Practice - CIS - Cloud, Infrastructure, and Security Services
About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Security Services Practice (CIS), is all about embracing digital transformation by driving core modernization holistically across layers. We help customers transform infrastructure and workplace to meet the rapidly evolving needs of the digital era. Our holistic approach delivers key results for our customers by achieving cloud driven modernization and workplace and operational transformation to run the business in a secure environment.
Job Summary
We are seeking an experienced Zero Trust Security Architect to lead the design, implementation, and optimization of secure connectivity solutions across global cloud and hybrid environments. This role will focus on Zero Trust Network Access (ZTNA), Zscaler, cloud VPN architectures, Secure Access Service Edge (SASE), and Security Service Edge (SSE) technologies to enable secure business operations and support merger and acquisition integration initiatives. The ideal candidate will possess deep expertise in cloud security, identity-aware networking, secure access architectures, and enterprise security transformation. This position requires strong architecture leadership, stakeholder engagement, and hands-on experience designing scalable and resilient Zero Trust environments.
In this role, you will:
· Design and maintain enterprise Zero Trust security architectures spanning identity, endpoints, applications, networks, cloud platforms, and data access pathways.
· Architect secure connectivity solutions including cloud VPN, site-to-site VPN, remote access, ZTNA, and hybrid-cloud access models.
· Design, implement, and optimize Zscaler capabilities including Secure Internet Access (ZIA), Private Access (ZPA), DLP, traffic inspection, threat prevention, and policy enforcement.
· Define identity-aware access models based on least-privilege principles and Zero Trust security frameworks.
· Lead secure integration and connectivity planning for new business platforms and enterprise technology initiatives.
· Architect network, application, and security integration strategies for mergers and acquisitions, including discovery, segmentation, access controls, migration planning, and target-state architecture development.
· Conduct threat modeling, security risk assessments, and architecture reviews focused on access flows, trust boundaries, and data protection requirements.
· Develop architecture standards, reference architectures, design patterns, implementation roadmaps, and reusable security artifacts.
· Collaborate with cloud engineering, infrastructure, security, and application teams to embed security controls and governance requirements into technology solutions.
· Evaluate and recommend Zscaler, SASE, SSE, VPN, and Zero Trust technologies based on business, security, scalability, and operational requirements.
· Provide architecture oversight, design reviews, and implementation guidance to ensure solutions align with enterprise security standards.
· Define and monitor security metrics, effectiveness measurements, and continuous improvement initiatives to strengthen enterprise security posture.
What you need to have to be considered
· 8+ years of experience in Security Architecture, Network Security, Cloud Security, or Enterprise Security Engineering roles.
· Strong expertise in Zero Trust Architecture, Zero Trust Network Access (ZTNA), Identity-Aware Access Controls, and Secure Connectivity solutions.
· Extensive hands-on experience with Zscaler technologies including ZIA, ZPA, DLP, policy management, and cloud-delivered security services.
· Experience designing enterprise cloud VPN, remote access, hybrid-cloud networking, and secure connectivity architectures.
· Strong understanding of SASE, SSE, cloud-native security architectures, and modern network security principles.
· Experience working with AWS, Azure, or multi-cloud environments, including cloud security, networking, identity, and connectivity services.
· Strong knowledge of enterprise identity systems, federation, MFA, RBAC, and least-privilege access models.
· Experience supporting M&A security integration initiatives and enterprise-scale network transformation projects.
· Deep understanding of security frameworks and compliance requirements including PCI-DSS, SOX, GDPR, and Zero Trust best practices.
· Strong architecture documentation, stakeholder management, communication, and technical leadership skills.
· Relevant certifications such as CISSP, Zscaler Certifications, AWS Security Specialty, Azure Security Engineer, CCSP, or equivalent are highly desirable.
#LI-EF1
#CB
#Ind123
Applications will be accepted until 23 Oct 2026.
Salary and Other Compensation:
The annual salary for this position is between $[134,000 - 154,500] depending on experience and other qualifications of the successful candidate.
This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
· Medical/Dental/Vision/Life Insurance
· Paid holidays plus Paid Time Off
· 401(k) plan and contributions
· Long-term/Short-term Disability
· Paid Parental Leave
· Employee Stock Purchase Plan
Sobre a Cognizant
Cognizant (NASDAQ: CTSH) é uma construtora de IA e fornecedora de serviços de tecnologia, criando a ponte entre o investimento em IA e o valor para as empresas por meio do desenvolvimento de soluções de IA completas para nossos clientes. Nossa profunda experiência em setores, processos e engenharia nos permite incorporar o contexto único de cada organização em sistemas tecnológicos que potencializam a capacidade humana, geram resultados tangíveis e mantêm empresas globais à frente em um mundo em rápida transformação. Saiba mais em cognizant.ai ou @cognizant.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Informações adicionais de emprego
Os candidatos podem ser obrigados a comparecer a entrevistas presenciais ou por videoconferência. Além disso, os candidatos podem ser obrigados a apresentar seu documento de identificação emitido pelo estado ou governo atual durante cada entrevista.
Embora nosso sistema permita a candidatura em todos os idiomas, o(s) idioma(s) e o(s) nível(is) de proficiência exigidos para o trabalho variam. No entanto, é necessário um nível básico de inglês para fins de comunicação em toda a empresa.
A Cognizant é uma empregadora que investe em equidade. Sua candidatura não será pautada em raça, cor, gênero, sexualidade, credo, origem, deficiência, gravidez ou qualquer outra característica protegida pelas leis brasileiras.
Se você tem uma deficiência que requer adaptações razoáveis para procurar uma vaga de emprego ou enviar uma candidatura, envie um e-mail para [email protected] com sua solicitação e informações de contato.











