Description:
McKesson is seeking a Senior Network Security Engineer to lead the design, implementation, and governance of secure enterprise network infrastructure across cloud, data center, and hybrid environments. This role will drive the evolution of McKesson’s network security architecture through Zero Trust principles, segmentation strategies, secure access technologies, and advanced threat detection capabilities. The ideal candidate combines strong network engineering expertise with a modern security mindset and the ability to build scalable, resilient, and compliant infrastructure that supports critical business operations.
What You'll Do
- Lead the design and implementation of secure network architectures using Zero Trust principles.
- Develop and maintain network segmentation and micro-segmentation strategies to reduce attack surface and improve security posture.
- Perform security architecture reviews and provide technical recommendations for infrastructure modernization initiatives.
- Manage and optimize Palo Alto firewalls, network security policies, and perimeter defense controls.
- Support Zscaler, Secure Internet Gateway, web proxy, and HPE EdgeConnect technologies across enterprise environments.
- Design and support secure remote-access solutions including Zero Trust Network Access (ZTNA), VPN, and Network Access Control (NAC).
- Monitor and analyze network traffic using IDS/IPS technologies, threat detection platforms, and security analytics tools.
- Partner with cloud, infrastructure, and platform engineering teams to ensure secure, scalable, and compliant network services.
Minimum Requirements
- 7+ years of progressive experience in network security engineering, cybersecurity engineering, infrastructure engineering, or related technical roles.
- Bachelor's degree or equivalent combination of education and experience.
- Hands-on experience designing and supporting enterprise network security architectures.
- Experience administering enterprise firewall platforms, including Palo Alto Networks.
- Experience with Zero Trust Architecture, network segmentation, and secure network design.
- Experience supporting VPN, ZTNA, NAC, or related identity-based network access technologies.
- Experience with IDS/IPS technologies, network traffic analysis, and security monitoring.
- Ability to communicate technical concepts and influence security decisions across multiple teams.