跳到主要內容

Senior CyberSecurity Architect

00070380751

What makes Cognizant a unique place to work? The combination of rapid growth and an international and innovative environment! This is creating many opportunities for people like YOU — people with an entrepreneurial spirit who want to make a difference in this world.

At Cognizant, together with your colleagues from all around the world, you will collaborate on creating solutions for the world's leading companies and help them become more flexible, more innovative, and successful. Moreover, this is your chance to be part of the success story.

Position Summary:
This Position requires a highly skilled Senior Cybersecurity Architect – Cloud and Network Security with deep expertise in Firewalls, VPN, Cisco ISE, Web Access Firewalls, Cloud Security, SIEM, EndPoint Protection, Web Proxy, IDS/IPS, Threat Protection, Sandbox, Vulnerability Management, SSSO/MFA. The candidate will manage design, implement, operations and maintain enterprise‑grade network and cloud security solutions team, ensuring secure access, regulatory compliance, and scalable governance across the organization. This role requires hands-on engineering capability, strong architectural design thinking, and experience leading network security modernization initiatives.

Key responsibilities:

Network Security – Palo Alto Firewall, Global Protect VPN, Cisco ISE, Proxy and WAF
•Architect, implement, and administer Palo Alto firewalls for network security lifecycle management, regularly review and update firewall policies and rules to stay ahead of new threats and vulnerabilities.
•Configuration and management of Remote Access VPN to provide secure remote access to the users, enforcing security policies and Zero Trust
•Lead the resolution of complex or recurring firewall issues, manage escalations to maintain operational stability, and ensure root cause analyses (RCA) are conducted for major incidents, followed by the implementation of corrective and preventive actions
•Ensure all changes are thoroughly backed up, tested, verified, and audited, with regular recertification processes in place to uphold compliance standards.
•Oversee the regular removal of obsolete, redundant, and unused rules to enhance security posture while optimizing system performance.
•Provide strategic recommendations to strengthen firewall policies, improve the quality of rule sets, and ensure long-term operational excellence.
•Supervise the operation of Cisco ISE identity and AAA services, including managing lifecycle workflows and integrating with directory and single sign-on (SSO) solutions.
•Define and enforce access controls through AAA protocols and robust RBAC/authorization policies, ensuring alignment with organizational security and compliance objectives.
•Monitor and track AAA events, maintain comprehensive audit logs, and deliver compliance and forensic reports while troubleshooting incidents, conducting RCAs, optimizing policies/configurations, and maintaining runbooks and knowledge databases with actionable recommendations.
•Oversee administration, operation, and continuous monitoring of the Web Application Firewall (WAF) to safeguard applications against layer-7 attacks and maintain service availability.
•Direct the analysis of security logs and the tuning of WAF policies, rules, and detection mechanisms to effectively identify threats, minimize false positives, and align with the organization's risk profile.
•Guide the implementation and ongoing maintenance of custom WAF rules, security models, and controls, including rate limiting and bot mitigation strategies, to prevent abuse and ensure regulatory compliance.

Identity Access Management (IAM) – Microsoft Entra ID
•Implement and administer Microsoft Entra ID to verify access for secure authentication, authorization, and SSO across enterprise applications. Troubleshoot access and authentication issues.
•Implement MFA, risk-based authentication, OAuth2, OpenID Connect, and SAML integrations.
•Work with application teams on SSO onboarding, session management, and federation protocols.
•Track authentication events, logs, and failures for security and operational visibility.

Vulnerability Management – CrowdStrike
•Oversee and manage a centralized vulnerability management program across all IT environments to ensure consistent protection and risk reduction.
•Direct the scanning process, validate vulnerability results, and lead the prioritization of remediation efforts based on risk level and business impact.
•Integrate threat intelligence with vulnerability findings to concentrate remediation on actively exploitable threats.
•Ensure comprehensive asset inventory and coverage, and regularly report on security posture, emerging trends, and progress to governance forums.
•Coordinate rapid response to zero-day vulnerabilities, maintain up-to-date documentation and the Known Error Database (KEDB), and drive ongoing process improvements.
SIEM and EndPoint Security - CrowdStrike NGSIEM and CrowdStrike Falcon
•Oversee the continuous review of correlated events and alerts using NGSIEM dashboards, ensuring that pre-approved SOAR playbooks are triggered and executed for relevant alert types.
•Direct the automated enrichment and evidence collection processes through effective NGSIEM/SOAR integrations to support rapid and accurate incident response.
•Supervise the health and availability of the SIEM platform, monitor log ingestion status, and maintain data pipeline integrity to ensure reliable security operations.
•Manage continuous tracking of endpoint activity using EDR telemetry, focusing on early identification of suspicious behaviors and the mitigation of advanced threats.

Mandatory Skills:
•Cybersecurity fundamentals (threats, controls, CIA triad, MITRE ATT&CK basics)
•Security governance, risk & compliance (policies, risk register, audits)
•Frameworks & standards: ISO 27001/27002, NIST CSF/800-53, CIS Controls
•Secure delivery/project management (Agile/Waterfall, scope, schedule, budget, RAID)
•Stakeholder & executive communication (status, escalations, governance forums)
•Incident & vulnerability management coordination (triage, remediation tracking, RCA)
•Security operations awareness (SOC processes, SIEM/EDR concepts, logging)
•Identity & access management basics (RBAC, MFA, SSO, PAM concepts)
•Cloud & network security (Firewalls, Proxy, ISE, WAF AWS/Azure basics, segmentation)
•Metrics & reporting (KPI/KRI, service performance, security posture dashboards)
•Change management & ITSM alignment (ITIL, CAB, problem management).

Duties and Responsibilities:
•Own BAU operations delivery for network and cloud security services, ensuring SLA/SLO adherence, availability, and capacity.
•Lead major incident management (triage, escalation, stakeholder communications, post-incident RCA and action tracking).
•Operate Palo Alto controls across network and Azure (NGFW, Panorama/Strata Cloud Manager, WildFire/Threat Prevention, URL Filtering, GlobalProtect/Prisma Access, and segmentation).
•Run security change/release governance (risk assessment, approvals/CAB, testing, rollout/rollback, validation).
•Oversee monitoring and observability (log/metric coverage, alert tuning, dashboards, continuous reduction of noise).
•Manage vulnerability and configuration hygiene (prioritization, remediation coordination, verification, periodic recertification).
•Operate core controls across network and cloud (firewall/WAF, IDS/IPS, segmentation, ZTNA/SASE,).
•Ensure compliance and audit readiness (evidence, control attestations, exception handling, policy adherence).
•Maintain runbooks/SOPs, service documentation, and knowledge base (KEDB), enabling efficient support and handovers.
•Drive continual service improvement and automation (IaC, CI/CD, policy-as-code) to improve reliability and reduce toil.

Qualifications & Certifications (Optional):
•Bachelor’s Degree: Computer Science, Cybersecurity or Information Technology
•PCNSE or CCNP/CCIE Security
•CISSP/CISM Certification
•Experience: 10+ years of experience in cybersecurity, with at least 3+ years in a supervisory or project leadership capacity

Salary Range: >$100,000
Date of Posting: 28-Aug-26

Next Steps: If you feel this opportunity suits you, or Cognizant is the type of organization you would like to join, we want to have a conversation with you! Please apply directly with us.
For a complete list of open opportunities with Cognizant, visit http://www.cognizant.com/careers. Cognizant is committed to providing Equal Employment Opportunities. Successful candidates will be required to undergo a background check.


关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。

补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。

帮助您蓬勃发展与成长的福利

我们的福利计划以您为中心打造——帮助您享受充实、平衡且健康的生活。
有葉子的植物的藍色線條圖

财务健康

我们会定期审查市场数据,确保薪酬体现您所带来的价值。您的福利不仅限于薪资,还可能包括退休计划、财务教育等。

Stay Healthy Midnight Blue RGB

身心健康

我们通过带薪休假、在条件允许下的灵活工作安排、医疗保障计划、心理咨询、心理健康盟友计划等,赋能您将身心健康放在首位。

Build The Career You Want Midnight Blue RGB

您的职业发展,由您做主

在 Cognizant 提供的 35 万多个岗位中,您将有机会探索新的技术、行业和工作地点,并打造推动职业发展的关键技能。

Making A Meaningful Impact Midnight Blue RGB

现实世界的影响力

想想您所依赖的那些知名品牌。很可能,他们也依赖我们来帮助强化其业务。在这里,您将把大胆的想法转化为改善全球生活的解决方案。

还没有找到合适的机会吗?

获取为您量身定制的最新职位机会、招聘活动和公司新闻!

掌握最新动态