Sr Cyber Security Architect role in a global organization focusing on secure hybrid connectivity using Zscaler Internet Access and Zscaler Private Access for enterprise environments. The architect designs scalable security architectures drives secure adoption of cloud services aligns zero trust principles with business objectives and ensures robust protection of users and applications across a globally distributed workforce.
Responsibilities
- Design end to end cyber security architectures that integrate Zscaler Internet Access and Zscaler Private Access to protect users and applications across hybrid work environments while meeting enterprise scale performance and reliability needs.
- Develop comprehensive zero trust network access strategies that reduce attack surface and unauthorized lateral movement while enabling secure access to internal applications from any location on day shift schedules.
- Evaluate existing security controls and network topologies to identify gaps and optimization opportunities then recommend Zscaler driven solutions that strengthen threat prevention and data protection capabilities.
- Configure Zscaler Internet Access policies including web filtering cloud firewall security controls and advanced threat protection to enforce consistent security posture for all endpoints and user groups.
- Design application segmentation and access policies in Zscaler Private Access to provide granular secure connectivity to internal resources while maintaining strong authentication and authorization standards.
- Collaborate closely with network security and cloud platform teams to ensure Zscaler integrations with identity systems endpoint security tools and logging platforms operate smoothly and support business continuity.
- Create detailed architecture diagrams standards and reference implementations that document Zscaler deployment patterns configuration baselines and integration touchpoints for global enterprise use.
- Conduct security risk assessments and threat modeling focused on internet facing traffic and private application access then translate findings into actionable Zscaler policy changes and architectural improvements.
- Work with incident response teams to analyze security events logs and alerts generated through Zscaler platforms then refine detection rules and access policies to reduce recurrence and enhance resilience.
- Drive adoption of secure browsing and secure remote access practices by crafting clear technical guidelines and communicating how Zscaler controls help protect data privacy and business critical operations.
- Perform capacity planning and performance tuning for Zscaler services ensuring that traffic routing authentication flows and policy evaluation deliver consistent user experience without compromising security.
- Engage with project stakeholders to align security architecture decisions with compliance requirements regulatory obligations and organizational risk appetite maximizing positive impact on customers and society.
- Guide automation and infrastructure as code approaches for Zscaler configuration management to increase consistency reduce manual errors and accelerate secure onboarding of new sites and applications.
Qualifications
- Possess extensive hands on experience of twelve to fourteen years in enterprise cyber security architecture with strong delivery record in complex hybrid environments.
- Demonstrate deep expertise in designing deploying and tuning Zscaler Internet Access solutions including policy frameworks logging integration and threat protection capabilities.
- Exhibit advanced proficiency with Zscaler Private Access configuration such as application segments connector deployment and user access workflows in large organizations.
- Show solid understanding of zero trust security principles secure web gateways cloud access security concepts and integration with identity and access management platforms.
- Display practical knowledge of network security fundamentals including routing proxies DNS and firewall concepts ensuring that Zscaler designs align with broader infrastructure constraints.
- Bring experience working in hybrid work models supporting distributed teams with secure remote access while operating primarily in standard day shifts without frequent travel commitments.
- Maintain familiarity with security operations incident response and security monitoring practices to ensure architectures produce actionable visibility and support rapid containment.
About Cognizant:
Cognizant (Nasdaq: CTSH) is an AI Builder and technology services provider, bridging the gap between AI investment and enterprise value by building full-stack AI solutions for our clients. Our deep industry, process and engineering expertise enables us to build an organization’s unique context into technology systems that amplify human potential, drive tangible outcomes and keep global enterprises ahead in a fast-changing world. See how at cognizant.ai or @cognizant.
Additional employment information
Compensation information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government issued ID during each interview.
Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.












