CrawlJobs Logo

Zero Trust / Security Engineering SME

United States, Dayton, OH · Job Posted March 19, 2026
Apply Position
Job Link Share

Job Description

Altamira is seeking a Zero Trust / Security Engineer to support the design, implementation, and operation of secure cloud and platform environments for mission-critical systems. This role focuses on identity and access management, secrets management, authentication and authorization frameworks, and Zero Trust architectures within classified environments. The ideal candidate brings strong experience in cloud security, DevSecOps practices, and enterprise identity systems, and is comfortable collaborating with platform, infrastructure, and application teams to embed security into all phases of system development and operations.

Job Responsibility

  • Design and implement Zero Trust security architectures in cloud and hybrid environments
  • Configure and manage identity and access management systems, including Keycloak and OAuth2-based solutions
  • Implement and operate secrets management platforms such as HashiCorp Vault
  • Develop and enforce authentication, authorization, and access control policies
  • Integrate security controls into CI/CD and DevSecOps pipelines
  • Support system hardening, vulnerability management, and security compliance activities
  • Monitor and respond to security events, incidents, and anomalies
  • Conduct security assessments, reviews, and risk analyses
  • Collaborate with engineering teams to implement secure-by-design solutions
  • Support accreditation, authorization, and audit processes
  • Develop and maintain security documentation, standards, and runbooks

Requirements

  • Ability to obtain TS/SCI clearance
  • Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or related field (or equivalent experience)
  • Experience in cybersecurity, DevSecOps, or security engineering roles
  • Experience implementing IAM and authentication systems
  • Hands-on experience with secrets management and secure credential handling
  • Experience supporting cloud-based and hybrid security architectures
  • Strong understanding of network, application, and identity security principles
  • Experience working in compliance-driven environments (e.g., RMF, NIST, STIGs)
  • Strong troubleshooting and incident response skills
  • Ability to work effectively in secure, mission-focused environments

Nice to have

  • Certified Kubernetes Application Developer (CKAD) Certification
  • Experience with HashiCorp Vault and Keycloak in production environments
  • Experience with Kubernetes security and container hardening
  • Experience implementing Zero Trust frameworks in DoD or IC environments
  • Familiarity with OpenTelemetry, SIEM, and security monitoring platforms
  • Experience with infrastructure and configuration automation (Terraform, Ansible, etc.)
  • Relevant certifications (CISSP, CCSP, Security+, AWS Security Specialty, etc.)
  • Prior experience supporting DoD or Intelligence Community programs

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Zero Trust / Security Engineering SME

8 matching positions

Netskope Security SME

We’re supporting a major enterprise organisation in the professional services se...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
xcede.com Logo
Xcede
Expiration Date
June 28, 2026
Flip Icon
Requirements
Requirements
  • Strong hands-on experience with Netskope security technologies
  • Proven experience supporting and administering Netskope SWG and CASB
  • Experience within SOC, cloud security engineering, or security operations environments
  • Strong troubleshooting, policy tuning, and platform optimisation capabilities
  • Exposure to ZTNA / Zero Trust Network Access technologies
  • Experience working within large, complex enterprise environments
  • Excellent communication and stakeholder engagement skills
Job Responsibility
Job Responsibility
  • Own the day-to-day support, administration, and optimisation of the Netskope environment
  • Administer, configure, and enhance Netskope SWG and CASB
  • Review policies, controls, and operational workflows to identify immediate improvements and efficiency gains
  • Troubleshoot complex incidents and act as a senior escalation point
  • Improve platform performance, security posture, and operational effectiveness
  • Work closely with internal IT and security teams to provide guidance, knowledge sharing, and best practice
  • Support planning and readiness for the upcoming Netskope ZTNA implementation
  • Provide strategic input into the broader cloud security roadmap where required
  • Fulltime
!
Read More
Arrow Right
New

Principal, Security Strategy

Innovation Starts With You Propel your career at Belden, where innovation creat...
Location
Location
United States , Carmel
Salary
Salary:
170000.00 - 200000.00 USD / Year
belden.com Logo
Belden, Inc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in computer science, engineering, cybersecurity, or related field (advanced degree preferred.)
  • 12+ years in cybersecurity strategy, product strategy, security architecture, or security leadership in networking/industrial/critical infrastructure contexts.
  • Demonstrated ability to influence executive stakeholders and drive cross-functional strategic initiatives without direct authority.
  • Strong working knowledge of network security, identity/policy concepts, and security telemetry/monitoring
  • familiarity with IT/OT convergence challenges.
  • Excellent communication skills: can turn complex security topics into clear business decisions and narratives.
  • Strong networking fundamentals (switching/routing, VLANs, ACLs, NAT, VPNs, firewalls) and security fundamentals (identity, certificates, logging, vulnerability management).
  • Experience in creating technical / thought-leadership documentation such as white papers, keynotes, blog posts, videos, podcasts, etc. surrounding the OT security topic.
  • Ability to work across teams and influence outcomes without direct authority.
  • OT/ICS security experience (industrial networks, Purdue model, segmentation strategies, remote access patterns for plants, SIEM, etc.)
Job Responsibility
Job Responsibility
  • Develop and maintain Belden's multi-year security strategy and strategic narrative aligned to company growth and target verticals.
  • Identify security market inflection points (OT/ICS cybersecurity, convergence, secure remote access, segmentation, visibility, managed services) and recommend strategic responses.
  • Establish executive-ready points of view, strategy decks, and internal alignment materials.
  • Partner with Product Management to translate strategy into portfolio priorities and roadmap themes.
  • Lead build/buy/partner assessments
  • support M&A and partnership diligence from a security market/technology standpoint.
  • Define strategic requirements for platform capabilities (identity, policy, telemetry, analytics, secure-by-design processes).
  • Engage strategic customers to understand risk drivers and buying criteria. Represent Belden as an OT security Subject Matter Exprt (SME).
  • Build relationships with key ecosystem players (technology partners, system integrators, cloud/edge platforms) and help shape joint-value propositions.
  • Support executive briefings, key pursuits, and escalations where security strategy is central.
What we offer
What we offer
  • health/dental/vision
  • long term/short term disability
  • life insurance
  • HSA/FSA
  • matching retirement plans
  • paid vacation
  • parental leave
  • employee stock purchase plan
  • paid leave for volunteer work in your community
  • training opportunities
  • Fulltime
Read More
Arrow Right
New

Platform Manager - Network Security

4 Days in the office from any of our locations in RI, Iselin NJ, MA, Pittsburgh ...
Location
Location
United States , Johnston; Phoenix; Westwood; Iselin
Salary
Salary:
175000.00 - 224000.00 USD / Year
citizensbank.com Logo
Citizens Bank
Expiration Date
June 30, 2026
Flip Icon
Requirements
Requirements
  • Deep expertise with firewalls, load balancers, outbound proxies, and security automation frameworks
  • Hands-on proficiency with Palo Alto and F5 technologies, plus AWS/Azure native security and load balancing services
  • Strong experience with industry-leading tools such as ForcePoint, Netskope, Zscaler, and Illumio
  • In-depth knowledge of Zero Trust, micro-segmentation, and modern network security architectures
  • Proven leadership experience managing global engineering teams
  • Demonstrated experience leading audit, compliance, or regulatory engagements within a financial institution
  • Strong understanding of vulnerability management processes, tools, and risk reporting
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field preferred
  • Minimum 5+ years in network security, with at least 5+ years leading engineering or platform teams
  • Professional certifications (CISSP, CCNP Security, CISM, or equivalent) preferred
Job Responsibility
Job Responsibility
  • Lead, mentor, and develop a high-performing global team of security architects and network engineers, with staff located in the U.S. and India
  • Foster a culture of accountability, collaboration, continuous learning, and operational excellence
  • Set clear strategic direction for the product line, ensuring alignment with business goals and enterprise security standards
  • Champion the vision for automated network security and load balancing across Citizens Bank's enterprise infrastructure
  • Oversee the architecture, implementation, and lifecycle management of firewalls, outbound proxies, load balancers, and cloud-native security solutions
  • Drive automation of policy enforcement, including Port Open Request (POR) workflows and Load Balancer (LB) configuration orchestration
  • Implement and mature Zero Trust models and micro-segmentation strategies for both on-prem and cloud environments
  • Serve as SME for key technologies, including Palo Alto, F5, AWS/Azure networking constructs, ForcePoint, Netskope, Zscaler, and Illumio
  • Act as the central point of contact for all network-security-related audits and regulatory reviews — internal, external, PCI, GDPR, and OCC examinations
  • Lead the end-to-end process for responding to audit requests, supplying evidence, coordinating walkthroughs, and managing communication with auditors and banking regulators
What we offer
What we offer
  • competitive pay
  • comprehensive medical, dental and vision coverage
  • retirement benefits
  • maternity/paternity leave
  • flexible work arrangements
  • education reimbursement
  • wellness programs
  • Fulltime
Read More
Arrow Right

OpenShift Architect

We are currently seeking a OpenShift Architect to join our team in Bangalore, Ka...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Must be a graduate (B.Tech/B.E./MCA or equivalent)
  • Post-graduate degree in Computer Science or related field is highly preferred
  • 10 to 15 years of experience in Infrastructure Engineering, Unix/Linux Systems Architecture, and Cloud-Native platforms
  • 5+ years of experience as a primary Architect leading enterprise-scale Red Hat OpenShift (OCP 4.x) environments
  • Red Hat Certified Architect (RHCA) – Level II or higher (Cloud/Datacenter)
  • Red Hat Certified Specialist in MultiCluster Management (EX432) or Automation (EX380)
  • Solutions Architect Professional (AWS SAP-C02, Azure AZ-305, or GCP Professional Architect)
  • Willingness to work in rotational shifts/on-call as a technical lead in a 24x7 support window
Job Responsibility
Job Responsibility
  • Serve as the global SME for RHEL/RHCOS, architecting kernel-level optimizations, advanced system tuning, and high-performance computing (HPC) configurations
  • Define the strategy for transitioning legacy UNIX (AIX/Solaris/HP-UX) and monolithic Linux workloads into containerized or virtualized environments on OpenShift
  • Lead architectural decisions for Bare Metal, VMware, and KVM integration
  • Design global, highly available OpenShift architectures across hybrid and multi-cloud environments (IPI/UPI)
  • Direct architectural oversight for ROSA (AWS) and ARO (Azure)
  • Drive the roadmap for OpenShift Virtualization (KubeVirt) to unify VM and container management
  • Architect software-defined networking (SDN/OVN) and enterprise storage strategies using OpenShift Data Foundation (ODF)
  • Architect global automation frameworks using Ansible Automation Platform and Terraform
  • Establish organizational standards for OpenShift GitOps (ArgoCD)
  • Expert-level implementation of Red Hat Advanced Cluster Management (RHACM) for global governance
  • Fulltime
Read More
Arrow Right

Senior Engineer - IT Support

At 8x8, we’re not just building great communications technology - we’re reimagin...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
8x8
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • Must possess relevant experience in IT Support or IT Operations roles
  • Demonstrated enthusiasm for AI tools and a habit of applying them to real work - not just awareness of them
  • A mindset of curiosity: you read about what's changing in IT and AI, and you experiment
  • The ability to work and think independently, be a self-starter, take initiative, and be highly effective with or without detailed work direction is an absolute must
  • Must be able to work non-traditional work hours as needed (including from home over high-speed Internet (not provided)), and occasional off hours to control interruptions to critical services and minimize business impact
  • Ability to work in-person at the 8x8 Singapore location full-time (5 days per week) with flexibility to cover any of the 7 days of the week (1 George St, #22-03/04 One George Street, Singapore 049145)
  • Ability to (potentially frequently) lift and move equipment weighing throughout the office for various business needs
  • The person in this position needs to occasionally move about inside the office to access and deploy IT equipment to multiple office floors, and within various physical conditions and environments
Job Responsibility
Job Responsibility
  • Actively use AI tools (including 8x8's approved platforms: Airia, Google Gemini, Claude) to accelerate your own work - from drafting documentation to triaging incidents and analyzing patterns
  • Identify and implement AI-driven workflow automation opportunities across IT operations processes
  • Contribute ideas and build lightweight automations using tools like n8n, BetterCloud, and AI-native integrations to reduce manual toil
  • Advocate for AI-assisted approaches within the team, sharing what works and helping colleagues build their own AI fluency
  • Support PCs and Macs, managing laptop builds and lifecycle processes
  • Own, administer, and continuously improve our endpoint security platform stack - including MDM (mobile device management), BYOD/Work Application Isolation, DLP (data loss prevention), Data Containment, and Zero Trust access controls - serving as the team's primary SME across these domains
  • Support user onboarding/offboarding and productivity tooling, leveraging automation where possible
  • Staff our end-user IT Support walk-up desk - real-time triage, assistance, and issue remediation
  • Act as the primary platform owner for MDM - evaluating, deploying, and administering mobile device management tooling for both corporate-owned and BYOD endpoints across Windows, macOS, iOS, and Android
  • Own and operate BYOD and Work Application Isolation platforms (e.g. Venn Blue Border, Ivanti/MobileIron), defining policy, onboarding workflows, and data containment boundaries to enable secure access from unmanaged personal devices
  • Fulltime
Read More
Arrow Right

Epic Principal DevSecOps Engineer

We are seeking an Azure Principal DevSecOps Engineering lead with extensive expe...
Location
Location
United States , Secaucus
Salary
Salary:
Not provided
questdiagnostics.com Logo
Quest Diagnostics
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in infrastructure engineering with a mastery of the Azure ecosystem
  • Expert-level proficiency in Terraform and Ansible to manage immutable infrastructure
  • Extensive experience building complex, multi-stage CI/CD workflows in GitHub Actions
  • Deep expertise in Hub-and-Spoke topology, Azure Private Link, and advanced firewall rule management
  • Experience with Azure Policy, Blueprints, and Cost Management (FinOps)
  • Proven track record of managing large scale Azure environments
  • Required: Bachelor’s degree in any professional area
Job Responsibility
Job Responsibility
  • Lead the design and deployment of high-availability, fault-tolerant Tier 1 applications, ensuring 99.99% uptime through multi-region strategies
  • Act as the Subject Matter Expert (SME) for core Azure services, including Compute, VNet peering, ExpressRoute, Storage Accounts, and advanced Azure Load Balancer/Application Gateway configurations
  • Design and oversee complex migrations and management of Azure SQL Managed Instances and PaaS DBs along with Azure Site Recovery (ASR) and Enterprise Azure Backups
  • Implement a 'Zero Trust' framework
  • Take full ownership of Azure Firewall (Premium), WAF, Identity Management (Entra ID), and automated compliance monitoring
  • Standardize enterprise-wide Infrastructure as Code (IaC) using Terraform (Advanced modules/Sentinel) and Ansible for configuration management at scale
  • Architect and govern the enterprise GitHub Actions strategy, focusing on security 'shifting left,' automated testing integration, and blue-green/canary deployment patterns
What we offer
What we offer
  • Day 1 Medical, supplemental health, dental & vision for FT employees who work 30+ hours
  • Best-in-class well-being programs
  • Annual, no-cost health assessment program
  • Blueprint for Wellness
  • healthyMINDS mental health program
  • Vacation and Health/Flex Time
  • 6 Holidays plus 1 MyDay off
  • FinFit financial coaching and services
  • 401(k) pre-tax and/or Roth IRA with company match up to 5% after 12 months of service
  • Employee stock purchase plan
  • Fulltime
Read More
Arrow Right

Senior Identity & Access GRC Engineer

Senior Identity & Access Governance Engineer is responsible for the design, impl...
Location
Location
Romania , Bucuresti
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–8+ years of experience in IAM or Identity Governance
  • Experience in building or transforming IAM capabilities
  • Hands-on experience with enterprise IAM platforms (SailPoint, Saviynt, OneIdentity, Okta, Microsoft Entra ID)
  • Experience with PAM solutions (CyberArk, BeyondTrust)
  • Strong knowledge of: RBAC / ABAC
  • Segregation of Functions (SoD)
  • SAML, OAuth2, OIDC
  • LDAP / Active Directory
  • MFA and conditional access policies
  • Experience in regulated environments (telecom, financial, utilities – preferred)
Job Responsibility
Job Responsibility
  • Define IAM governance framework, standards and control structure
  • Design IAM operational model
  • Translate IAM policies and standards into applicable technical controls
  • Design and maintain enterprise-wide RBAC models aligned with business roles and risk levels
  • Define and enforce Segregation of Functions (SoD) controls
  • Establish Key Risk Indicators (KRIs) and control effectiveness metrics
  • Maintain IAM documentation and record repository
  • Create an IAM maturity roadmap
  • Ensure alignment with Zero Trust principles
  • Design and optimize Joiner Mover Leaver processes
What we offer
What we offer
  • Hybrid working regime 2 days from the office, 3 days remote
  • Special discounts for Vodafone employees, Friends & Family offers
  • Demo telephone subscription - unlimited (voice and data)
  • Voucher for the purchase of a mobile phone
  • Medical subscription to a top private clinic & other medical benefits
  • Insurance for hospitalization and surgical interventions
  • Life insurance
  • Meal tickets
  • Bookster subscription
  • Participation in development programs and challenging projects in the leadership area
  • Fulltime
Read More
Arrow Right

Senior Cloud Security Assurance

The Senior Cloud Security Assurance role at NTT DATA involves developing secure ...
Location
Location
Romania , Cluj
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Security, Cybersecurity, or a relevant IT field (Master’s degree preferred)
  • Minimum 5-10 years experience in cybersecurity
  • Experience of at least 2+ years in security architecture, compliance, and cloud security roles
  • Working with frameworks such as ISO 27001, NIS/NIS2, or NIST CSF
  • Deep understanding of cloud security principles including management of GCP and AWS platforms
  • Familiarity with IAM, CASB, SIEM, and container security solutions
  • CISSP or SABSA certifications preferred
  • Cloud-specific certifications preferred (e.g., AWS Security Specialty, Azure Solutions ArchitectA)
  • Proven ability to collaborate across diverse technical teams, influencing senior stakeholders in an advisory capacity
  • Excellent communication and presentation skills for delivering complex technical concepts to non-specialist audiences
Job Responsibility
Job Responsibility
  • Translate business and compliance requirements into practical, well-documented security architecture designs using recognized frameworks (e.g., ISO 27001, NIST, CIS)
  • Develop, document, and maintain consistent secure architectural patterns with an emphasis on cloud security (AWS, GCP)
  • Implement threat-informed design principles, integrating zero trust architectures and defensive depth strategies to address security gaps and enhance resilience
  • Maintain alignment between security policies, enterprise architecture principles, and client expectations
  • Conduct comprehensive risk assessments and threat modeling to evaluate existing or proposed architectures for vulnerabilities
  • Provide actionable mitigation strategies informed by a risk-based approach and evolving threat intelligence data
  • Participate in or support incident response initiatives, aiding in root cause analysis and the development of post-incident recommendations
  • Act as a trusted advisor to clients by engaging in technical discussions to inform strategic security decisions
  • Collaborate cross-functionally with development, operations, and engineering teams to validate that security controls are effectively implemented across the development lifecycle
  • Deliver technical insights in presentations, workshops, and reports tailored to both technical and executive audiences
What we offer
What we offer
  • Smooth integration and a supportive mentor
  • Choose from Remote, Hybrid or Office work opportunities
  • Projects have different working hours to suit your needs
  • Sponsored certifications, trainings and top e-learning platforms
  • Private Health Insurance
  • Individual coaching sessions or accredited Coaching School
  • Epic parties or themed events
Read More
Arrow Right