← Browse all jobs

A

Senior Network Security Architect – Zero Trust & Network Segmentation

Avensys Consulting · Karnataka, India

FULL TIME

Job Description

Avensys is a reputed global IT professional services company headquartered in Singapore. Our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. Given our decade of success, we have evolved to become one of the top trusted providers in Singapore and service a client base across banking and financial services, insurance, information technology, healthcare, retail and supply chain. We are currently looking to hire highly skilled Senior Network Security Architect – Zero Trust & Network Segmentation . This is an exciting opportunity to expand your skill set, achieve job satisfaction and work-life balance. More details as below. Key Responsibilities · Translate high-level business strategic objectives and goals into Enterprise IT requirements and conceptual designs. · Develop and support comprehensive solutions that meet requirements and align with HPE’s global network security and micro segmentation strategy. · Develop and maintain a multi-year strategic network and security architecture roadmap, incorporating Zero Trust and segmentation-driven security models. · Lead end-to-end network and security architecture across global platforms ensuring secure, high-performing, fault-tolerant, and resilient environments. Micro segmentation & Zero Trust Responsibilities · Architect and implement micro segmentation strategies across data center, campus, and cloud environments to limit lateral movement and enforce least-privilege access. · Design and operationalize Zero Trust Architecture (ZTA) principles, integrating identity, application, and network-based policy enforcement. · Collaborate with application owners to discover, validate, and map application dependencies to enable policy-driven segmentation. · Define and enforce granular security policies using label/tag-based segmentation approaches across hybrid environments. · Integrate micro segmentation with firewalls, SIEM, IAM, EDR/XDR, and cloud-native controls for unified policy enforcement. · Lead adoption of micro segmentation platforms (e.g, Guardicore/Akamai Segmentation). · Develop segmentation governance models, policy lifecycle management, and compliance alignment (CIS/NIST/Zero Trust frameworks). Core Network Security Responsibilities · Participate in network security design reviews and ensure all implementations meet enterprise security standards. · Analyze business requirements to design and implement security across data centers, campus networks, and hybrid environments. · Provide ongoing risk metrics, control effectiveness tracking, and security posture reporting. · Conduct and support internal and external security audits and compliance assessments. · Maintain awareness of emerging threats and update policies accordingly. · Develop and manage policies, processes, and procedures ensuring reliability, availability, and security of network systems. · Manage and optimize Security Information and Event Management (SIEM) systems. · Collaborate with Cyber Security, infrastructure, and application teams toward compliance and operational excellence. Technical Qualifications · 10 years of experience in enterprise network security architecture, engineering, and operations. Micro segmentation & Advanced Security · Strong hands-on experience in designing and implementing micro segmentation solutions in complex enterprise environments. · Proven capability to build application-aware segmentation policies based on traffic flow analysis. · Experience with policy simulation, enforcement, monitoring, and optimization in segmentation platforms. · Understanding of east-west traffic inspection, workload protection, and software-defined segmentation. · Familiarity with Zero Trust Network Access (ZTNA) and identity-driven access models. Network Security & Infrastructure · Strong experience managing LAN/WAN security technologies, including firewalls, IDS/IPS, SIEM, VPN, and NAC. · Expertise in firewall architecture and design with hands-on experience in: o Fortinet (FortiGate), Palo Alto, Juniper o Policy design, NAT, routing, application control, and threat prevention profiles · Experience securing public and private cloud (AWS, Azure, GCP) environments. · Design and implementation of Web Application and API Protection (WAAP) solutions. · Strong experience in proxy (forward/reverse), load balancing, and application security integration. · Experience with SDN and SD-WAN architectures, including segmentation use cases. Networking & Protocol Expertise · Strong knowledge of: o Routing protocols: BGP, OSPF, RIP, MPLS o Network services: DNS, DHCP, NTP o IPv4/IPv6 architecture and traffic management · Experience in QoS, NetFlow, ACLs, NAT, multicast, and wireless technologies (802.11 variants). · Experience with F5 GTM/LTM, VPN technologies, and Internet proxy solutions. Data Center & Infrastructure · Experience managing enterprise data center environments with technologies including: o Aruba, Arista, Juniper switching o Firewalls, WAN optimization, IDS/IPS, DLP · Strong understanding of structured cabling and network facilities. Operations & Lifecycle Management · Plan, implement, and document infrastructure changes, including upgrades and migrations. · Work within ITIL frameworks for incident, change, and problem management. Education & Certifications · Bachelor’s degree in computer science, Network Engineering, or related field (or equivalent experience). · 10 years of experience in global network security environments. · Preferred certifications: o CCNP / CCIE o JNCIE o Security certifications (CISSP, CISM, or equivalent) are a plus WHAT’S ON OFFER: You will be remunerated with an excellent base salary and entitled to attractive company benefits. Additionally, you will get the opportunity to enjoy a fun and collaborative work environment, alongside a strong career progression. To submit your application, please apply online or email your UPDATED CV in Microsoft Word format to Your interest will be treated with strict confidentiality. CONSULTANT DETAILS : Consultant Name : Bhawana Sharma Avensys Consulting Pte Ltd Privacy Statement : Data collected will be used for recruitment purposes only. Personal data provided will be used strictly in accordance with the relevant data protection law and Avensys' privacy policy.

Details

CompanyAvensys Consulting
LocationKarnataka, India
TypeFULL TIME
Nichetech

Similar Jobs

S

Commercial Terrain - Indépendant (Freelance)

SumUp Services GmbH

J

PHYSICAL THERAPY ASSISTANT

Jackson Therapy Partners

V

Veterinary Assistant

Veterinary Practice Partners, LLC

S

Snr Manager, Development - HR

Standard Chartered Bank

C

Technical Lead, Premium Network Services

Colt Technology Services