Practice - CIS - Cloud, Infrastructure, and Security Services
About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Security Services Practice (CIS), is all about embracing digital transformation by driving core modernization holistically across layers. We help customers transform infrastructure and workplace to meet the rapidly evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving cloud driven modernization and workplace and operational transformation to run the business in a secure environment.
Job Summary
We are seeking an experienced Zero Trust Security Architect to lead the design, implementation, and optimization of secure connectivity solutions across global cloud and hybrid environments. This role will focus on Zero Trust Network Access (ZTNA), Zscaler, cloud VPN architectures, Secure Access Service Edge (SASE), and Security Service Edge (SSE) technologies to enable secure business operations and support merger and acquisition integration initiatives. The ideal candidate will possess deep expertise in cloud security, identity-aware networking, secure access architectures, and enterprise security transformation. This position requires strong architecture leadership, stakeholder engagement, and hands-on experience designing scalable and resilient Zero Trust environments.
In this role, you will:
· Design and maintain enterprise Zero Trust security architectures spanning identity, endpoints, applications, networks, cloud platforms, and data access pathways.
· Architect secure connectivity solutions including cloud VPN, site-to-site VPN, remote access, ZTNA, and hybrid-cloud access models.
· Design, implement, and optimize Zscaler capabilities including Secure Internet Access (ZIA), Private Access (ZPA), DLP, traffic inspection, threat prevention, and policy enforcement.
· Define identity-aware access models based on least-privilege principles and Zero Trust security frameworks.
· Lead secure integration and connectivity planning for new business platforms and enterprise technology initiatives.
· Architect network, application, and security integration strategies for mergers and acquisitions, including discovery, segmentation, access controls, migration planning, and target-state architecture development.
· Conduct threat modeling, security risk assessments, and architecture reviews focused on access flows, trust boundaries, and data protection requirements.
· Develop architecture standards, reference architectures, design patterns, implementation roadmaps, and reusable security artifacts.
· Collaborate with cloud engineering, infrastructure, security, and application teams to embed security controls and governance requirements into technology solutions.
· Evaluate and recommend Zscaler, SASE, SSE, VPN, and Zero Trust technologies based on business, security, scalability, and operational requirements.
· Provide architecture oversight, design reviews, and implementation guidance to ensure solutions align with enterprise security standards.
· Define and monitor security metrics, effectiveness measurements, and continuous improvement initiatives to strengthen enterprise security posture.
What you need to have to be considered
· 8+ years of experience in Security Architecture, Network Security, Cloud Security, or Enterprise Security Engineering roles.
· Strong expertise in Zero Trust Architecture, Zero Trust Network Access (ZTNA), Identity-Aware Access Controls, and Secure Connectivity solutions.
· Extensive hands-on experience with Zscaler technologies including ZIA, ZPA, DLP, policy management, and cloud-delivered security services.
· Experience designing enterprise cloud VPN, remote access, hybrid-cloud networking, and secure connectivity architectures.
· Strong understanding of SASE, SSE, cloud-native security architectures, and modern network security principles.
· Experience working with AWS, Azure, or multi-cloud environments, including cloud security, networking, identity, and connectivity services.
· Strong knowledge of enterprise identity systems, federation, MFA, RBAC, and least-privilege access models.
· Experience supporting M&A security integration initiatives and enterprise-scale network transformation projects.
· Deep understanding of security frameworks and compliance requirements including PCI-DSS, SOX, GDPR, and Zero Trust best practices.
· Strong architecture documentation, stakeholder management, communication, and technical leadership skills.
· Relevant certifications such as CISSP, Zscaler Certifications, AWS Security Specialty, Azure Security Engineer, CCSP, or equivalent are highly desirable.
#LI-EF1
#CB
#Ind123
Applications will be accepted until 23 Oct 2026.
Salary and Other Compensation:
The annual salary for this position is between $[134,000 - 154,500] depending on experience and other qualifications of the successful candidate.
This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
· Medical/Dental/Vision/Life Insurance
· Paid holidays plus Paid Time Off
· 401(k) plan and contributions
· Long-term/Short-term Disability
· Paid Parental Leave
· Employee Stock Purchase Plan
À savoir avant de postuler
- Autorisation de travail: Cognizant ne prendra en considération que les candidats à ce poste qui sont légalement autorisés à travailler au Canada sans avoir besoin d'un parrainage de l'employeur, aujourd'hui ou à l'avenir.
- Mesures d’adaptation: Si vous avez un handicap qui nécessite des mesures d’adaptation raisonnable pour effectuer une recherche d’emploi ou poser une candidature, veuillez envoyer un courriel à [email protected] avec votre demande et vos coordonnées.
- L’IA dans notre processus de recrutement: Nous utilisons des outils d'intelligence artificielle (IA) pour trier et évaluer les candidatures efficacement. Notre équipe examine ensuite les candidatures et décide qui passe à l’étape suivante.
- Poste à pourvoir: Sauf indication contraire, ce poste est actuellement vacant et nous cherchons à le pourvoir.
- Exigences linguistiques: Nous demandons à tous les candidats de posséder une connaissance de base de l’anglais afin de faciliter les communications internes. Pour les postes au Québec, la capacité à communiquer efficacement en anglais est requise car vous fournirez des services à et collaborerez avec des parties prenantes anglophones situées hors de la province.
- Inclusion: Cognizant est un employeur souscrivant au principe de l’égalité d’accès à l’emploi. Votre candidature et votre dossier ne seront pas examinés en fonction de la race, de la couleur, du sexe, de la religion, des croyances, de l'orientation sexuelle, de l'identité de genre, de l'origine nationale, du handicap, des renseignements génétiques, de la grossesse, du statut d'ancien combattant ou de toute autre caractéristique protégée par les lois fédérales, provinciales ou locales.
À propos de Cognizant
Cognizant (NASDAQ: CTSH) est un AI Builder et une entreprise de services numériques (ESN) élaborant des solutions complètes d’IA maximisant les investissements pour des résultats concrets. Sa profonde expertise des métiers, des processus et des technologies lui permet d’intégrer dans les systèmes technologiques le contexte unique de chaque organisation de l’ingénierie à la production à l’échelle. Son objectif: améliorer l’efficacité des équipes, créer de la valeur et permettre aux grandes entreprises de rester performantes dans un monde qui évolue rapidement. Pour en savoir plus: cognizant.ai ou @cognizant.











