Senior Network Security Engineer | Zero Trust Architecture (f/m/d)
We are HCLTech, one of the fastest-growing large tech companies in the world and home to 225,000+ people across 60 countries, supercharging progress through industry-leading capabilities centered around Digital, Engineering and Cloud. The driving force behind that work, our people, are diverse, creative, and passionate, raising the bar for excellence on a regular basis. We, in turn, work hard to bring out the best in them as we strive to help them find their spark and become the best version of themselves that they can be. If all this sounds like an environment you’ll thrive in, then you’re in the right place. Join us on our journey in advancing the technological world through innovation and creativity.
We are looking for an experienced Senior Network Security Engineer to drive our Zero Trust transformation journey and help design, implement, and operate scalable, resilient, and secure enterprise network architectures.
Key Responsibilities:
- Design and implement Zero Trust Architecture (ZTA), ZTNA, and SASE/SSE solutions for global enterprise environments.
- Engineer and operate enterprise-grade security platforms including Palo Alto, Fortinet, and Cisco NGFW ecosystems.
- Develop network segmentation and micro-segmentation strategies across data centers, campuses, branch locations, and cloud environments.
- Lead architecture reviews, technical assessments, proof-of-concepts, migration strategies, and security transformation initiatives.
- Collaborate with Network Engineering, Security Engineering, IAM, Cloud, EUC, and Operations teams to deliver secure and business-aligned solutions.
- Create High-Level Designs (HLDs), Low-Level Designs (LLDs), operational procedures, and architecture documentation.
- Implement centralized security management, policy governance, monitoring, logging, and reporting solutions.
Required Skills & Experience:
Technical Skills
- Zero Trust Security Architecture
- SASE / SSE / ZTNA
- Network Segmentation & Identity-Based Access Controls
- Enterprise Firewall Architecture
- Cisco ASR, ISR, Catalyst 8K, Catalyst & Nexus Platforms
- Arista Switching
- BGP, OSPF, EVPN, VXLAN, MPLS, VRF Segmentation
- VPN Technologies, IPSec, TLS, NAC Integration
- Microsoft Entra ID, Active Directory, Cisco ISE
- EDR/XDR, SIEM, ServiceNow Integration
- Azure, AWS & GCP Security Integration
Qualifications
- 8+ years of experience in Network Security Engineering and Enterprise Networking
- Strong understanding of Zero Trust principles and modern cybersecurity frameworks
- Proven experience delivering large-scale security transformation programs
- Excellent troubleshooting, root cause analysis, and communication skills
Preferred Qualifications
- Palo Alto Networks Certification
- Fortinet Certification
- CCNP Enterprise / Security
- CCIE Enterprise Infrastructure / Security
- CISSP
- Experience within large-scale financial services environments is highly valued.
________________________________________________________________________
We promote equal opportunities for all employees, regardless of their cultural and social background, gender, disability, age, religion, beliefs, and sexual identity. We give priority consideration to severely disabled applicants and those of equal status in the case of equal suitability.