Network:
Cisco Workload, Cisco Secure Workload, Cisco Tetration, Zero-trust microsegmentation
Security Architect – Zero Trust / Cisco Secure Workload
We are seeking an experienced Network Security Architect to support a major Zero Trust architecture implementation for a high-end financial services environment. This position is not traditional steady-state NOC work but is centered around high-impact weekend cutovers, Zero Trust policy enforcement, application dependency mapping, and real-time troubleshooting.
Responsibilities
Cisco Workload, Cisco Secure Workload, Cisco Tetration, Zero-trust microsegmentation
- Execute readiness checks before scheduled cutovers and policy-enforcement windows.
- Validate configurations, dependencies, risks, and rollback procedures prior to go-live.
- Lead and support Zero Trust policy changes and network cutovers during scheduled maintenance windows.
- Perform application dependency mapping using Cisco Secure Workload (CSW).
- Use dependency data to support policy design, cutover planning, and risk assessment.
- Perform post-change validation of network functionality and security-policy enforcement.
- Troubleshoot complex issues in real time during live cutover events.
- Execute rollback procedures when necessary to protect service availability.
- Document readiness assessments, implementation results, and post-event findings.
- Communicate technical status, risks, and issues clearly to technical and business stakeholders.
- Maintain accurate project and time-tracking documentation.
Requirements
Required Qualifications
Cisco Workload, Cisco Secure Workload, Cisco Tetration, Zero-trust microsegmentation
- 3+ years of hands-on experience designing, operating, and troubleshooting Zero Trust data-center security environments.
- Strong experience with technologies such as Microsegmentation, Next-Generation Firewalls, Network Access Control, Layer 3–7 security technologies.
- In-depth understanding of data-center networking protocols and principles.
- CCNP Route/Switch, CCNP Security, or equivalent demonstrated technical experience.
- Strong understanding of network-security concepts and architecture.
- Ability to troubleshoot complex network and security issues during high-pressure production events.
- Ability to communicate technical status and risk effectively to non-technical stakeholders.
- Ability to work a Wednesday–Sunday or Thursday–Monday schedule supporting weekend cutovers.
- U.S. citizenship and continental U.S. residency.
- Ability to successfully complete the required Tier II-Credit Check Enhanced federal background investigation and pre-employment drug screening.
- Strong documentation and time-management discipline.
Highly Preferred
Cisco Workload, Cisco Secure Workload, Cisco Tetration, Zero-trust microsegmentation
- 3+ years of hands-on Cisco Secure Workload (CSW) experience.
- Cisco Application Centric Infrastructure (ACI) experience.
- Network/security automation, scripting, or orchestration experience.
- Advanced understanding of security protocols and architecture.
- Experience managing Cisco TAC escalations through resolution.
- Experience gathering and analyzing diagnostic evidence independently.
- Previous experience supporting financial services or other highly regulated environments.
- Previous federal background investigation or Public Trust experience.
Schedule & Engagement
This is a full-time permanent position, not a fixed-term contract. The weekend cutover schedule is expected after which the schedule is expected to transition toward standard business hours. The position will operate as part of a broader technical team, with two architects supporting the weekend rotation—one primarily focused on Cisco Secure Workload and the counterpart focused on Cisco ACI.Cisco Workload, Cisco Secure Workload, Cisco Tetration, Zero-trust microsegmentation.