Title: Network Security-ZTNA
Area(s) of responsibility
Skills: Senior Network Security Engineer – ZTNA (Zscaler, Axis/ SSE Focus)
Experience: 6-10 years
Location: Bangalore Preferred/ Hyderabad/ Mumbai/ Pune/ Chennai/ Noida
Key Responsibilities:
- Translate strategic business objectives into enterprise security architecture and Zero Trust access designs.
- Develop and support solutions aligned global Zero Trust and Secure Access Service Edge (SASE) strategy.
- Lead architecture and deployment of enterprise-scale ZTNA solutions across global environments (on-prem, cloud, hybrid).
ZTNA & Zero Trust Responsibilities (Primary Focus)
- Architect, design, and implement Zero Trust Network Access (ZTNA) solutions using:
- Zscaler (ZIA, ZPA)
- Axis Security / Aruba SSE
- Replace legacy VPN architectures with identity-aware, application-level secure access.
- Design and enforce least-privilege access models based on:
- User identity
- Device posture
- Application context
- Integrate ZTNA with:
- Identity providers (Azure AD, Okta, etc.)
- Endpoint security tools (EDR/XDR)
- SIEM/SOAR platforms
- Drive application segmentation and access policies aligned with Zero Trust principles.
- Collaborate with application and infrastructure teams to onboard applications into ZTNA platforms.
- Design secure access for internet-bound (ZIA) and private application access (ZPA/Axis) use cases.
- Implement policy tuning, traffic steering, and user experience optimization for ZTNA environments.
- Lead migration programs from VPN → ZTNA, ensuring minimal disruption and improved security posture.
ZTNA / SASE / SSE Expertise (Mandatory)
- Hands-on experience implementing and managing:
- Zscaler Internet Access (ZIA)
- Zscaler Private Access (ZPA)
- Axis Security / Aruba SSE platform
- Strong understanding of:
- Zero Trust Architecture (ZTA)
- SASE / SSE frameworks
- Expertise in:
- Secure web gateway (SWG)
- Cloud-delivered firewall
- CASB/DLP integrations
- Experience in identity integration (Azure AD, SAML, OAuth, MFA enforcement).
- Strong knowledge of user experience optimization in cloud security platforms.
Network Security & Infrastructure
- Strong experience in:
- Firewalls (Fortinet, Palo Alto, Juniper)
- IDS/IPS, VPN, SIEM, NAC
- Deep expertise in:
- Firewall rule design, NAT, routing, application-aware policies)
- Design and implementation of:
- WAAP (Web Application & API Protection) solutions