Network Security SME – Firewall / VPN (Zscaler ZPA) / Proxy About the Role We are looking for a hands-on Network Security SME to own end-to-end implementation, troubleshooting, and support across - Firewall, VPN, and Proxy security stack - with a strong focus on Zscaler Private Access (ZPA) . This is a technical, individual-contributor role for someone who wants to stay deep in hands-on security engineering rather than move into people management. This is a hands-on technical SME role, not a leadership/managerial position - please apply only if you are currently working hands-on with the technologies below. Must-Have Requirements (please do not apply if you do not meet these) 10+ years of hands-on cybersecurity experience specifically in Firewall, Proxy, VPN, and IPS . Proven end-to-end implementation experience with Zscaler Private Access (ZPA) - this is mandatory, not just administration or day-to-day support. Deep, hands-on troubleshooting experience with Zscaler VPN and firewall platforms (Palo Alto and/or Cisco). Strong working knowledge of network protocols: TCP/IP, UDP, DHCP, FTP, SFTP, SNMP, SMTP, SSH, SSL, DNS, RDP, HTTP/HTTPS. Experience with proxy technologies: Forward, Reverse, Transparent, and Web 2.0 proxies, including SSL interception/MITM and data leakage prevention. Key Responsibilities Own hands-on implementation, customization, coding, and support of Firewall (Palo Alto, Cisco), VPN (Zscaler ZPA), and Proxy solutions. Perform deep troubleshooting on Zscaler VPN and other firewall/proxy platforms. Monitor network performance, troubleshoot issues, and deploy solutions. Act as SME on complex technical issues across Firewall, VPN, and Proxy - including assessing current security posture, documenting current/future state, and providing roadmap/gap analysis. Provide front-line technical support to end users on access-related issues. Log and track incidents/service requests via Service Management tools (e.g., ISM, ServiceNow, BMC Remedy), following ITIL incident and problem management practices. Good to Have Experience with Checkpoint firewalls. Knowledge of Linux and web/application servers (Apache/IIS/Tomcat/WebSphere). Familiarity with Security Incident Event Management tools (e.g., IBM QRadar SIEM). Working knowledge of Network Protocol Analyzers (tcpdump, Wireshark). Exposure to financial services / banking domain security environments. Qualifications Bachelor's degree in Engineering or a related field. Minimum 10 years of relevant cybersecurity experience (10–13+ years preferred). Strong written and verbal communication skills; customer-focused with the ability to multi-task and prioritize incidents/requests