Search by job, company or skills

Security Architect

Early Applicant
  • Posted 19 hours ago
  • Be among the first 10 applicants

Job Description

Project Role : Security Architect

Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.

Must have skills : Network Security Operations

Good to have skills : NA

Minimum 3 Year(s) Of Experience Is Required

Educational Qualification : 15 years full time education

Summary:

We are seeking a Network Security Engineer with 6 years of experience across enterprise network security platforms and security automation. The role requires hands-on expertise with Zscaler ZIA/ZPA, Palo Alto NGFW, Prisma SASE, and Cisco ISE alongside proven ability to automate operations through scripting, API integration, and infrastructure-as-code. The candidate will reduce manual toil, accelerate policy deployment, and enforce configuration consistency at scale across hybrid environments.

Roles & Responsibilities:

  • Administer and operate Zscaler ZIA and ZPA manage SSL inspection, URL/content filtering, DLP policies, app connectors, and ZTNA access policies integrate with IdP via SAML/SCIM.
  • Deploy, manage, and tune Palo Alto NGFW (PA-Series / VM-Series) and Panorama maintain App-ID, User-ID, Security Profiles (Threat Prevention, WildFire, URL Filtering), HA configurations, and PAN-OS lifecycle management.
  • Operate Prisma SASE manage SD-WAN policy, SSE controls, remote access, and unified security policy enforcement across branch, mobile, and cloud workloads.
  • Administer Cisco ISE for NAC manage 802.1X wired/wireless authentication, MAB, guest access, TrustSec SGT tagging, posture assessment, and RADIUS/TACACS+ policies integrate with Active Directory and MFA providers.
  • Build and maintain automation using Python, Ansible, and Terraform automate firewall rule deployment, ISE policy provisioning, Zscaler configuration management, and compliance enforcement via platform REST APIs (PAN-OS API, Zscaler API, Cisco ISE ERS API).
  • Develop and maintain CI/CD pipeline integrations for network security policy changes enforce peer review, automated validation, and audit-ready change tracking using Git-based workflows.
  • Automate operational tasks including configuration backups, drift detection, policy compliance reporting, and alert-driven remediation using AWS Lambda, Ansible playbooks, or equivalent tooling.
  • Investigate and resolve escalated L2/L3 incidents — authentication failures, policy mismatches, tunnel failures, and traffic anomalies — within agreed SLAs.
  • Perform root cause analysis for major incidents document findings, coordinate remediation across network, cloud, and application teams, and track corrective actions to closure.
  • Produce operational reports covering incident trends, automation coverage, policy changes, posture metrics, and SLA performance for management and audit audiences.

Professional & Technical Skills:

  • Zscaler ZIA and ZPA SSL inspection, DLP, URL filtering, app connector deployment, ZTNA policy, and IdP integration (Azure AD / Okta).
  • Palo Alto NGFW & Panorama App-ID, User-ID, Security Profiles, WildFire, HA, and PAN-OS upgrades.
  • Prisma SASE SD-WAN, SSE, remote access policy, and unified security policy management.
  • Cisco ISE 802.1X NAC, MAB, TrustSec, posture, RADIUS/TACACS+, and AD integration.
  • Automation & scripting Python and Ansible for network security operations REST API integration with PAN-OS, Zscaler, and Cisco ISE APIs.
  • Infrastructure-as-Code Terraform for network security resource management and policy-as-code enforcement.
  • CI/CD pipeline experience Git-based workflows (GitHub Actions or GitLab CI) for policy change management and automated validation.
  • Network fundamentals TCP/IP, DNS, BGP/OSPF, IPsec/SSL VPN, SD-WAN, and traffic analysis.
  • Incident and problem management ITIL-aligned processes, ITSM tooling (ServiceNow or equivalent), RCA documentation.
  • Preferred Certifications
  • Palo Alto PCNSE (Palo Alto Networks Certified Network Security Engineer)
  • Zscaler ZCCA-IA or ZCCA-PA
  • Prisma SASE Certification (PCSAE)
  • Cisco CCNP Security
  • HashiCorp Terraform Associate
  • ITIL Foundation v4

Additional Information:

  • The candidate should have minimum 3 years of experience in Network Security Operations.
  • This position is based at our Bengaluru office.
  • A 15 years full time education is required.




More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 152534835

Similar Jobs

Bengaluru, India

Skills:

ServicenowOktaCyberarkPythonPowerShellItilSsoAzure AdAws CliAWS IAMPAMManaged Microsoft ADSCIM provisioningAD ConnectorPermission BoundariesMFADelineaSCPsABACSession ManagerAWS Directory ServicesIAM Access AnalyserIAM Identity CenterAWS Systems ManagerrbacBeyondTrust

Bengaluru, India

Skills:

cloud securityPowerShellIncident ResponsePythonBashMDEMDCAzure SentinelKQLSecurity Operationssecurity engineeringcloud-native toolsIT Infra networking

Beware of Scammers

We don’t charge money for job offers