Disclaimer: Hunt UK Visa Sponsors aggregates job listings from publicly available sources, such as search engines, to assist with your job hunting. We do not claim affiliation with Smartedge Solutions. For the most up-to-date job details, please visit the official website by clicking "Apply Now."
The Role
As a Netskope Technical Architect you will serve as the subject matter expert for Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), and Data Loss Prevention (DLP) technologies. You will work cross-functionally to architect scalable security solutions, lead incident response efforts, and drive continuous improvement in our cloud security posture.
Your responsibilities:
· Work with teams to understand product requirements and build Internet Security policies to protect corporate endpoints.
· Define, enable, and review Internet Security policies and traffic steering configurations using Secure Web Gateway (SWG) and Cloud Access Security Broker (CASB).
· Analyse data exfiltration risks and design Data Loss Prevention (DLP) policies to mitigate threats.
· Collaborate with Security Operations to enhance security requirements, apply ad-hoc site restrictions, and manage exception requests.
· Apply advanced knowledge of SSL inspection to define secure decryption bypass policies without compromising protection.
· Resolve DLP and SSL inspection issues by working closely with end users and SOC teams.
· Administer and maintain the Netskope tenant, including upgrades and performance optimization.
· Design and build a Quantum-ready Internal PKI, addressing gaps in existing infrastructure and integrating with Certificate Lifecycle Management solutions.
· Define certificate templates and integrate cloud Hardware Security Modules (HSM) with Certificate Authorities for enhanced cryptographic security.
· Establish infrastructure and rulesets for Zero Trust Network Access (ZTNA) and future VPN solutions.
· Discover VPN-dependent applications and plan firewall changes to support ZTNA implementation.
· Collaborate with stakeholders and application support teams to deliver ZTNA solutions.
· Support network segmentation projects with kill-switch requirements for cyber resilience.
· Manage proxy access control file changes and coordinate with network teams for implementation.
· Partner with enterprise compute teams for deployment, upgrades, and maintenance of Internet Security tools on endpoints.
· Manage EntraID enterprise apps required for Internet Security tools, ensuring SSO, SCIM, and IDP functionality.
· Mentor L1/L2 engineers and contribute to security automation initiatives.
Your Profile
Essential skills/knowledge/experience:
· Experience on the CASB and Internet Gateway security tools, especially Netskope, ZTNA, DLP, Threat Protection, SSL/TLS Inspection, Network Integration, Identity Integration
· API Automation & Scripting, CSPM, Infrastructure as Code (IaC), Netskope Certified Cloud Security Architect (NSK300) or equivalent.