19 Aug
|
Accenture in India
|
Bengaluru
19 Aug
Accenture in India
Bengaluru
Project Role : Security Architect
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : Network Security Operations
Valuable to have skills : NA
Minimum 7.5 Year(s) Of Experience Is Required
Educational Qualification : 15 years full time education
Summary
We are seeking a Network Security Engineer with 6 years of experience across enterprise network security platforms and security automation. The role requires hands-on expertise with Zscaler ZIA/ZPA, Palo Alto NGFW, Prisma SASE, and Cisco ISE alongside proven ability to automate operations through scripting, API integration, and infrastructure-as-code. The candidate will reduce manual toil, accelerate policy deployment, and enforce configuration consistency at scale across hybrid environments.
Roles & Responsibilities:
- Administer and operate Zscaler ZIA and ZPA manage SSL inspection, URL/content filtering, DLP policies, app connectors, and ZTNA access policies integrate with IdP via SAML/SCIM.
- Deploy, manage, and tune Palo Alto NGFW (PA-Series / VM-Series) and Panorama maintain App-ID, User-ID, Security Profiles (Threat Prevention, WildFire, URL Filtering), HA configurations, and PAN-OS lifecycle management.
- Operate Prisma SASE manage SD-WAN policy, SSE controls, remote access, and unified security policy enforcement across branch, mobile, and cloud workloads.
- Administer Cisco ISE for NAC manage 802.1X wired/wireless authentication, MAB,
guest access, TrustSec SGT tagging, posture assessment, and RADIUS/TACACS+ policies integrate with Active Directory and MFA providers.
- Build and maintain automation using Python, Ansible, and Terraform automate firewall rule deployment, ISE policy provisioning, Zscaler configuration management, and compliance enforcement via platform REST APIs (PAN-OS API, Zscaler API, Cisco ISE ERS API).
- Develop and maintain CI/CD pipeline integrations for network security policy changes enforce peer review, automated validation, and audit-ready change tracking using Git-based workflows.
- Automate operational tasks including configuration backups, drift detection, policy compliance reporting, and alert-driven remediation using AWS Lambda, Ansible playbooks, or equivalent tooling.
- Investigate and resolve escalated L2/L3 incidents — authentication failures, policy mismatches, tunnel failures, and traffic anomalies — within agreed SLAs.
- Perform root cause analysis for major incidents document findings, coordinate remediation across network, cloud, and application teams, and track corrective actions to closure.
- Produce operational reports covering incident trends, automation coverage, policy changes, posture metrics,
and SLA performance for management and audit audiences.
Professional & Technical Skills:
- Zscaler ZIA and ZPA SSL inspection, DLP, URL filtering, app connector deployment, ZTNA policy, and IdP integration (Azure AD / Okta).
- Palo Alto NGFW & Panorama App-ID, User-ID, Security Profiles, WildFire, HA, and PAN-OS upgrades.
- Prisma SASE SD-WAN, SSE, remote access policy, and unified security policy management.
- Cisco ISE 802.1X NAC, MAB, TrustSec, posture, RADIUS/TACACS+, and AD integration.
- Automation & scripting Python and Ansible for network security operations REST API integration with PAN-OS, Zscaler, and Cisco ISE APIs.
- Infrastructure-as-Code Terraform for network security resource management and policy-as-code enforcement.
- CI/CD pipeline experience Git-based workflows (GitHub Actions or GitLab CI) for policy change management and automated validation.
- Network fundamentals TCP/IP, DNS, BGP/OSPF, IPsec/SSL VPN, SD-WAN, and traffic analysis.
- Incident and problem management ITIL-aligned processes, ITSM tooling (ServiceNow or equivalent), RCA documentation.
- Preferred Certifications
- Palo Alto PCNSE (Palo Alto Networks Certified Network Security Engineer)
- Zscaler ZCCA-IA or ZCCA-PA
- Prisma SASE Certification (PCSAE)
- Cisco CCNP Security
- HashiCorp Terraform Associate
- ITIL Foundation v4
Additional Information
- The candidate should have minimum 7.5 years of experience in Network Security Operations.
- This position is based at our Bengaluru office.
- A 15 years full time education is required.
📌 Security Architect (Bengaluru)
🏢 Accenture in India
📍 Bengaluru