Responsibilities:- Manage and coordinate the implementation, administration, and continuous tuning of AppGate SDP platform components in support of broader enterprise Zero Trust Network Access (ZTNA) objectives
- Architect, develop, and enforce dynamic, identity-centric security policies, granular micro segmentation rules, and context -aware trusted access models
- Translate complex organizational security requirements into scalable, effective ZTNA policies across the environment
- Lead technical workshops, requirements gathering, and workflow creation for securely and seamlessly onboarding mission application to the ZT Architecture
- Integrate ZTNA tools (AppGate) with broader security ecosystem components including IAM, PAM, and SIEM solutions to achieve end-to-end Zero Trust automation and continuous monitoring
- Mentor a team of engineers and analysts responsible for AppGate operations
- Develop comprehensive solution documentation, operational runbooks, and policy guidelines, which contributing to project tracking and reporting
- Interface with client stakeholders to ensure all ZTNA deployments and access policies rigorously align with compliance, security, and operational mission requirements
Qualifications:- A minimum of five years of experience with network security technology and diverse Zero Trust Network Access (ZTNA) solutions, including hands-on AppGate SDP implementation experience; U.S. Federal government consulting experience preferred
- Bachelor's degree from an accredited college/university
- Two years of leadership or managerial experience
- Broad, vendor-agnostic knowledge of ZTNA platforms and Software-Defined Perimeter (SDP) architectures
- Experience designing, implementing, and managing complex, context-based access policies and segmentation strategies at an enterprise scale
- Strong understanding of Zero Trust principles and deployment patterns, with familiarity with relevant DoD frameworks, NIST 800-207, and large-scale enterprise environments
- Experience integrating ZTNA solutions with comprehensive Identity and Access Management (IAM), Privileged Access Management (PAM), and ITSM systems
- Preferred certifications: CISSP, CCSP, GIAC, AppGate
- Ability to travel as required to support firm engagements
- Applicant must possess a U.S. Government Secret clearance
KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work .
Follow this link to obtain salary ranges by city outside of CA:
https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26