Back to job search
MC
McKesson CanadaVerified Job Source

Sr. Network Systems Engineer, Firewall

Lead the design, implementation, and governance of secure enterprise network infrastructure across cloud and hybrid environments using Zero Trust principles. Manage and optimize firewall platforms, network segmentation strategies, and advanced threat detection capabilities to ensure a secure and compliant infrastructure.

  • Hybrid
  • Mississauga, ON
  • Posted Aug 19, 2026
  • 1 position

More jobs you can apply to directly

Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.

Job summary

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you. About the Role McKesson is seeking a Senior Network Security Engineer to lead the design, implementation, and governance of secure enterprise network infrastructure across cloud, data center, and hybrid environments. This role will drive the evolution of McKesson’s network security architecture through Zero Trust principles, segmentation strategies, secure access technologies, and advanced threat detection capabilities. The ideal candidate combines strong network engineering expertise with a modern security mindset and the ability to build scalable, resilient, and compliant infrastructure that supports critical business operations. What You'll Do Lead the design and implementation of secure network architectures using Zero Trust principles. Develop and maintain network segmentation and micro-segmentation strategies to reduce attack surface and improve security posture. Perform security architecture reviews and provide technical recommendations for infrastructure modernization initiatives. Manage and optimize Palo Alto firewalls, network security policies, and perimeter defense controls. Support Zscaler, Secure Internet Gateway, web proxy, and HPE EdgeConnect technologies across enterprise environments. Design and support secure remote-access solutions including Zero Trust Network Access (ZTNA), VPN, and Network Access Control (NAC). Monitor and analyze network traffic using IDS/IPS technologies, threat detection platforms, and security analytics tools. Partner with cloud, infrastructure, and platform engineering teams to ensure secure, scalable, and compliant network services. Minimum Requirements 7+ years of progressive experience in network security engineering, cybersecurity engineering, infrastructure engineering, or related technical roles. Bachelor's degree or equivalent combination of education and experience. Hands-on experience designing and supporting enterprise network security architectures. Experience administering enterprise firewall platforms, including Palo Alto Networks. Experience with Zero Trust Architecture, network segmentation, and secure network design. Experience supporting VPN, ZTNA, NAC, or related identity-based network access technologies. Experience with IDS/IPS technologies, network traffic analysis, and security monitoring. Ability to communicate technical concepts and influence security decisions across multiple teams. Preferred Skills Experience with Zscaler, Secure Internet Gateway technologies, and web proxy solutions. Experience supporting HPE Aruba EdgeConnect or SD-WAN environments. Knowledge of micro-segmentation technologies in multi-cloud or hybrid environments. Experience securing cloud networking environments within AWS, Azure, or GCP. Knowledge of infrastructure automation tools such as Terraform, Ansible, or Puppet. Experience with Kubernetes, container security, and modern platform engineering practices. Experience working in healthcare or other highly regulated industries. Security certifications such as CISSP, PCNSE, CCNP Security, CCIE Security, Zscaler certifications, or equivalent. Travel, Work Environment & Physical Requirements Hybrid or remote work arrangement based on business needs. Limited travel may be required for team collaboration, strategic planning sessions, or project implementation activities. Ability to work on a computer for extended periods and participate in virtual or in-person meetings. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $99,100 - $132,100 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson’s (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: careers.mckesson.com. McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson’s full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, please contact us by sending an email to (United States) [email protected] or (Canada) [email protected]. Resumes or CVs submitted to this email box will not be accepted. Join us at McKesson!

What you’ll do

Lead the design, implementation, and governance of secure enterprise network infrastructure across cloud and hybrid environments using Zero Trust principles. Manage and optimize firewall platforms, network segmentation strategies, and advanced threat detection capabilities to ensure a secure and compliant infrastructure.

Requirements

Requires 7+ years of progressive experience in network security or infrastructure engineering and a bachelor's degree or equivalent. Candidates must have hands-on experience with enterprise firewall platforms, Zero Trust architecture, and secure network design.

Benefits

• Competitive compensation package • Annual bonus • Long-term incentive opportunities

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Network security engineering
  • Zero Trust architecture
  • Palo Alto firewalls
  • Network segmentation
  • Micro-segmentation
  • Zscaler
  • VPN
  • ZTNA
  • NAC
  • IDS/IPS
  • Security architecture
  • Threat detection
  • Cloud networking
  • Infrastructure modernization
  • Network traffic analysis
  • Software-Defined Networking Wide Area Network (SD-WAN)
  • Influencing Skills
  • CISCO Certified Network Professional - Security
  • Network Infrastructure
  • Palo Alto Firewalls
  • Container Security
  • Zero Trust Architecture (ZTA)
  • Influencing Without Authority
  • Infrastructure Automation
  • Multi-Cloud
  • Aruba (Network Management Software)
  • Cyber Engineering
  • Puppet (Configuration Management Tool)
  • Business Operations
  • Network Traffic Analysis
  • Threat Detection
  • Project Implementation
  • Resilience
  • Attack Surface Management
  • Enterprise Network Security
  • IT Security Architecture
  • Access Network
  • Amazon Web Services
  • Proxy Servers
  • Microsoft Azure
  • Strategic Planning
  • Cisco Certified Internetwork Expert Security (CCIE Security)
  • Certified Information Systems Security Professional
  • Cloud Infrastructure
  • Communication
  • Firewall
  • Governance
  • Scalability
  • Virtual Private Networks (VPN)
  • Network Security

Job areas

  • Technology
  • Security & Safety
  • Engineering
  • Healthcare
  • Software
  • Network Systems Engineer
  • Cyber Security Engineer
  • Database and Network Professionals Not Elsewhere Classified
  • Information Security Engineers
  • Computer Occupations, All Other

Additional details

Minimum education
Bachelor’s degree
Minimum experience
5+ years
Posting language
English
Working hours
40 hours per week