Ework Group
Ework Group

Security Review and Approval Zia

33 - 35 PLN/ godz.B2B
MidFull-time·B2B
#440928·Dodano 12 dni temu·0
Źródło: nofluffjobs.com
Aplikuj szybko

Tech Stack / Keywords

DNSHTTPTLSProxyZscalerFirewallZscaler Internet Access (ZIA)

Wymagania

  • Hands-on experience reviewing or administering Zscaler Internet Access (ZIA) policies, application access, and security exceptions.
  • Technical knowledge of networking, DNS, HTTP/HTTPS, TLS, proxy and firewall controls, identity-provider integration, single sign-on, multifactor authentication, and device posture.
  • Ability to evaluate least-privilege access, data-protection requirements, policy conflicts, and compensating controls.
  • Experience with change management, approval records, audit evidence, and communication of security decisions to technical and business stakeholders.
  • Relevant degree or equivalent practical experience is desirable.
  • Preferred: Zscaler training or certification, security certification, and experience with enterprise service-management tools.

Obowiązki

  • Review requests affecting URL filtering, cloud application controls, cloud firewall rules, data loss prevention (DLP), and threat-protection policies.
  • Assess requested destinations, affected users, permitted activities, and potential exposure of organizational data.
  • Evaluate website allowlisting and internet-access exceptions for business needs, domain specificity, destination reputation, and data sensitivity.
  • Require requests to specify relevant domains, URLs, addresses, ports, and protocols to avoid broad access.
  • Assess each request for unauthorized access, data exposure, weakening of security controls, and potential service disruption.
  • Record decisions as approved, approved with conditions, rejected, or escalated with explanations.
  • Ensure approved requests include scope, testing evidence (logs), rollback procedures, authorization, and ownership.
  • Refer high-risk exceptions to designated security authority and business risk owner.
  • Use policy, activity, and audit records to verify changes and support investigations.
  • Maintain approval and exception register with references, justifications, risks, approvers, conditions, and review dates.
  • Coordinate periodic reviews to identify unused access and expired exceptions.
  • Collaborate with Zscaler operations, identity and access management, application owners, and security operations team to resolve issues.
Ework Group

Ework Group

65 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj szybko