Zero Trust Security Engineer

Stafide
Eindhoven, Netherlands
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Cloud Computing Cloud Computing Security Computer Networks Identity and Access Management Internet Protocol Security (IP SEC) Virtual Private Networks (VPN) Python (Programming Language) Network Security OpenID Remote Access Technology
+17 more
Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Web Application Security Security Information and Event Management Systems Integration Scripting Transport Layer Security Identity Services Engine Okta Fortinet Api Design Firepower Open Network Automation Platform Api Management Cisco SSL VPN

Job description

  • Eindhoven, Noord-Brabant
  • Vast
  • Voltijds

  • 16 uren geleden

As an Zero Trust Security Engineer, you will:

  • Lead the engineering and implementation of Zero Trust Architecture (ZTA) solutions across enterprise environments.

  • Drive the deployment, configuration, and optimization of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).

  • Own Proof of Concept (POC) activities for new Zero Trust capabilities and validate them in development environments.

  • Engineer migration strategies from legacy VPN and Proxy technologies to identity-based secure access models.

  • Develop and enhance advanced SSL inspection policies, PAC file logic, and API-driven automation workflows

  • Collaborate with Identity, Cloud, Network, and Security teams to integrate authentication and connectivity frameworks.

  • Provide operational readiness support by delivering validated configurations and troubleshooting documentation.

  • Ensure Zero Trust principles such as least-privileged access, segmentation, and application cloaking are effectively implemented.

  • Support continuous product and infrastructure improvements to strengthen enterprise security posture.

  • Contribute to automation initiatives using APIs and scripting technologies such as Python., * Automate repetitive engineering and operational tasks using APIs and scripting.

  • Analyze network traffic, authentication flows, and security events to identify risks.

  • Support enterprise-wide migrations with minimal disruption to business operations.

  • Create operational documentation, troubleshooting guides, and deployment standards.

  • Adapt quickly to evolving cloud security technologies and enterprise security requirements.

What we bring to the table:

  • Opportunity to work on large-scale enterprise Zero Trust transformation initiatives.

  • Exposure to advanced cloud security, identity security, and secure access technologies.

  • A collaborative environment involving Security, Cloud, Identity, and Network engineering teams.

  • Opportunities to drive modernization initiatives by replacing legacy security infrastructures.

  • Hands-on involvement with enterprise-grade Zscaler implementations and integrations.

  • Continuous learning opportunities in Zero Trust, automation, and cloud-native security technologies.

  • Challenging engineering projects focused on security optimization and operational excellence.

Requirements

  • 6+ years of experience in Network Security, Cloud Security, or Zero Trust Security Engineering.

  • Strong expertise in Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) implementation and administration.

  • Deep understanding of Zero Trust Network Access (ZTNA) principles and identity-centric security models.

  • Hands-on experience integrating identity providers such as Okta and Azure AD using SAML, SCIM, and OIDC.

  • Strong background in traditional Proxy and VPN technologies including IPSec and SSL VPN.

  • Experience working with enterprise security infrastructure such as Cisco Firepower, Cisco ISE, or Fortinet solutions.

  • Familiarity with SSL inspection, policy enforcement, secure web gateways, and secure access architectures.

  • Knowledge of network automation, API integrations, and scripting using Python or similar technologies.

  • Experience supporting large-scale enterprise migrations from legacy security environments.

  • Relevant certifications such as Zscaler Certified Cloud Professional (ZCCP) are preferred.

You should possess the ability to:

  • Design and implement scalable Zero Trust security architectures.

  • Troubleshoot complex Zscaler, VPN, Proxy, and identity integration issues.

  • Conduct technical evaluations and POC testing for new security capabilities.

  • Optimize security policies while balancing user experience and operational efficiency.

  • Collaborate effectively with cross-functional technical and operational teams.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careerjet.nl

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

7:50 min

Prioritizing cybersecurity and zero trust in development

Ash Ryan Arnwine Ash Ryan Arnwine +3 · WWC 2024

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

10:19 min

Continuous learning strategies and emerging industry trends

Kurt Eder · LIVE

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all