Country/Region:  IN
Requisition ID:  38395
Work Model: 
Position Type: 
Salary Range: 
Location:  INDIA - BENGALURU - HP

Title:  Network Security-ZTNA

Description: 

Area(s) of responsibility

Skills: Senior Network Security Engineer – ZTNA (Zscaler, Axis/ SSE Focus)

Experience: 6-10 years

Location: Bangalore Preferred/ Hyderabad/ Mumbai/ Pune/ Chennai/ Noida

Key Responsibilities:

  • Translate strategic business objectives into enterprise security architecture and Zero Trust access designs.
  • Develop and support solutions aligned global Zero Trust and Secure Access Service Edge (SASE) strategy.
  • Lead architecture and deployment of enterprise-scale ZTNA solutions across global environments (on-prem, cloud, hybrid).

ZTNA & Zero Trust Responsibilities (Primary Focus)

  • Architect, design, and implement Zero Trust Network Access (ZTNA) solutions using:
    • Zscaler (ZIA, ZPA)
    • Axis Security / Aruba SSE
  • Replace legacy VPN architectures with identity-aware, application-level secure access.
  • Design and enforce least-privilege access models based on:
    • User identity
    • Device posture
    • Application context
  • Integrate ZTNA with:
    • Identity providers (Azure AD, Okta, etc.)
    • Endpoint security tools (EDR/XDR)
    • SIEM/SOAR platforms
  • Drive application segmentation and access policies aligned with Zero Trust principles.
  • Collaborate with application and infrastructure teams to onboard applications into ZTNA platforms.
  • Design secure access for internet-bound (ZIA) and private application access (ZPA/Axis) use cases.
  • Implement policy tuning, traffic steering, and user experience optimization for ZTNA environments.
  • Lead migration programs from VPN → ZTNA, ensuring minimal disruption and improved security posture.

ZTNA / SASE / SSE Expertise (Mandatory)

  • Hands-on experience implementing and managing:
    • Zscaler Internet Access (ZIA)
    • Zscaler Private Access (ZPA)
    • Axis Security / Aruba SSE platform
  • Strong understanding of:
    • Zero Trust Architecture (ZTA)
    • SASE / SSE frameworks
  • Expertise in:
    • Secure web gateway (SWG)
    • Cloud-delivered firewall
    • CASB/DLP integrations
  • Experience in identity integration (Azure AD, SAML, OAuth, MFA enforcement).
  • Strong knowledge of user experience optimization in cloud security platforms.

Network Security & Infrastructure

  • Strong experience in:
    • Firewalls (Fortinet, Palo Alto, Juniper)
    • IDS/IPS, VPN, SIEM, NAC
  • Deep expertise in:
    • Firewall rule design, NAT, routing, application-aware policies)
  • Design and implementation of:
    • WAAP (Web Application & API Protection) solutions