Principal Cybersecurity Engineer

About Providence

Providence, one of the US’s largest not-for-profit healthcare systems, is committed to high quality, compassionate healthcare for all. Driven by the belief that health is a human right and the vision, ‘Health for a better world’, Providence and its 121,000 caregivers strive to provide everyone access to affordable quality care and services.

Providence has a network of 51 hospitals, 1,000+ care clinics, senior services, supportive housing, and other health and educational services in the US.

Providence India is bringing to fruition the transformational shift of the healthcare ecosystem to Health 2.0. The India center will have focused efforts around healthcare technology and innovation, and play a vital role in driving digital transformation of health systems for improved patient outcomes and experiences, caregiver efficiency, and running the business of Providence at scale.


Why Us?

  • Best In-class Benefits
  • Inclusive Leadership
  • Reimagining Healthcare
  • Competitive Pay
  • Supportive Reporting Relation

As a Cybersecurity Principal Engineer, you will

  • Design, implement, and own the Azure Landing Zone security architecture, including:
  • Azure Policies and Policy Initiatives
  • Guardrails, RBAC models, management groups, and subscription architecture
  • Lead implementation and day‑to‑day management of enterprise security platforms, including:
  • CrowdStrike (endpoint protection, detection, and response)
  • Proofpoint (email security, phishing protection, and threat intelligence)
  • Rapid7 (vulnerability management, exposure analytics, and threat detection)
  • Checkmarx (SAST, DAST, SCA, code security governance)
  • Wiz (CNAPP / CSPM / workload and cloud risk visibility)
  • Implement and operationalize Azure Policy for:
  • Resource tagging, region restrictions, SKU allowlists
  • Encryption, data residency, and compliance guardrails
  • Deploy, tune, and manage:
  • Microsoft Defender for Cloud (CSPM/CWPP)
  • Defender for Identity
  • Container and AKS security controls
  • Stand up and evolve Microsoft Sentinel (SIEM/SOAR):
  • Data connectors, analytics rules, UEBA
  • Threat enrichment and automated response playbooks
  • Implement Policy‑as‑Code and Security Baselines‑as‑Code using GitOps practices.
  • Maintain enterprise risk register, report security KPIs to leadership, and partner with risk, compliance, and audit teams.
  • Run purple‑team style control validation, lead incident response runbooks, and drive post‑incident improvements.
  • Establish and govern network security architectures:
  • Hub‑spoke / vWAN
  • Private Endpoints, Azure Firewall, WAF, DDoS

 

What would your day look like?

  • Partner with Engineering, Network, and Platform teams to design and operate a secure, compliant Azure platform and Snowflake tenant.
  • Analyze and audit platform and application codebases using Checkmarx and related tooling to identify vulnerabilities and compliance gaps.
  • Act as a security authority on the Architecture Review Board, shaping approved application and cloud design patterns.
  • Collaborate with vendors and partners on security assessments and remediation strategies (CrowdStrike, Proofpoint, Rapid7, Wiz).
  • Continuously monitor threats and alerts; define SOPs and train L1/L2 teams for effective triage and escalation.
  • Drive sprint delivery for security initiatives with high quality and on‑time execution.

Who are we looking for?

  • 10+ years of cybersecurity experience with 5+ years focused on Azure cloud security architecture.
  • Deep expertise in:

Azure RBAC, Microsoft Entra ID, Conditional Access

PIM / PIM for Groups, Identity Governance

Strong hands‑on experience with:

CrowdStrike, Proofpoint, Rapid7, Checkmarx, Wiz

Defender for Cloud, Microsoft Sentinel, Azure Firewall, WAF

  • Proven experience delivering Azure Landing Zones aligned to Microsoft Cloud Adoption Framework and Well‑Architected principles.
  • Strong identity federation knowledge (SAML, OAuth2/OIDC), SCIM provisioning, and B2B integrations.
  • Automation‑first mindset with PowerShell, Python, Terraform, Bicep, Git, YAML, and CI/CD workflows.

Required Skills:

  • Expert‑level Microsoft Entra ID, Conditional Access, PIM, RBAC, and identity governance
  • Enterprise‑scale Azure network security and private connectivity design
  • Deep experience implementing CNAPP, EDR, email security, vuln management, and code security platforms
  • Strong DevSecOps background including SAST/DAST, IaC scanning, and API security
  • Mature incident response, observability, and alert tuning experience
  • Familiarity with AI/LLM security patterns (Azure OpenAI, RAG architectures)
  • Strong experience with Azure network security, including VNet architecture, private endpoints, DDoS, WAF, and Azure Firewall
  • Hands-on experience implementing Defender for Cloud, Sentinel SIEM/SOAR, and cloud threat-detection pipelines
  • Demonstrated ability to design Azure Policy, policy-as-code, and compliance automation for SOC2/ISO/HIPAA
  • Deep understanding of Key Vault, CMK encryption, data protection, and secure data pipelines
  • Proven background in DevSecOps, secure CI/CD, IaC (Terraform/Bicep), SAST/DAST, and API security
  • Strong capability in observability, logging, alert tuning, and incident response automation
  • Experience building secure Azure Landing Zones and enterprise cloud architecture.

 

 

Providence’s vision to create ‘Health for a Better World’ aids us to provide a fair and equitable workplace for all in our employment, whether temporary, part-time or full time, and to promote individuality and diversity of thought and background, and acknowledge its role in the organization’s success. This makes us committed towards equal employment opportunities, regardless of race, religion or belief, color, ancestry, disability, marital status, gender, sexual orientation, age, nationality, ethnic origin, pregnancy, or related needs, mental or sensory disability, HIV Status, or any other category protected by applicable law. In furtherance to our mission in building a more inclusive and equitable environment, we shall, from time to time, undertake programs to assist, uplift and empower underrepresented groups including but not limited to Women, PWD (Persons with Disabilities), LGTBQ+ (Lesbian, Gay, Transgender, Bisexual or Queer), Veterans and others. We strive to address all forms of discrimination or harassment and provide a safe and confidential process to report any misconduct.

Contact our Integrity hotline also, read our Code of Conduct.