13 Aug
|
HCLTech
|
Bengaluru
Bangalore, Karnataka
Job Summary
Job Summary : Hewlett Packard Enterprise is an innovative, dynamic company with a rich past and a promising future. Originally Hewlett-Packard Company, HPE has continuously reinvented itself. Today, HPE is one of the world's leading technology companies providing networking, cloud, and security solutions for next-generation IT infrastructure.Job Responsibilities : Key Responsibilities • Translate strategic business objectives into enterprise security architecture and Zero Trust access designs. • Develop and support solutions aligned with HPE’s global Zero Trust and Secure Access Service Edge (SASE) strategy. • Drive multi-year roadmap for secure remote access, application access transformation, and perimeter-less security architecture. • Lead architecture and deployment of enterprise-scale ZTNA solutions across global environments (on-prem, cloud, hybrid).Job Description : Senior Network Security Engineer – ZTNA (Zscaler, Axis/HPE SSE Focus)\\r\\nHewlett Packard Enterprise is an innovative, dynamic company with a rich past and a promising future. Originally Hewlett-Packard Company, HPE has continuously reinvented itself. Today, HPE is one of the world\\\'s leading technology companies providing networking, cloud, and security solutions for next-generation IT infrastructure.\\r\\n________________________________________\\r\\nKey Responsibilities\\r\\n• Translate strategic business objectives into enterprise security architecture and Zero Trust access designs.\\r\\n• Develop and support solutions aligned with HPE’s global Zero Trust and Secure Access Service Edge (SASE) strategy.\\r\\n• Drive multi-year roadmap for secure remote access, application access transformation, and perimeter-less security architecture.\\r\\n• Lead architecture and deployment of enterprise-scale ZTNA solutions across global environments (on-prem, cloud, hybrid).\\r\\n________________________________________\\r\\nZTNA & Zero Trust Responsibilities (Primary Focus)\\r\\n• Architect, design, and implement Zero Trust Network Access (ZTNA) solutions using: \\r\\no Zscaler (ZIA, ZPA)\\r\\no Axis Security / HPE Aruba SSE\\r\\n• Replace legacy VPN architectures with identity-aware, application-level secure access.\\r\\n• Design and enforce least-privilege access models based on: \\r\\no User identity\\r\\no Device posture\\r\\no Application context\\r\\n• Integrate ZTNA with: \\r\\no Identity providers (Azure AD, Okta, etc.)\\r\\no Endpoint security tools (EDR/XDR)\\r\\no SIEM/SOAR platforms\\r\\n• Enable secure access for: \\r\\no Remote workforce\\r\\no Third-party vendors\\r\\no Privileged users\\r\\n• Drive application segmentation and access policies aligned with Zero Trust principles.\\r\\n• Collaborate with application and infrastructure teams to onboard applications into ZTNA platforms.\\r\\n• Design secure access for internet-bound (ZIA)
and private application access (ZPA/Axis) use cases.\\r\\n• Implement policy tuning, traffic steering, and user experience optimization for ZTNA environments.\\r\\n• Lead migration programs from VPN ZTNA, ensuring minimal disruption and improved security posture.\\r\\n________________________________________\\r\\nCore Network Security Responsibilities\\r\\n• Participate.
Key Responsibilities
1. Drive Revenue Generation For The Tower By Leveraging Zscaler And Palo Alto Technologies To Optimize Service Delivery And Enhance Operational Performance.
2. Ensure Timely Closure Of All Escalations And Crises In Alignment With Agreed Sla Norms Through Effective Coordination And Communication Among Team Members.
3. Oversee Operational Hygiene By Validating Reports And Ensuring Compliance With The Statement Of Work (Sow), Implementing Necessary Improvements Where Needed.
4. Foster Positive Customer Satisfaction By Developing And Executing New Initiatives And Frameworks That Enhance Service Quality And Client Engagement.
5. Implement And Oversee The Profit Improvement Plan (Pip) By Identifying Opportunities For Automation And Promoting Self-Driven Initiatives Within The Team To Enhance Operational Efficiency.
Skill Requirements
Skill Requirement : ZTNA & Zero Trust Responsibilities (Primary Focus) • Architect, design, and implement Zero Trust Network Access (ZTNA) solutions using: o Zscaler (ZIA, ZPA) o Axis Security / HPE Aruba SSE • Replace legacy VPN architectures with identity-aware, application-level secure access. • Design and enforce least-privilege access models based on: o User identity o Device posture o Application context • Integrate ZTNA with: o Identity providers (Azure AD, Okta, etc.) o Endpoint security tools (EDR/XDR) o SIEM/SOAR platforms • Enable secure access for: o Remote workforce o Third-party vendors o Privileged users • Drive application segmentation and access policies aligned with Zero Trust principles. • Collaborate with application and infrastructure teams to onboard applications into ZTNA platforms. • Design secure access for internet-bound (ZIA) and private application access (ZPA/Axis) use cases. • Implement policy tuning, traffic steering, and user experience optimization for ZTNA environments. • Lead migration programs from VPN ZTNA, ensuring minimal disruption and improved security posture.
________________________________________ Core Network Security Responsibilities • Participate in architecture reviews ensuring alignment with enterprise security standards. • Design and secure data center, campus, cloud, and edge environments. • Provide risk reporting, telemetry analysis, and security posture visibility across network and ZTNA platforms. • Conduct and support security audits and compliance initiatives. • Stay updated with emerging threats and continuously improve security frameworks. • Manage and optimize SIEM systems for enhanced visibility and threat detection. • Collaborate with global cybersecurity, infrastructure, and business stakeholders. ________________________________________ Technical Qualifications • 10+ years of experience in network security architecture and engineering. ________________________________________ ZTNA / SASE / SSE Expertise (Mandatory) • Hands-on experience implementing and managing: o Zscaler Internet Access (ZIA) o Zscaler Private Access (ZPA) o Axis Security / Aruba SSE platform • Strong understanding of: o Zero Trust Architecture (ZTA) o SASE / SSE frameworks • Experience with: o Application onboarding in ZTNA platforms o Policy creation (user/app/device-based) o Traffic forwarding (PAC files, GRE/IPSec tunnels, client connectors) • Expertise in: o Secure web gateway (SWG) o Cloud-delivered firewall o CASB/DLP integrations • Experience in identity integration (Azure AD, SAML, OAuth, MFA enforcement). • Robust knowledge of user experience optimization in cloud security platforms. ________________________________________ Network Security & Infrastructure • Strong experience in: o Firewalls (Fortinet, Palo Alto, Juniper) o IDS/IPS, VPN, SIEM, NAC • Deep expertise in: o Firewall rule design, NAT, routing, application-aware policies • Experience in securing: o Hybrid environments (data centers + cloud + internet edge) • Design and implementation of: o WAAP (Web Application & API Protection) solutions • Experience in proxy architectures (forward/reverse). ________________________________________ Networking & Protocol Expertise • Strong knowledge of: o BGP, OSPF, MPLS, IP routing o DNS, DHCP, NTP • Experience with: o QoS, NetFlow, ACLs, NAT, IP traffic management o Wireless networking (802.11 a/b/g/n/ac/ax) ________________________________________ Cloud & Modern Security Integration • Experience in securing workloads in: o AWS, Azure, GCP • Integration of ZTNA with: o Cloud-native security tools o Idea.
Other Requirements
Other Requirement : 24/7 .1. Optional But Valuable Certifications: Zscaler Certified Professional, Palo Alto Networks Certified Network Security Engineer (Pcnse)
#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-#body.unify div.unify-button-container .unify-apply-now: focus, #body.unify div.unify-button-container .unify-apply-
📌 Tower Lead - Data Loss Prevention,Palo Alto Firewalls (Bengaluru)
🏢 HCLTech
📍 Bengaluru