Overview
Skills
Job Details
Job Title: Ivanti Connect Secure Consultant
Duration: 3 Months (with possibility of extension)
Location: New York, NY (80% Remote / 20% On-Site at Campus)
Job Description:
A Senior Network Security Engineer is needed to support a project focused on evaluating, migrating, and validating SSL VPN configurations from legacy appliances to updated Ivanti Connect Secure infrastructure. This includes configuring authentication services, migrating user profiles and realms, and ensuring integration with a new domain authentication structure.
Responsibilities:
< class="" data-start="704" data-end="726">1. Assessment</>Conduct a full inventory of current user realms, profiles, and configurations.
Evaluate compatibility with new appliance platforms and domain structures.
Review architecture and integration readiness of new authentication domains.
Create detailed migration and testing plans.
Define integration prerequisites (e.g., certificates, trust relationships).
Prepare rollback and recovery procedures.
Coordinate migration schedule with internal teams.
Extract and adapt current configurations for new platform compatibility.
Migrate and load configurations to ISA devices.
Enable and validate multiple domain authentication (SAML, LDAP, Kerberos).
Conduct functional and failover testing for authentication workflows.
Verify user access and compatibility within the new domain structure.
Resolve any integration or policy compliance issues.
Document all steps, challenges, and resolutions.
Provide hands-on knowledge transfer and demonstrations to internal teams.
Work closely with infrastructure and application teams.
Provide support throughout the migration and testing phases.
Essential Tasks:
Provision SSL VPN access
Configure and map authentication servers, roles, realms, and resources
Create comprehensive change documentation and method-of-procedures (MoPs)
Support Workday provisioning and mapping
Troubleshoot configuration and access issues
Assessment Duties:
Generate current state reports and assess remote access architecture
Perform configuration and security evaluations
Document inventory, bandwidth usage, and architectural layers
Recommendations:
Define authentication improvements and redundancy strategies
Recommend security hardening and tech upgrades
Identify opportunities for cost reduction and value enhancement
Future State Deliverables:
Design future-state architecture and management plans
Provide network scalability and lifecycle projections
Recommend adoption strategies for next-generation security technologies
Mandatory Qualifications:
5+ years of hands-on experience with Ivanti Pulse Secure / Connect Secure
Expertise in network protocols, VPN, firewalls, encryption, and authentication (LDAP, SAML, RADIUS, MFA)
Experience with Next-Gen Firewalls and Active Directory integrations