Senior Network Security Architect - Zero Trust & Network Segmentation (Vasanthanagar)

Senior Network Security Architect - Zero Trust & Network Segmentation (Vasanthanagar)

03 Sep
|
Avensys Consulting
|
Vasanthanagar

03 Sep

Avensys Consulting

Vasanthanagar

Job DescriptionAvensys is a reputed global IT professional services company headquartered in Singapore. Our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. Given our decade of success, we have evolved to become one of the top trusted providers in Singapore and service a client base across banking and financial services, insurance, information technology, healthcare, retail and supply chain. NnWe are currently looking to hire highly skilled Senior Network Security Architect – Zero Trust & Network Segmentation N. This is an exciting opportunity to expand your skill set, achieve job satisfaction and work-life balance. More details as below. NnKey Responsibilities N· Translate high-level business strategic objectives and goals into Enterprise IT requirements and conceptual designs. N· Develop and support comprehensive solutions that meet requirements and align with HPE’s global network security and micro segmentation strategy. N· Develop and maintain a multi-year strategic network and security architecture roadmap, incorporating Zero Trust and segmentation-driven security models. N· Lead end-to-end networkand security architecture across global platforms ensuring secure, high-performing, fault-tolerant, and resilient environments. NMicro segmentation & ZeroTrust Responsibilities N· Architect and implementmicro segmentation strategies across data center, campus, and cloud environments to limit lateral movement and enforce least-privilege access. N· Design and operationalize Zero Trust Architecture (ZTA) principles, integrating identity, application, and network-based policy enforcement. N· Collaborate with application owners to discover, validate, and map application dependencies to enable policy-driven segmentation. N· Define and enforce granular security policies using label/tag-based segmentation approaches across hybrid environments. N· Integrate micro segmentation with firewalls, SIEM, IAM, EDR/XDR, and cloud-native controls for unified policy enforcement. N· Lead adoption of micro segmentation platforms (e.G, Guardicore/Akamai Segmentation). N· Develop segmentation governance models, policy lifecycle management, and compliance alignment (CIS/NIST/Zero Trust frameworks).



N---nCore Network Security Responsibilities N· Participate in network security design reviews and ensure all implementations meet enterprise security standards. N· Analyze business requirements to design and implement security across data centers, campus networks, and hybrid environments. N· Provide ongoing risk metrics, control effectiveness tracking, and security posture reporting. N· Conduct and support internal and external security audits and compliance assessments. N· Maintain awareness of emerging threats and update policies accordingly. N· Develop and manage policies, processes, and procedures ensuring reliability, availability, and security of network systems. N· Manage and optimize Security Information and Event Management (SIEM) systems. N· Collaborate with Cyber Security, infrastructure, and application teams toward compliance and operational excellence. N---nTechnical Qualifications N· 10+ years of experiencein enterprise network security architecture, engineering, and operations. NMicro segmentation & Advanced Security N· Strong hands-on experience in designing and implementing micro segmentation solutions in complex enterprise environments. N· Proven capability to build application-aware segmentation policies based on traffic flow analysis. N· Experience with policy simulation, enforcement, monitoring, and optimization in segmentation platforms. N· Understanding of east-west traffic inspection, workload protection, and software-defined segmentation. N· Familiarity with Zero Trust Network Access (ZTNA) and identity-driven access models. N---nNetwork Security & Infrastructure N· Solid experience managing LAN/WAN security technologies, including firewalls, IDS/IPS, SIEM, VPN, and NAC. N· Expertise in firewall architecture and design with hands-on experience in: No Fortinet (FortiGate), Palo Alto, Juniper No Policy design, NAT, routing, application control,



and threat prevention profiles N· Experience securing public and private cloud (AWS, Azure, GCP) environments. N· Design and implementation of Web Application and API Protection (WAAP) solutions. N· Strong experience in proxy (forward/reverse), load balancing, and application security integration. N· Experience with SDN andSD-WAN architectures, including segmentation use cases. N---nNetworking & Protocol Expertise N· Strong knowledge of: No Routing protocols: BGP, OSPF, RIP, MPLS No Network services: DNS, DHCP, NTP No IPv4/IPv6 architecture and traffic management N· Experience in QoS, NetFlow, ACLs, NAT, multicast, and wireless technologies (802.11 variants). N· Experience with F5 GTM/LTM, VPN technologies, and Internet proxy solutions. N---nData Center &Infrastructure; N· Experience managing enterprise data center environments with technologies including: No Aruba, Arista, Juniper switching No Firewalls, WAN optimization, IDS/IPS, DLP N· Strong understanding ofstructured cabling and network facilities. N---nOperations & Lifecycle Management N· Plan, implement, and document infrastructure changes, including upgrades and migrations. N· Work within ITIL frameworks for incident, change, and problem management. N---nEducation & Certifications N· Bachelor’s degree in computer science, Network Engineering, or related field (or equivalent experience). N· 10+ years of experiencein global network security environments. N· Preferred certifications: No CCNP / CCIEno JNCIE No Security certifications(CISSP, CISM, or equivalent) are a plus NnWHAT’S ON OFFER: NYou will be remunerated with an excellent base salary and entitled to attractive company benefits. Additionally, you will get the prospect to enjoy a fun and collaborative work environment, alongside a strong career progression. NnTo submit your application, please apply online or email your UPDATED CV in Microsoft Word format to [email protected] Your interest will be treated with strict confidentiality. NnCONSULTANT DETAILS: NConsultant Name: Bhawana Sharma NAvensys Consulting Pte Ltd NnPrivacy Statement: Data collected will be used for recruitment purposes only. Personal data provided will be used strictly in accordance with the relevant data protection law and Avensys' privacy policy.

📌 Senior Network Security Architect - Zero Trust & Network Segmentation (Vasanthanagar)
🏢 Avensys Consulting
📍 Vasanthanagar

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: senior network security architect - zero trust & network segmentation (vasanthanagar) / vasanthanagar

Subscribe to this job alert:

Get the latest job offers by email for: senior network security architect - zero trust & network segmentation (vasanthanagar) / vasanthanagar