Consultant - Network Security

Brak informacji o wynagrodzeniu
SeniorFull-time
#449499·Dodano 7 dni temu·0
Źródło: justjoin.it
Aplikuj teraz

Tech Stack / Keywords

Check PointPalo Alto NetworksZscaler Internet AccessZscaler Private AccessCloudflare Magic TransitWAFBGPIPsecTerraformAnsible

Firma i stanowisko

EPAM is a global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, they empower clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.

Wymagania

  • 5+ years of experience in network security architecture and operations focusing on cross-border or multi-region connectivity.
  • Expertise in Check Point Security Gateways, Palo Alto Networks next-generation firewalls, and Panorama management.
  • Proficiency in Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
  • Skills in Cloudflare Magic Transit/Magic WAN, WAF Management, and DDoS mitigation.
  • Knowledge of cloud hybrid connectivity including Site-to-Site VPN, Cloud Interconnect, and BGP routing.
  • Background in SD-WAN, MPLS, and SASE architectures with policy-based routing and strong encryption.
  • Understanding of regulatory and compliance frameworks related to data residency, TLS inspection, and lawful intercept.
  • Familiarity with SIEM platforms and telemetry normalization.
  • Competency in Terraform, Ansible, and vendor APIs for policy-as-code and CI/CD pipelines.
  • Capability to lead L3/L4 incident response and conduct root cause analysis.

Obowiązki

  • Define trust zones, routing boundaries, and inter-zone controls for regional and Global Network.
  • Produce HLD/LLD, threat models, and control mappings aligned to standards and regulation.
  • Design and operate dual-vendor firewall perimeters with HA/cluster design and NAT domain strategy.
  • Engineer ZIA for identity-aware egress controls and inline CASB/DLP.
  • Implement ZPA for zero-trust access and app segmentation.
  • Design and deliver Site-to-Site VPN (IPSec), Cloud Interconnect, and BGP-based dual-tunnel HA.
  • Deploy Cloudflare Magic Transit/Magic WAN, WAF Management, and rate limiting.
  • Engineer SD-WAN/MPLS/SASE paths with policy-based routing and strong encryption.
  • Translate regulatory requirements into technical controls for logging, data residency, TLS inspection, and lawful intercept.
  • Normalize telemetry from firewall, Zscaler, and Cloudflare platforms into SIEM.
  • Lead L3/L4 incident response, coordinate containment, and drive RCAs.
  • Manage firewall, Zscaler, and Cloudflare policy through Terraform/Ansible and vendor APIs; implement CI/CD with policy linting and unit tests.

Benefity

  • Hybrid work mode with opportunity to work remotely within Poland.
  • Chance to work abroad up to 60 days annually.
  • Business-driven relocation opportunities.
  • Career development programs including mentoring and certification (Anthropic, Gemini, GCP, Azure, AWS).
  • English language classes.
  • Stable pay and participation in Employee Stock Purchase Plan with 15% discount.
  • Benefits package including health insurance, multisport, and shopping vouchers.
  • Referral bonuses up to $2,000.
  • Offices with entertainment and relaxation zones, table tennis, football, free snacks, and coffee.
  • Corporate, social, and well-being events.
Elastyczne godziny
Pakiet relokacyjny
Budżet konferencyjny
Dofinansowanie szkoleń
Kursy językowe
Karta sportowa
Opieka zdrowotna
Ubezpieczenie
Darmowe przekąski

Inne informacje

By applying or submitting the recruitment application, you agree to the processing of your personal data by EPAM Systems (Poland) sp. z o.o. located at Fabryczna 1A, Kraków, as the data controller for the recruitment process as per the Privacy Policy.

EPAM Systems

EPAM Systems

1279 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz