07 Aug
|
VARITE
|
Bengaluru
Company Name: VARITE India Private Limited
About The Client:
Client purpose is to be the “Driver in Driverless Car” for Global Enterprises by applying next-generation design, architecture and engineering services, to deliver scalable and sustainable software and technology solutions. Customer centricity is foundational to Client, and is reflected in the Client’Front2BackTM Transformation approach. Front2BackTM uses the exponential power of cloud and cognitive to provide hyper-personalized (C=X2C2TM=1) digital experience to clients and their end customers. Client’ Service Transformation approach helps ‘shrink the core’ through the application of digital technologies across legacy environments within an enterprise, enabling businesses to stay ahead in a changing world. Client’ core reference architectures and tools, speed and innovation with domain expertise and specialization , combined with an integrated sustainability and purpose-led approach across its operations and solutions are key to building strong relationships with marquee clients.
Essential Job Functions:
- Translate strategic business objectives into enterprise security architecture and Zero Trust access designs.
- Develop and support solutions aligned with HPE’s global Zero Trust and Secure Access Service Edge (SASE) strategy.
- Drive multi-year roadmap for secure remote access, application access transformation, and perimeter-less security architecture.
- Lead architecture and deployment of enterprise-scale ZTNA solutions across global environments (on-prem, cloud, hybrid).
ZTNA & Zero Trust Responsibilities (Primary Focus)
- Architect, design, and implement Zero Trust Network Access (ZTNA) solutions using:
- Zscaler (ZIA, ZPA)
- Axis Security / HPE Aruba SSE
- Replace legacy VPN architectures with identity-aware, application-level secure access.
- Design and enforce least-privilege access models based on:
- User identity
- Device posture
- Application context
- Integrate ZTNA with:
- Identity providers (Azure AD, Okta, etc.)
- Endpoint security tools (EDR/XDR)
- SIEM/SOAR platforms
- Enable secure access for:
- Remote workforce
- Third-party vendors
- Privileged users
- Drive application segmentation and access policies aligned with Zero Trust principles.
- Collaborate with application and infrastructure teams to onboard applications into ZTNA platforms.
- Design secure access for internet-bound (ZIA) and private application access (ZPA/Axis) use cases.
- Implement policy tuning, traffic steering, and user experience optimization for ZTNA environments.
- Lead migration programs from VPN → ZTNA, ensuring minimal disruption and improved security posture.
Core Network Security Responsibilities
- Participate in architecture reviews ensuring alignment with enterprise security standards.
- Design and secure data center, campus, cloud, and edge environments.
- Provide risk reporting, telemetry analysis, and security posture visibility across network and ZTNA platforms.
- Conduct and support security audits and compliance initiatives.
- Stay updated with emerging threats and continuously improve security frameworks.
- Manage and optimize SIEM systems for enhanced visibility and threat detection.
- Collaborate with global cybersecurity, infrastructure, and business stakeholders.
Qualifications:
Technical Qualifications
- 10+ years of experience in network security architecture and engineering.
ZTNA / SASE / SSE Expertise (Mandatory)
- Hands-on experience implementing and managing:
- Zscaler Internet Access (ZIA)
- Zscaler Private Access (ZPA)
- Axis Security / Aruba SSE platform
- Strong understanding of:
- Zero Trust Architecture (ZTA)
- SASE / SSE frameworks
- Experience with:
- Application onboarding in ZTNA platforms
- Policy creation (user/app/device-based)
- Traffic forwarding (PAC files, GRE/IPSec tunnels, client connectors)
- Expertise in:
- Secure web gateway (SWG)
- Cloud-delivered firewall
- CASB/DLP integrations
- Experience in identity integration (Azure AD, SAML, OAuth, MFA enforcement).
- Strong knowledge of user experience optimization in cloud security platforms.
Network Security & Infrastructure
- Strong experience in:
- Firewalls (Fortinet, Palo Alto, Juniper)
- IDS/IPS, VPN, SIEM, NAC
- Deep expertise in:
- Firewall rule design, NAT, routing, application-aware policies
- Experience in securing:
- Hybrid environments (data centers + cloud + internet edge)
- Design and implementation of:
- WAAP (Web Application & API Protection) solutions
- Experience in proxy architectures (forward/reverse).
Networking & Protocol Expertise
- Strong knowledge of:
- BGP, OSPF, MPLS, IP routing
- DNS, DHCP, NTP
- Experience with:
- QoS, NetFlow, ACLs, NAT, IP traffic management
- Wireless networking (802.11 a/b/g/n/ac/ax)
Cloud & Modern Security Integration
- Experience in securing workloads in:
- AWS, Azure, GCP
- Integration of ZTNA with:
- Cloud-native security tools
- Identity and access frameworks
- Understanding of application access patterns in hybrid cloud.
Data Center & Enterprise Networking
- Experience managing:
- Aruba, Arista, Juniper switching
- WAN optimization, load balancers, firewalls
- Strong understanding of enterprise-scale network design and segmentation.
Operations & Lifecycle
- Lead migration initiatives from:
- Legacy VPN → ZTNA/SSE platforms
- Manage secure connectivity with third parties using ZTNA.
- Plan and execute infrastructure upgrades and transformations.
- Work within ITIL frameworks for change and incident management.
Education & Certifications
- Bachelor’s Degree in Computer Science, Network Engineering, or related field (or equivalent experience).
- 10+ years in enterprise network security roles.
- Preferred certifications:
- CCNP / CCIE / JNCIE
- Zscaler certifications (ZCCA, ZCTA, ZDX, etc.)
- Security certifications (CISSP, CISM)
How to Apply: Interested candidates are encouraged to respond/submit their updated resumes, and for additional job opportunities, please visit
Unlock Rewards: Refer Candidates and Earn.
If you're not available or interested in this opportunity, please pass this along to anyone in your network who might be a good fit and interested in our open positions. VARITE offers a Candidate Referral program, where you'll receive a one-time referral bonus based on the following scale if the preferred candidate completes a three-month assignment with VARITE.
Experience Level Bonus Referral: 0-2 years INR 5,000
2-6 years INR 7,500
6+ years INR 10,000
About VARITE: VARITE is a global staffing and IT consulting company providing technical consulting and team augmentation services to Fortune 500 Companies in USA, UK, CANADA and INDIA. VARITE is currently a primary and direct vendor to the leading corporations in the verticals of Networking, Cloud Infrastructure, Hardware and Software, Digital Marketing and Media Solutions, Clinical Diagnostics, Utilities, Gaming and Entertainment, and Financial Services.
Equal Opportunity Employer:
VARITE is an equal chance employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, marital status, veteran status, or disability status.
📌 Senior Network Security Engineer – ZTNA (Bengaluru)
🏢 VARITE
📍 Bengaluru