Lead Cybersecurity Engineer
Cybersecurity at Providence is responsible for appropriately protecting caregiver, affiliate, business, and patient information.
The Lead Consultant – Zscaler Engineering is a senior technical role responsible for designing, leading, and optimizing Zscaler security platforms across Providence’s enterprise environment. This role provides architectural guidance, drives platform strategy, and collaborates with Cybersecurity, Networking, and Cloud teams to ensure secure web access, application protection, and alignment with Providence’s Zero Trust and SASE roadmap.
What Will You Be Responsible For?
- Lead the design, implementation, and optimization of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) platforms at enterprise scale.
- Architect and manage traffic‑forwarding technologies including ZCC, PAC files, GRE/IPsec tunnels, and identity integrations (Azure AD, SAML, Kerberos, etc.).
- Oversee configuration of SSL inspection, threat protection, DLP policies, and access controls across cloud and on-prem environments.
- Drive lifecycle management including platform upgrades, patching, and vulnerability remediation in partnership with Zscaler Support and platform owners.
- Lead development of runbooks, engineering standards, architecture diagrams, and operational workflows.
- Serve as a senior escalation point for complex Zscaler, connectivity, and application‑security issues.
- Provide technical leadership, mentorship, and guidance to junior engineers and cross‑functional teams.
What Would Your Work Week Look Like?
- Partner with Network, Cloud, and Cybersecurity teams to validate security architecture, review deployments, and drive Zscaler adoption.
- Conduct technical assessments and Proof‑of‑Concept (POC) initiatives to evaluate new Zscaler capabilities or integrations.
- Review and optimize enterprise Zscaler policies for performance, security posture, and compliance alignment.
- Document security reference architectures, standards, and engineering best practices.
- Participate in roadmap planning, capability uplift initiatives, and platform modernization (Zero Trust, SASE, CASB, DLP).
- Engage in vendor governance, feature evaluation, advanced troubleshooting, and solution improvements.
Who Are We Looking For?
- 6–9 years of experience in network security, cloud security, or Zero Trust engineering roles.
- Advanced hands‑on expertise with Zscaler ZIA/ZPA, ZCC, GRE/IPsec tunnels, and identity integrations.
- Strong understanding of DLP, CASB, SaaS Security Posture Management, and SASE security principles.
- Deep technical knowledge of SSL/TLS inspection, authentication flows, network protocols, and hybrid/multi‑cloud architectures.
- Experience leading enterprise‑scale security architecture or platform engineering initiatives.
- Strong analytical, troubleshooting, and leadership skills.
- Ability to influence cross‑functional teams and partner effectively with Network, Cloud, and Security stakeholders.
- Preferred certifications: Zscaler (ZIA/ZPA), CISSP, CCNP Security, GIAC, or equivalent.