Senior Information Security Engineer Consultant
UnitedHealth Group
UnitedHealth Group
Join Optum, a global healthcare technology leader dedicated to improving health outcomes for millions. This role offers a unique opportunity to leverage advanced technology to connect people with the care and resources they need. Be part of an inclusive culture, collaborate with talented peers, and access comprehensive benefits and career development. Advance health optimization on a global scale with us.
This Senior Information Security Engineer position focuses on providing expert operational support for critical cloud security technologies including Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Data Loss Prevention (DLP) policies, with a strong emphasis on the Microsoft security stack (e.g., O365). Operating within a demanding 24/7/365 production environment, you will safeguard the security, availability, and integrity of enterprise systems and sensitive data. This role is instrumental in ensuring the robust operation of cloud security platforms by fostering close collaboration with platform owners and engineering leads.
Key responsibilities include providing comprehensive subject matter expertise for the day-to-day administration, policy implementation, monitoring, and troubleshooting of global web, cloud, and data protection controls. You will support secure web gateway services, traffic steering, PAC file configurations, application-specific security policies, and cloud access enforcement mechanisms. This role serves as a Subject Matter Expert (SME) for operational readiness, supporting new cloud tenant onboarding, proxy and SWG functionality, and enabling zero-trust access patterns. You will also provide advanced operational support for Zscaler services (ZIA, ZPA, ZDX), assisting with configuration validation, policy troubleshooting, performance analysis, and user experience monitoring.
A significant focus will be on high-volume triage and incident analysis, systematically monitoring security and network alerts, assessing impact, and performing detailed root cause analysis. You will play a crucial role in incident response, including investigation, documentation, escalation, and timely resolution of security events. This involves participating in and facilitating war room engagements, collaborating across various technical teams to diagnose and resolve complex issues. Additionally, you will evaluate existing security controls, recommend enhancements, and support vulnerability identification efforts, continuously researching emerging threats to proactively mitigate risks and improve operational effectiveness.
We are seeking a seasoned professional with a Bachelor's degree in Information Security, Computer Science, Information Systems, or a related technical field, or equivalent professional experience. A minimum of 9 years of experience in supporting enterprise-scale information security operations within high-availability, 24/7/365 environments is essential, with a proven track record in sustained alert triage, incident investigation, and root cause analysis.
Demonstrated experience supporting Secure Web Gateway (SWG) and proxy environments, including policy enforcement validation and troubleshooting, is required. Hands-on experience with PAC file logic, traffic steering, and application-based security policies, along with practical experience supporting Zscaler cloud security services (ZIA, ZDX, ZPA) for operational triage, policy validation, and incident response, is critical. Solid working knowledge of networking and web technologies (HTTP/S, DNS, TLS) is necessary for analyzing access issues during incidents.
This role demands strong analytical skills for high-complexity incident analysis, correlating telemetry across various tools, determining severity, and driving coordinated resolution efforts. You must be adept at operating effectively in cross-functional incident response models, collaborating with diverse technical teams. The ability and willingness to participate in on-call rotations and support incident response outside standard business hours are essential. We are looking for individuals with proven senior-level judgment, decision-making capabilities during incidents, and excellent written and verbal communication skills for documentation and reporting.
UnitedHealth
Information Technology & Services