Sr. Zero Trust Architect/Engineer

Soni Resources

• $110K — $125K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years of experience in IT infrastructure, cybersecurity, or security engineering.
  • 5+ years designing enterprise-level security architectures.
  • 3+ years leading Zero Trust implementations or SASE deployments.
  • Experience in regulated industries like Life Sciences, Healthcare, or Financial Services is preferred.
  • Bachelor's degree in Cybersecurity, Computer Science, or related field; Master's preferred.
  • Deep expertise in SASE/ZTNA platforms and micro-segmentation.
  • Proficient in industry frameworks like NIST SP 800-207 and CISA Zero Trust Maturity Model.

Responsibilities

  • Develop and maintain the Zero Trust architecture roadmap aligned with industry standards.
  • Lead enterprise-wide Zero Trust transformation initiatives across various environments.
  • Architect solutions to replace legacy VPNs with micro-segmentation and ZTNA.
  • Design secure landing zones and identity controls for major cloud platforms like Azure and AWS.
  • Establish continuous verification capabilities and support incident response activities.
  • Translate regulatory requirements into technical controls and communicate risks to leadership.

Benefits

  • Collaborative work environment across multiple IT teams.
  • Opportunity to lead transformation initiatives in modern security architecture.
  • Engagement with cutting-edge security technologies and frameworks.
  • Work in a role that influences enterprise-wide security measures.
  • Support for ongoing professional development and certifications.
Full Job Description
The Senior Zero Trust Architect / Engineer is responsible for designing, implementing, and governing the organization's Zero Trust security strategy across users, devices, applications, networks, data, and cloud environments. Serving as a senior technical leader, this role drives the adoption of modern security architectures that continuously verify trust, minimize attack surfaces, enforce least-privilege access, and protect critical enterprise assets.

The candidate must possess deep expertise in identity security, network security, multi-cloud security, endpoint protection, and enterprise security architecture, with hands-on experience implementing Secure Access Service Edge (SASE) and Zero Trust Network Access (ZTNA) platforms.

This position partners closely with Infrastructure, Cloud, Digital Workplace, Enterprise Applications, Compliance, and Cybersecurity teams to ensure security controls align with business objectives while supporting a modern, flexible workforce.

Key Responsibilities
  • Architecture & Strategy: Develop and maintain the enterprise Zero Trust architecture roadmap aligned with NIST SP 800-207, CISA Zero Trust Maturity Model, and industry best practices.
  • Transformation Leadership: Lead enterprise-wide Zero Trust transformation initiatives across multi-cloud, on-premises, and hybrid environments. Define security reference architectures, standards, policies, and design principles.
  • Network & Access Security: Architect micro-segmentation, software-defined perimeter (SDP), and ZTNA solutions to systematically replace legacy VPN architectures across corporate networks, data centers, and third-party endpoints.
  • Multi-Cloud Security: Design and implement secure landing zones, cloud-native posture management, and identity controls across primary hyperscaler platforms (Azure, AWS).
  • Security Operations & Automation: Establish continuous verification capabilities, support incident response/threat hunting activities, and implement automation solutions to enhance security operations.
  • Governance & Leadership: Translate regulatory requirements into technical controls, measure Zero Trust maturity metrics/KPIs, and communicate architectural risks and recommendations to executive leadership.


Requirements & Qualifications
  • Professional Experience: 10+ years of total IT infrastructure, cybersecurity, or security engineering experience.
  • Architectural Experience: 5+ years designing enterprise-level security architectures.
  • Zero Trust Leadership: 3+ years directly leading Zero Trust implementations, SASE deployments, or enterprise identity modernization programs.
  • Industry Experience: Experience in highly regulated industries (e.g., Life Sciences, Healthcare, Financial Services) is preferred.
  • Education: Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related technical discipline (Master's preferred).
  • Zero Trust & Edge Security: Deep experience with enterprise SASE / ZTNA platforms (Secure Web Gateway, Private Access, Digital Experience Monitoring), Micro-segmentation, and SDP.
  • Identity & Access Management: Modern Identity Providers (IdP), Directory Services, Conditional Access, Identity Governance, Privileged Access Management (PAM/PIM), and SSO protocols (SAML, OAuth 2.0, OIDC).
  • Cloud & Security Tooling: Enterprise EDR/XDR, Data Loss Prevention (DLP), MDM/Unified Endpoint Management, SIEM integration, and primary public cloud platforms (AWS, Azure).
  • Frameworks & AI: Proficiency in NIST SP 800-207, NIST CSF, CISA Zero Trust Maturity Model, and practical working knowledge of enterprise AI tools used to optimize security operations.
  • Certifications (Preferred): CISSP, CCSP, GIAC, Security+, or vendor-specific cloud architecture and SASE/ZTNA credentials.


Compensation: $110,000 to $125,000 annually
Compensation is based on a range of factors that include relevant experience, knowledge, skills, other job-related qualifications.

Similar Jobs

More Jobs at Soni Resources

More Information Technology Jobs

Find similar Sr. Zero Trust Architect/Engineer jobs: