Sr Cyber Security Architect role in a global organization focusing on secure hybrid connectivity using Zscaler Internet Access and Zscaler Private Access for enterprise environments. The architect designs scalable security architectures drives secure adoption of cloud services aligns zero trust principles with business objectives and ensures robust protection of users and applications across a globally distributed workforce.
Responsibilities
- Design end to end cyber security architectures that integrate Zscaler Internet Access and Zscaler Private Access to protect users and applications across hybrid work environments while meeting enterprise scale performance and reliability needs.
- Develop comprehensive zero trust network access strategies that reduce attack surface and unauthorized lateral movement while enabling secure access to internal applications from any location on day shift schedules.
- Evaluate existing security controls and network topologies to identify gaps and optimization opportunities then recommend Zscaler driven solutions that strengthen threat prevention and data protection capabilities.
- Configure Zscaler Internet Access policies including web filtering cloud firewall security controls and advanced threat protection to enforce consistent security posture for all endpoints and user groups.
- Design application segmentation and access policies in Zscaler Private Access to provide granular secure connectivity to internal resources while maintaining strong authentication and authorization standards.
- Collaborate closely with network security and cloud platform teams to ensure Zscaler integrations with identity systems endpoint security tools and logging platforms operate smoothly and support business continuity.
- Create detailed architecture diagrams standards and reference implementations that document Zscaler deployment patterns configuration baselines and integration touchpoints for global enterprise use.
- Conduct security risk assessments and threat modeling focused on internet facing traffic and private application access then translate findings into actionable Zscaler policy changes and architectural improvements.
- Work with incident response teams to analyze security events logs and alerts generated through Zscaler platforms then refine detection rules and access policies to reduce recurrence and enhance resilience.
- Drive adoption of secure browsing and secure remote access practices by crafting clear technical guidelines and communicating how Zscaler controls help protect data privacy and business critical operations.
- Perform capacity planning and performance tuning for Zscaler services ensuring that traffic routing authentication flows and policy evaluation deliver consistent user experience without compromising security.
- Engage with project stakeholders to align security architecture decisions with compliance requirements regulatory obligations and organizational risk appetite maximizing positive impact on customers and society.
- Guide automation and infrastructure as code approaches for Zscaler configuration management to increase consistency reduce manual errors and accelerate secure onboarding of new sites and applications.
Qualifications
- Possess extensive hands on experience of twelve to fourteen years in enterprise cyber security architecture with strong delivery record in complex hybrid environments.
- Demonstrate deep expertise in designing deploying and tuning Zscaler Internet Access solutions including policy frameworks logging integration and threat protection capabilities.
- Exhibit advanced proficiency with Zscaler Private Access configuration such as application segments connector deployment and user access workflows in large organizations.
- Show solid understanding of zero trust security principles secure web gateways cloud access security concepts and integration with identity and access management platforms.
- Display practical knowledge of network security fundamentals including routing proxies DNS and firewall concepts ensuring that Zscaler designs align with broader infrastructure constraints.
- Bring experience working in hybrid work models supporting distributed teams with secure remote access while operating primarily in standard day shifts without frequent travel commitments.
- Maintain familiarity with security operations incident response and security monitoring practices to ensure architectures produce actionable visibility and support rapid containment.
Über Cognizant
Cognizant (NASDAQ: CTSH) i ist ein Technologiedienstleister und Entwickler von KI-Lösungen. Wir schlagen die Brücke zwischen KI-Investitionen und echtem unternehmerischem Mehrwert, indem wir ganzheitliche Full-Stack-KI-Lösungen für unsere Kunden entwickeln. Mit unserer fundierten Branchen-, Prozess- und Engineering-Expertise integrieren wir die spezifischen Anforderungen von Unternehmen passgenau in Technologiesysteme. So entfalten wir das menschliche Potenzial, erzielen greifbare Ergebnisse und sichern globalen Unternehmen in einer sich rasant wandelnden Welt den entscheidenden Vorsprung. Erfahren Sie mehr unter cognizant.ai oder @cognizant.
Zusätzliche Informationen zur Beschäftigung
Die Vergütungsinformationen sind zum Zeitpunkt der Veröffentlichung dieser Stellenausschreibung korrekt. Cognizant behält sich das Recht vor, diese Informationen jederzeit unter Beachtung der geltenden gesetzlichen Bestimmungen zu ändern.
Bewerberinnen und Bewerber können verpflichtet sein, an Vorstellungsgesprächen persönlich oder per Videokonferenz teilzunehmen. Darüber hinaus kann es erforderlich sein, bei jedem Gespräch einen gültigen staatlichen Lichtbildausweis vorzulegen.
Cognizant ist ein Arbeitgeber mit Chancengleichheit. Ihre Bewerbung und Kandidatur werden nicht aufgrund von Rasse, Hautfarbe, Geschlecht, Religion, Glaubensbekenntnis, sexueller Orientierung, Geschlechtsidentität, nationaler Herkunft, Behinderung, genetischen Informationen, Schwangerschaft, Veteranenstatus oder sonstiger durch bundes‑, landes‑ oder kommunalrechtliche Vorschriften geschützter Merkmale berücksichtigt oder abgelehnt.







