, risk reduction, and control effectiveness.
  • Mentor and coach engineers while performing critical peer reviews of technical deliverables to ensure alignment with enterprise standards.
  • Design and maintain specific cloud security patterns for IAM, network segmentation, encryption, and vulnerability management.

What we're looking for

  • Bachelor's degree in computer science, information security, engineering, or a related field is required.
  • CISSP certification is required.
  • 10+ years of relevant experience are required (lesser amount accepted with a Master's or Doctorate).
  • 10+ years in cybersecurity and 5+ years in security architecture including risk management and compliance are required.
  • Experience designing for Zero Trust, IAM/PAM at scale, and infrastructure-as-code is required.
  • Proficiency in scripting languages like Bash, Python, or PowerShell to automate controls is required.
  • Knowledge of healthcare and enterprise frameworks such as NIST, ISO 27001, HITRUST, HIPAA, and PCI DSS is required.
  • CISM, GIAC/SANS, or relevant cloud security certifications are preferred.

More like this

Similar roles

Cybersecurity Architect Advisor

Fiserv

Columbus, OH +4 3 days ago $127,500$204,000
Zero Trust AWS Azure GCP Kubernetes Terraform CI/CD Python Bash Identity and Access Management Network Security Encryption Firewalls VMware Cisco F5 PCI DSS NIST ISO 27001 HIPAA SOX GDPR CCPA
10+ yrs exp

Cybersecurity Architect

AbbVie

Remote 67 days ago $124,500$236,500
EDR CrowdStrike Defender MDM UEM Microsoft Intune iOS Android AWS Azure NIST CIS Controls OWASP Cloud Security Alliance ServiceNow Jira Confluence Microsoft 365 SharePoint AI Tools
8+ yrs exp Remote

Cybersecurity Architect

AbbVie

Remote 67 days ago $124,500$236,500
EDR CrowdStrike Defender MDM UEM Microsoft Intune iOS Android AWS Azure NIST CIS Controls OWASP Cloud Security Alliance ServiceNow Jira Confluence Microsoft 365 SharePoint AI Tools
8+ yrs exp Remote

Senior Cybersecurity Architect

Leidos

Lorton, VA 45 days ago $131,300$237,350
zero-trust RMF DevSecOps CI/CD Splunk Trellix ePO Tenable Nessus SolarWinds Microsoft Azure ICAM Encryption Firewalls Policy-as-Code Scripting Agile
10+ yrs exp

Lead Enterprise Security Architect

Booz Allen Hamilton

McLean, VA 61 days ago $86,800$198,000
Zero Trust NIST SP 800‑53 SASE DLP Encryption Tokenization F5 Palo Alto AWS Azure SIEM SOAR Kubernetes DevSecOps Agile RMF FedRAMP ISO 27001 COBIT
7+ yrs exp

Senior Director, Cyber Engineering

McKesson Corporation

Richmond, VA 38 days ago $172,000$286,600
IAM PAM PKI EDR CSPM WAF DLP SIEM SOAR DevSecOps CI/CD Infrastructure-as-Code Policy-as-Code NIST ISO 27001 HIPAA PCI DSS SOC 2 GDPR
10+ yrs exp