Zero Trust and Segmentation SME - 100% Remote - 1+ Year Contract

Remote • Posted 11 hours ago • Updated 11 hours ago
Contract Independent
Contract W2
1 Year
No Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Zero Trust
  • Segmentation
  • Network
  • Fabric
  • CISA
  • NIST
  • Cisco

Summary

Job Details:
Job Title:             Zero Trust and Segmentation SME
Location:             100% Remote
Duration:            1+ Year Contract

Description:
Qualifications Required:
•    4–8 years of experience in cybersecurity or enterprise IT with a clear focus on network segmentation and Zero Trust; must include hands-on experience with at least two segmentation domains (network/fabric segmentation, host-based micro segmentation, identity-based segmentation, or Zero Trust network access)
•    Understanding of core segmentation and Zero Trust concepts: protect surfaces, zones and trust boundaries, least privilege, deny-by-default, east-west vs. north-south traffic, lateral-movement containment, blast-radius reduction, application dependency mapping, and visibility-before-enforcement sequencing
•    Working knowledge of segmentation and security frameworks: NIST SP 800-207 (Zero Trust), CISA Zero Trust Maturity Model (ZTMM), NIST CSF 2.0, NIST SP 800-53, ISO 27001/27002, PCI-DSS v4 segmentation requirements, HIPAA Security Rule, and ISA/IEC 62443 for OT environments
•    Hands-on experience across segmentation domains and platforms, including one or more of:
•    Network & Fabric Segmentation — Cisco (ACI, SD-Access/ISE, TrustSec/SGT), Arista (EVPN/VXLAN), Elisity, or equivalent: VRF and VLAN design, fabric-layer enforcement, and macro-segmentation between zones
•    Host-Based Micro segmentation — Illumio, Akamai GuardiCore, VMware NSX, or Cisco Secure Workload: agent deployment, traffic visibility and dependency mapping, allow-list policy design, and ringfencing of application boundaries
•    Firewall & Perimeter Enforcement — Palo Alto, Fortinet, Cisco, or Check Point: security zone and policy design, north-south and inter-VRF enforcement, rule rationalization, and east-west control where applicable
•    Identity-Based Segmentation & ZTNA — Zscaler (ZPA), Cisco ISE, or equivalent: identity-driven access control, user-to-application segmentation, NAC integration, and Zero Trust network access design
•    Asset Visibility & Discovery — flow collection and dependency mapping, CMDB (e.g., ServiceNow), and OT/IoT/IoMT visibility and risk platforms: building the asset inventory and observed-traffic baseline that segmentation policy depends on

Demonstrated consulting delivery competencies, including:
•    Structured discovery: ability to conduct current-state discovery interviews, gather documentation and evidence, manage information collection across workstreams, and synthesize findings into clear, structured outputs
•    Gap analysis: experience assessing segmentation program maturity against frameworks, documenting gaps, and prioritizing findings by risk and business impact
•    Technical communication: ability to translate segmentation findings and recommendations into clear written deliverables and verbal summaries for technical and working-level client audiences
•    Workshop facilitation: participate in and contribute to discovery sessions, technical design sessions, and working-group meetings; begin developing the ability to facilitate independently
•    Deliverable quality: consistent track record of producing accurate, well-structured client deliverables — assessment reports, gap and risk registers, segmentation plans, and architecture diagrams — on time and to standard
•    Engagement collaboration: work effectively within project teams; communicate status, risks, and issues proactively to the engagement lead; adapt to shifting priorities and client needs

Preferred:
•    Bachelor’s degree in Computer Science, Information Security, Networking, or a related field
•    Industry certifications demonstrating segmentation, network, or security knowledge: CISSP, ISSAP, CISM, CCZT, or equivalent; vendor certifications from Cisco (CCNP Security), Palo Alto (PCNSE), Fortinet (NSE), Illumio, or Zscaler are a strong plus
•    Experience in enterprise environments across financial services, healthcare, retail, manufacturing, or public sector — particularly where segmentation intersects with regulatory compliance (HIPAA, PCI-DSS, FedRAMP)
•    Prior consulting experience at a professional services firm, systems integrator, or equivalent client-facing advisory role
•    Familiarity with pre-sales processes: SOW development, effort estimation, or proposal support

Key Competencies:
•    Segmentation and Zero Trust technical depth and hands-on delivery execution

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: RTX1d209c
  • Position Id: 9060594
  • Posted 11 hours ago
Contact the job poster
BS

Balaji Singh

Recruiter @ Dexperts Inc
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Yesterday

Easy Apply

Contract

Depends on Experience

Remote

Today

Easy Apply

Contract, Third Party

Depends on Experience

Remote

Today

Full-time

USD 13,665.00 per month

Remote

Today

Full-time

USD 13,665.00 per month

Search all similar jobs