HealthEquity, Inc.

Cyber Engineer

HealthEquity, Inc.$96K — $123K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in network security engineering or related field.
  • Hands-on expertise with Palo Alto Networks next-generation firewalls and Azure security services.
  • Deep understanding of networking fundamentals: TCP/IP, routing, DNS, VPN, and firewall policy designs.
  • Experience with AI-based coding services to enhance automation.
  • Strong communication skills to bridge technical and non-technical discussions.

Responsibilities

  • Deploy and manage network security solutions across Azure and Palo Alto environments.
  • Automate processes through scripting and playbooks.
  • Monitor and tune firewall policies and configurations.
  • Manage Azure network security controls effectively.
  • Configure and maintain remote access and cloud security solutions.
  • Collaborate with Cyber Defense Operations on network incidents.
  • Document procedures and create runbooks for network defense.

Benefits

  • Medical, dental, and vision coverage.
  • HSA contribution and matching program.
  • Uncapped paid time off policy.
  • Paid parental leave.
  • 401(k) matching contributions.
  • Ongoing education and tuition assistance.
  • Wellness program with incentives.
Full Job Description
Overview

How you can make a difference  

HealthEquity holds the health and financial data of millions of members, and that data moves across the network this role helps defend. As a Cyber Engineer on the Network Defense team, you protect the firewalls, cloud connections, and traffic paths that keep member accounts, benefit transactions, and employer plan data secure from compromise.

This role is built around automation, not manual toil. You will design scripts, playbooks, and integrations across Azure and Palo Alto Networks that let the team detect and respond to threats faster and more consistently than manual review alone allows, and you will help the team adopt AI-assisted management as those capabilities mature on both platforms. The reliability of the network you build and defend is part of how HealthEquity keeps the trust of the members, employers, and health plans it serves.

 

 

What you’ll be doing 

  • Deploy, manage, and maintain network security solutions across Azure and Palo Alto Networks environments, including Azure Firewalls, NSGs, Palo Alto next-generation firewalls, Strata Cloud Manager, and cloud network security controls.
  • Build automation — scripts, Infrastructure as Code, and SOAR playbooks (for example, TORQ or Claude Code built workflows) — that reduces manual effort in management and delivery of the security stack.
  • Monitor firewall and network telemetry, tune policies and configurations, and work to reduce friction and gaps across the environment.
  • Manage Azure network security controls — virtual networks, network security groups, Azure Firewall, and related services.
  • Configure and maintain GlobalProtect and Prisma Access where applicable, extending network defense into cloud and remote environments.
  • Partner with the Cyber Defense Operations teams to investigate, contain, and remediate network-based incidents.
  • Write and maintain runbooks, documentation, and standard operating procedures for the network defense function.
  • Support control testing and evidence requests tied to HIPAA, SOC 2, and other frameworks relevant to HealthEquity's regulated environment.
  • Look for opportunities to apply automation and AI to close security gaps and scale network defense as HealthEquity grows.
  • Participate in an on-call rotation and respond to network security incidents outside standard business hours when needed.

 

 

What you will need to be successful

This role requires direct, hands-on experience with both Azure and Palo Alto Networks. 

  • Production experience configuring, managing, and troubleshooting Palo Alto Networks next-generation firewalls, Panorama/Strata Cloud Manager, or Global Protect/Prisma Access.
  • Production experience with Azure networking and security services, such as virtual networks, network security groups, and Azure Firewall.
  • 5+ years of experience in network security engineering, network defense, or a closely related discipline.
  • Advanced knowledge of core networking concepts: TCP/IP, routing, DNS, VPN, and firewall policy and segmentation design.
  • Experience using AI coding services (Claude Code) to design, build, and deliver automation such as scripts, playbooks, and orchestration mechanisms.
  • Clear communication skills, with the ability to explain technical risk to both technical and non-technical audiences.
  • Willingness to participate in an on-call rotation.

Preferred

  • Current Palo Alto Networks certification relevant to network security or security automation
  • Current Microsoft Azure certification in networking or security
  • Experience in healthcare, financial services, or another highly regulated industry.
  • Working knowledge of HIPAA, SOC 2, or NIST Cybersecurity Framework controls.
  • Experience integrating Network Security Monitoring detection tools into security operations.
  • Experience with Strata Cloud Manager, Prisma Access.

 

#LI-Remote

This is a remote position.

Salary Range$96500.00 To $123000.00 / year Benefits & Perks

The actual compensation offer is determined based on job-related knowledge, education, skills, experience, and work location. This position will be eligible for performance-based incentives as part of the total compensation package, in addition to a full range of benefits including:  

  • Medical, dental, and vision 
  • HSA contribution and match 
  • Dependent care FSA match 
  • Uncapped paid time off 
  • Paid parental leave 
  • 401(k) match 
  • Personal and healthcare financial literacy programs 
  • Ongoing education & tuition assistance 
  • Gym and fitness reimbursement 
  • Wellness program incentives 

 

Onboarding & Travel

This is a remote role, with an in-person onboarding training component. New team members must participate in Trailhead, HealthEquity’s immersive onboarding experience Trailhead is designed to foster meaningful connections, support your integration into the organization, and equip you with a strong understanding of our business. Trailhead participation is a key expectation of this role. Trailhead is held onsite at our headquarters once per quarter. HealthEquity covers all required travel and accommodations. 

 

This role may begin with a virtual, self-paced onboarding experience, followed by a mandatory onsite Trailhead session at a later date.

 

About HealthEquity, Inc.

HealthEquity, Inc. is a leading provider of consumer-directed benefits solutions. The company's platform provides a range of tax-advantaged financial solutions for consumers to save for their healthcare and other financial goals. HealthEquity's solutions include health savings accounts (HSAs), flexible spending accounts (FSAs), health reimbursement arrangements (HRAs), and other financial wellness products. The company serves more than 12 million accounts and has over $12 billion in assets under management. HealthEquity was founded in 2002 and is headquartered in Draper, Utah.
Learn more about HealthEquity, Inc.
Size
3,688 employees
Market Cap
$5.1 billion
Industry
Net Income
$3.2 million
Founded
2002
5 Year Trend
+33.5%
Revenue
$746.6 million
NASDAQ

Similar Jobs

More Jobs at HealthEquity, Inc.

More Information Technology Jobs

Find similar Cyber Engineer jobs: