Job Overview
Job description
- Location:
- United States
- Work arrangement:
- On-site
Role Summary
Role Overall
We are looking for a SASE/SSE Architect with a strong client orientation to join a consulting firm specializing in infrastructure, networking, cloud and cybersecurity (partner of Cisco and Microsoft, recognized as Cybersecurity Partner of the Year 2023 and Partner of the Year 2024).
The person will lead the design and deployment of infrastructure, networking and security solutions in a highly demanding corporate environment.
You will be responsible for defining end-to-end architectures combining Cisco, Microsoft and other manufacturers technologies, presenting them directly to the client and coordinating their execution with the technological partners involved.
It is not a role of pure management or isolated technical execution: we are looking for a profile capable of connecting technical vision, client and real delivery.
Requirements
Skills
- SASE (Secure Access Service Edge): model that brings together the network and security in the same cloud service, so that any user can connect securely from wherever they are, without going through a physical office.
- SSE (Security Service Edge): The security part of the SASE model (without the pure networking part): web filtering, application access protection and data control, all from the cloud.
- Perimeter security architecture: design of the "walls" that protect a company's network against unauthorized external access (firewalls, incoming/outgoing traffic control).
- Secure access: solutions for employees, suppliers or devices to enter company systems in a controlled and verified way (VPN, multi-factor authentication, secure remote access).
- Networks and security in Cisco environments: management of the most used network equipment and software in large companies (switches, routers, Cisco firewalls).
- Microsoft Azure: Microsoft's cloud, where companies host servers, applications and data.
- Windows Server: operating system with which a company's internal servers (users, files, applications) are managed.
- AD/Entra ID: the directory where a company's users and their access permissions are stored; Entra ID is the cloud version of Active Directory.
- Intune: Microsoft tool to remotely manage and protect employees' devices (laptops, mobiles).
- At least 5 years of experience in perimeter security architecture and secure access.
- Solid experience in design and deployment of solutions to end clients. The role involves presenting and executing solutions with a real, high-demand client, not isolated laboratory work.
- Knowledge of networks and/or security, especially in Cisco environments.
- Technical background in Microsoft environments (Azure, Windows Server, AD/Entra ID, Intune). The architectures combine Cisco and Microsoft; Without this knowledge only half of the solution would be covered.
- High level of communication, planning and results orientation. The role involves presenting architectures directly to the client and coordinating their execution; It is the bridge between technique and business.
- Strategic and business vision. It is expected to connect technical decisions with the impact on the client's business, especially in a banking environment where security is critical.
- High level of English. Working directly with international manufacturers (Cisco, Microsoft) requires fluency in English.
Nice-to-haves
- Cisco (CCNP/CCIE), VMware (VCP), Veeam (VMCE), CISSP/CISM, PMP/PRINCE2 and ITIL certifications. They formally validate technical and management knowledge, although they are not exclusive.
- Management of MS Project, Jira/Azure Boards, IT Glue or IT Portal. Reduces adaptation time to internal planning and documentation tools.
- Experience in complex corporate environments or strategic security areas. It provides valuable context for a project of this magnitude, although it is not an entry requirement.
- Role:
- #61 - Architect Sase
- Job Type:
- Full Time