Remote Access Engineer (Citrix NetScaler & Zscaler Private Access) 100% (f/m/d)

Julius Baer

Madrid

Presencial

EUR 60.000 - 90.000

Jornada completa

14 días+

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Descripción de la vacante

Julius Baer seeks an experienced Remote Access Engineer to architect, operate, and evolve secure remote access. You will manage Citrix NetScaler Gateway and Zscaler Private Access platforms, implement MFA and conditional access, and drive a Zero Trust Network Access strategy across a regulated financial services environment.

The role spans design, implementation, and operational readiness with IAM, Endpoint Management, and Global IT teams to deliver secure, scalable access while ensuring

Formación

  • University degree in Computer Science or Information Security, or equivalent practical experience.
  • 3–5 years hands-on IT security or infrastructure engineering, with focus on secure remote access, identity management, authentication technologies, and endpoint security.
  • Deep expertise in Citrix NetScaler ADC and NetScaler Gateway, incl. AAA policies, SSL-VPN, high-availability deployments, authentication flows, and GUI/CLI troubleshooting.
  • Knowledge of Zero Trust Network Access (ZTNA) concepts; ZPA experience is a plus.
  • Scripting/automation skills in PowerShell, Python, or Bash; REST APIs and Citrix Nitro API experience.

Responsabilidades

  • Administer, configure, and improve Citrix NetScaler ADC and Gateway infrastructure for high availability and resilience.
  • Manage SSL‑VPN and clientless access services, including virtual server configurations and policies.
  • Design and implement secure authentication and conditional access policies based on user identity and context.
  • Support ZPA rollout and transition toward a modern Zero Trust Architecture; design, test, integrate, and ensure readiness.
  • Develop expertise across NetScaler Gateway and ZPA to support the remote access roadmap and secure connectivity.
  • Coordinate upgrades and patches following change management in a regulated environment.
  • Provide 2nd/3rd level engineering support and participate in 24/7 on‑call rotation.

Conocimientos

Citrix NetScaler ADC
NetScaler Gateway
Zscaler Private Access
MFA integration
Identity management
PowerShell
Python
Bash
REST APIs
Azure AD / Active Directory
ZTNA concepts

Educación

CS or Information Security degree or equivalent
University degree or higher technical education

Herramientas

Citrix Nitro API
Citrix NetScaler ADC

Descripción del empleo

At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let’s shape the future of wealth management together.

We are seeking an experienced Remote Access Engineer (Citrix NetScaler & Zscaler Private Access) to join our global security engineering team. As the ideal candidate, you possess deep expertise in secure remote access technologies, strong authentication And Identity Integration Skills, And Hands-on Experience Operating Enterprise-grade remote connectivity platforms within a regulated financial services environment. You are comfortable working across infrastructure, security, endpoint, and identity domains, ensuring that employees, contractors, and approved third parties can securely access corporate resources.

Your Primary Responsibilities Will Involve Architecting, Operating, And Continuously improving the Bank’s Citrix NetScaler Gateway infrastructure, integrating and maintaining multi-factor authentication solutions, enforcing secure access and conditional access policies, and ensuring the resilience, security, and compliance of the Bank’s remote access services.

In addition, you will contribute to the design, implementation, and operationalisation of the Bank’s future Zscaler Private Access (ZPA) platform and support the evolution of the remote access landscape towards a modern Zero Trust Network Access (ZTNA) architecture. Working closely with IAM, Endpoint Management, Security Operations, and Global IT teams, you will help deliver secure, reliable, and scalable remote connectivity aligned with regulatory requirements and the Bank’s strategic security roadmap.

Beyond the remote access domain, you will also have the opportunity to contribute to and gain hands‑on experience with other security services managed by the team, including Internet Proxy, Multi‑Factor Authentication (MFA), Privileged Access Management (PAM), Public Key Infrastructure (PKI), and Secure Mail Gateway solutions.

This provides an excellent opportunity for candidates looking to broaden their expertise across multiple security domains and further develop their security engineering career within a collaborative and highly skilled team.

YOUR CHALLENGE
  • As part of a dedicated security engineering team, administer, configure, and continuously improve the Bank’s Citrix NetScaler ADC and NetScaler Gateway infrastructure, ensuring high availability, performance, scalability, and operational resilience across primary and disaster recovery environments
  • Manage and maintain SSL-VPN and clientless access services, including virtual server configurations, authentication policies, rewrite rules, responder policies, and traffic steering mechanisms
  • Design, implement, and maintain secure authentication and conditional access policies based on user identity, device type, network location, and contextual risk factors
  • Participate in the design, implementation, and rollout of the Bank’s Zscaler Private Access (ZPA) platform, supporting the transition towards a modern Zero Trust Network Access architecture and contributing to technical design, testing, integration, and operational readiness activities
  • Develop and maintain expertise across both Citrix NetScaler Gateway and Zscaler Private Access (ZPA) technologies, supporting the Bank’s strategic remote access roadmap and ensuring secure, seamless connectivity across multiple access platforms
  • Plan, coordinate, and execute infrastructure upgrades, security patches, policy changes, and platform enhancements in accordance with established change management processes within a regulated financial environment
  • Provide 2nd and 3rd level engineering support for the Bank’s remote access platforms, acting as an escalation point for complex incidents and participating in a shared 24/7 on‑call rotation for critical services
YOUR PROFILE
  • Highly proactive, solution‑oriented, and capable of independently assessing, prioritising, and resolving complex technical challenges in a structured and efficient manner
  • Strong analytical and conceptual thinking skills with a high level of attention to detail, particularly when working within business‑critical and highly regulated environments

Willingness and curiosity to learn new technologies and expand expertise across multiple security domains, contributing to the continuous evolution of the Bank’s security services

  • University degree or higher technical education (university of applied sciences, federal diploma) in Computer Science, Information Security, or a related discipline — or equivalent practical experience
  • Minimum 3–5 years of hands‑on experience in IT Security or Infrastructure Engineering, with a strong focus on secure remote access, identity management, authentication technologies, and endpoint security
  • In‑depth expertise in Citrix NetScaler ADC and NetScaler Gateway, including hands‑on experience with AAA policies, virtual server configuration, SSL‑VPN services, high‑availability deployments, authentication flows, and troubleshooting via both GUI and CLI
  • Knowledge of Zero Trust Network Access (ZTNA) concepts and architectures; experience with Zscaler Private Access (ZPA) or comparable ZTNA technologies is considered an advantage
  • Practical scripting and automation skills using one or more of PowerShell, Python, or Bash, including automation of certificate validation, health checks, log analysis, and operational tasks through REST APIs, Citrix Nitro API, or comparable interfaces
  • Practical experience with Microsoft Entra ID (Azure AD), Active Directory, and hybrid identity environments
  • Proven experience integrating remote access platforms with Multi‑Factor Authentication (MFA) solutions and modern identity providers
  • Strong understanding of endpoint compliance validation, device trust concepts, BYOD access models, and modern remote access security architectures
  • Experience working within financial services or other highly regulated industries, with a solid understanding of regulatory and compliance requirements
  • Experience supporting and operating business‑critical infrastructure platforms with a focus on availability, resilience, performance, and security
  • Strong communication and collaboration skills, with the ability to work effectively across global teams and translate technical concepts into practical solutions
  • Fluent written and spoken English (B2/C1)
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Remote Access Engineer (Citrix NetScaler & Zscaler Private Access) 100% (f/m/d)
Remote Access Engineer (Citrix NetScaler & Zscaler Private Access) 100% (f/m/d)

Bank Julius Bär & Co. Ltd. • España

A distancia
USD 120.000 - 160.000
Remote Access Engineer — Citrix NetScaler & Zscaler ZPA
Remote Access Engineer — Citrix NetScaler & Zscaler ZPA

Bank Julius Bär & Co. Ltd. • España

A distancia
USD 120.000 - 160.000
Zero-Trust Remote Access Engineer: Citrix NetScaler & ZPA
Zero-Trust Remote Access Engineer: Citrix NetScaler & ZPA

Julius Baer • Madrid

Presencial
EUR 60.000 - 90.000
Information Security Solution Architect - Network Security (m/f/d)
Information Security Solution Architect - Network Security (m/f/d)

Allianz Services • Barcelona

Híbrido
EUR 70.000 - 110.000
Hybrid work model with abroad days
Bonus scheme
Pension
+3
CYBERSECURITY SPECIALIST (F/M/X)
CYBERSECURITY SPECIALIST (F/M/X)

Michael Page • Bilbao

Presencial
EUR 45.000 - 65.000
Network Administrator (m/f/d)
Network Administrator (m/f/d)

SYNLAB International • Barcelona

Presencial
EUR 65.000 - 95.000
Challenging work in a fast-growing company
Friendly working atmosphere
Opportunities for independent working
IT Application Support Specialist – 2nd Level Support 100% (f/m/d)
IT Application Support Specialist – 2nd Level Support 100% (f/m/d)

Julius Baer • Madrid

Presencial
EUR 42.000 - 54.000
Senior Cybersecurity Engineer for Secure Access Network
Senior Cybersecurity Engineer for Secure Access Network

Roche • Madrid

Presencial
EUR 60.000 - 80.000
Senior Cybersecurity Engineer for Secure Access Network
Senior Cybersecurity Engineer for Secure Access Network

F. Hoffmann-La Roche AG • Madrid

Presencial
EUR 60.000 - 80.000
Network Security Engineer (m/f/d)
Network Security Engineer (m/f/d)

Liebherr Group • Madrid

Híbrido
EUR 50.000 - 70.000
Competitive compensation
Flexible working model
Meal vouchers
+2