Sr. Cybersecurity Engineer

About Providence

Providence, one of the US’s largest not-for-profit healthcare systems, is committed to high quality, compassionate healthcare for all. Driven by the belief that health is a human right and the vision, ‘Health for a better world’, Providence and its 121,000 caregivers strive to provide everyone access to affordable quality care and services.

Providence has a network of 51 hospitals, 1,000+ care clinics, senior services, supportive housing, and other health and educational services in the US.

Providence India is bringing to fruition the transformational shift of the healthcare ecosystem to Health 2.0. The India center will have focused efforts around healthcare technology and innovation, and play a vital role in driving digital transformation of health systems for improved patient outcomes and experiences, caregiver efficiency, and running the business of Providence at scale.


Why Us?

  • Best In-class Benefits
  • Inclusive Leadership
  • Reimagining Healthcare
  • Competitive Pay
  • Supportive Reporting Relation

Job Description – Cybersecurity Engineer (Vulnerability Management & Email Security)

Role Summary

The Cybersecurity Engineer (Vulnerability Management & Email Security) is responsible for administering, optimizing, and maturing the organization’s vulnerability management program and email security capabilities. This role provides hands-on technical leadership for Qualys Vulnerability Management administration, vulnerability lifecycle management, and Abnormal Security email protection operations to ensure the enterprise is effectively protected against cyber threats, vulnerabilities, and advanced email-based attacks.

The role acts as a technical subject matter expert, partnering with Cyber Engineering, IT Operations, Cloud, Infrastructure, SOC, and business stakeholders to ensure continuous vulnerability visibility, timely remediation, and robust email threat defense across the enterprise environment.

Key Responsibilities

Qualys Vulnerability Management Administration

  • Administer and maintain the Qualys Vulnerability Management (VM) module including scanner appliance management, agent deployment, asset grouping, and user access management.
  • Configure and optimize vulnerability scan schedules, scan profiles, option profiles, and authentication records for comprehensive vulnerability coverage.
  • Ensure accurate asset inventory and discovery across on-premises, cloud (AWS, Azure, GCP), and hybrid environments using Qualys Cloud Agents and network scanners.
  • Manage Qualys VM integrations with ITSM, SIEM, and ticketing systems (e.g., ServiceNow) for automated vulnerability workflows.
  • Perform platform maintenance, troubleshoot scanning issues, and ensure high availability of the Qualys VM environment.
  • Develop and maintain custom dashboards, reports, and widgets for vulnerability metrics and executive reporting.

Vulnerability Lifecycle Management

  • Lead end-to-end vulnerability management lifecycle including discovery, assessment, prioritization, remediation tracking, and verification.
  • Analyze vulnerability scan results, prioritize findings based on CVSS scores, exploitability, asset criticality, and business context.
  • Collaborate with IT, infrastructure, application, and cloud teams to drive timely vulnerability remediation and patching.
  • Define and enforce vulnerability SLAs, remediation timelines, and escalation procedures aligned with enterprise risk appetite.
  • Track and report vulnerability remediation progress, aging analysis, and risk exposure metrics to leadership.
  • Identify systemic vulnerability trends, recurring weaknesses, and recommend strategic remediation initiatives.
  • Support vulnerability-related audit requests, compliance evidence, and regulatory assessments.

Abnormal Security – Email Security Operations

  • Administer and manage the Abnormal Security platform for advanced email threat detection, business email compromise (BEC) prevention, and account takeover protection.
  • Configure and tune Abnormal Security detection policies, behavioral models, and response actions to minimize false positives and maximize threat detection.
  • Monitor and investigate email-based threats including phishing, spear-phishing, BEC, vendor email compromise (VEC), and credential harvesting attacks.
  • Manage email security incident response workflows including threat triage, containment, remediation, and post-incident analysis.
  • Collaborate with SOC and incident response teams to correlate email threats with broader attack campaigns.
  • Develop and maintain email security metrics, dashboards, and executive reporting on threat landscape and platform effectiveness.
  • Integrate Abnormal Security with existing email infrastructure (Microsoft 365, Exchange Online) and security ecosystem (SIEM, SOAR).
  • Stay current on emerging email threat vectors, social engineering techniques, and email security best practices.

Security Operations & Continuous Improvement

  • Participate in security operations activities including threat hunting, incident support, and security tool optimization.
  • Develop and maintain operational runbooks, standard operating procedures (SOPs), and playbooks for vulnerability management and email security.
  • Drive automation and process improvements to enhance vulnerability detection, prioritization, and remediation workflows.
  • Support security architecture reviews and technology initiatives with vulnerability and email security expertise.
  • Contribute to cybersecurity metrics, KPIs, and executive reporting for governance forums.

Compliance & Governance Support

  • Ensure vulnerability management and email security operations align with HIPAA, NIST CSF, NIST 800-53, CIS Controls, PCI-DSS, and organizational policies.
  • Support internal and external audit engagements by providing vulnerability assessment evidence, scan reports, and remediation documentation.
  • Contribute to risk assessments and compliance reviews related to vulnerability exposure and email threat posture.

Required Skills & Experience

  • 5–8 years of experience in cybersecurity engineering, vulnerability management, or security operations roles.
  • Strong hands-on expertise in Qualys Vulnerability Management (VM) module administration including scan configuration, agent deployment, and reporting.
  • Experience with Abnormal Security or equivalent advanced email security platforms (Proofpoint, Mimecast, Microsoft Defender for Office 365).
  • Deep understanding of vulnerability management lifecycle, CVSS scoring, exploit prioritization, and remediation workflows.
  • Experience with email threat detection, BEC prevention, phishing analysis, and email security incident response.
  • Strong working knowledge of security frameworks including NIST CSF, NIST 800-53, CIS Controls, and HIPAA.
  • Experience integrating security tools with SIEM (Splunk, Sentinel), SOAR, ITSM (ServiceNow), and GRC platforms.
  • Hands-on experience with cloud environments (AWS, Azure, GCP) and cloud-native vulnerability scanning.
  • Strong scripting and automation skills (Python, PowerShell, or equivalent) for security tool automation.
  • Excellent analytical, troubleshooting, and problem-solving skills.
  • Strong written and verbal communication skills with the ability to present findings to technical and non-technical audiences.
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field (or equivalent combination of education and experience).

Preferred Qualifications

  • Experience in healthcare or other highly regulated industries.
  • Qualys certifications (Qualys Certified Specialist – Vulnerability Management).
  • Professional certifications such as CISSP, CEH, CompTIA CySA+, GEVA, or GCIH.
  • Experience with vulnerability risk rating frameworks (SSVC, EPSS, KEV catalog).
  • Experience with email authentication protocols (SPF, DKIM, DMARC) and email gateway administration.
  • Experience driving vulnerability management maturity and automation initiatives.

Leadership & Behavioral Competencies

  • Strong ownership mindset with attention to detail and follow-through.
  • Ability to influence stakeholders and drive remediation outcomes across cross-functional teams.
  • Adaptable to shifting priorities, demands, and timelines through analytical and problem-solving capabilities.
  • Collaborative approach with strong relationship-building skills across technical and operations teams.
  • High integrity, sound judgment, and professional accountability.
  • Proactive threat awareness and continuous learning mindset.

Providence’s vision to create ‘Health for a Better World’ aids us to provide a fair and equitable workplace for all in our employment, whether temporary, part-time or full time, and to promote individuality and diversity of thought and background, and acknowledge its role in the organization’s success. This makes us committed towards equal employment opportunities, regardless of race, religion or belief, color, ancestry, disability, marital status, gender, sexual orientation, age, nationality, ethnic origin, pregnancy, or related needs, mental or sensory disability, HIV Status, or any other category protected by applicable law. In furtherance to our mission in building a more inclusive and equitable environment, we shall, from time to time, undertake programs to assist, uplift and empower underrepresented groups including but not limited to Women, PWD (Persons with Disabilities), LGTBQ+ (Lesbian, Gay, Transgender, Bisexual or Queer), Veterans and others. We strive to address all forms of discrimination or harassment and provide a safe and confidential process to report any misconduct.

Contact our Integrity hotline also, read our Code of Conduct.