Senior Engineer - Network

Johnson Controls

Pune District

On-site

INR 2,500,000 - 4,000,000

Full time

6 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Johnson Controls is seeking a Senior Zero Trust Network Security Engineer to lead design and operation of the global security estate from Pune. You will specialize in Zscaler platforms (ZIA, ZPA, DLP, AI Security) and drive security policy, automation, and cross-team collaboration.

The role requires hands-on expertise with Fortinet and cloud security, working across datacenters, plants, and branches to reduce attack surface and ensure zero trust compliance.

Qualifications

  • Deep hands-on Zscaler experience including ZIA and ZPA.
  • Security policy design and SSL inspection experience.
  • Strong knowledge of Fortinet and cloud security services.

Responsibilities

  • Lead design and operation of security infrastructure globally.
  • Build and tune ZIA/ZPA access policies and DLP controls.
  • Coordinate with IT and security teams for incidents and upgrades.
  • Drive automation and asset management for security infra.

Skills

Zscaler ZIA
Zscaler ZPA
Zscaler DLP
Zscaler AI Security
Fortinet FortiGate
SSL Inspection
DLP Dictionaries
Cloud Security
Microsegmentation
Policy Design

Tools

Azure
AWS
Fortinet Admin
Guardicore

Job description

Job Title: Senior Zero Trust Network Security Engineer

Location- Pune

What you will do:

As part of JCI's ongoing and exciting digital transformation strategy, as a Senior Zero Trust Network Security Engineer you will act as a technical lead and subject matter expert across our global Enterprise Security estate. You will work with the wider global network and IT teams, business partners and managed service vendors to design, engineer and operate the physical and logical Enterprise Security infrastructure (Zscaler Secure Service Edge, firewalls, remote access platforms, cloud proxies, microsegmentation (Zscaler and Guardicore), cloud security & perimeter security devices etc.) portfolio in Johnson Controls. This is a senior, hands-on role with a strong emphasis on our Zscaler platform - including Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), Zscaler Data Loss Prevention (DLP) and Zscaler AI Security - underpinning JCI's Zero Trust program.

Our Network infrastructure consists of a large global footprint of more than one thousand sites supporting over one hundred thousand employees ranging from datacenters, manufacturing plants, sales branches, and customer contact centers with exposure to a wide range of exciting network technologies and vendors such as Zscaler (ZIA, ZPA, DLP, AI Security and Microsegmentation), Fortinet, Zscaler ZT Branch Connector, Akamai Guardicore, Imperva WAF, Forescout, Microsoft Azure, Amazon AWS and many more partners.

The role will be working as part of a global high-performance team focused on continuous network security infrastructure delivery and upgrades, maintenance and operational activities, delivery of security configurations and services, incident and change management, network security design and compliance, equipment ordering, scheduling, security device life cycle management, operational handover, vendor management and network security infrastructure asset management.

How you will do it:
  • Manage and implement network security infrastructure
  • Serve as senior engineer and design authority for the Zscaler platform - ZIA, ZPA, Inline DLP, AI Security (Secure AI Access), Digital Experience (ZDX) and Zscaler Microsegmentation
  • Build and tune ZIA/ZPA access policies, SSL inspection, DLP dictionaries and AI Security controls, and lead the migration of users to full SSE capability
  • Firewall, IPS/IDS and remote access configuration and rule management across the Fortinet estate (FortiGate, FortiManager, FortiAnalyzer)
  • Cloud-based Web Application Firewall (Imperva WAF), microsegmentation and workload protection (Zscaler and Akamai Guardicore), and perimeter/geo-blocking controls
  • Design, build, operate and automate security solutions and processes to protect the integrity of the organization's networks, systems, applications and data.
  • Work closely with Security team partners/Business Relationship Managers , Field IT leadership and managed service suppliers to ensure successful identification and timely delivery of network security services to the business.
  • Participate and consult(in partnership with the Network lifecycle refresh team) the identification, selection and prioritization of security infrastructure refresh components to ensure alignment with risk avoidance, strategic goals and organizational priorities.
  • Respond to security incidents, including data breaches, and coordinate with other IT teams to mitigate the impact of any security breaches.
  • Conduct regular security audits to identify vulnerabilities in the network and implement measures to address them.
  • Partner with IT audit to remediate security gaps in a timley manner.
  • Drive and develop automation opportunities for the management of security infrastructure.
  • Manage the global Network security infrastrucutre inventory in CMDB.
  • Ensure timely quote turnaround for security infrastructure delivery.
  • Ensure all network asset data is accurate and support contracts are in place.
  • Provide technical leadership and mentorship to engineers and operations staff, set standards and act as an escalation point for complex incidents and designs.
  • Lead delivery of the Zero Trust program, including microsegmentation of crown-jewel applications with Zscaler and Guardicore, geo-blocking and reduction of the internet-facing attack surface.
What we look for :
Required
  • Deep, hands-on expertise with the Zscaler platform is essential - Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), Zscaler DLP and Zscaler AI Security (Secure AI Access), including policy design, SSL inspection, App Connectors/Service Edges and tenant administration.
  • Strong network infrastructure security background across both on-prem physical components (firewalls, IDS/IPS, remote access) and cloud security services (Zscaler, Azure, AWS), plus experience with Zscaler ZDX and microsegmentation (Zscaler and/or Guardicore).
  • Strong knowledge of the Fortinet security suite (FortiGate, FortiManager, FortiAnalyzer) and experience testing an
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Engineer - Network
Senior Engineer - Network

Johnson Controls, Inc. • Pune District

On-site
INR 350,000 - 520,000
Senior Engineer - Network
Senior Engineer - Network

YDU JC Air Cond & Ref Inc.- Dubai • Pune District

On-site
INR 900,000 - 1,300,000
Senior Engineer
Senior Engineer

Saur Energy International • Pune District

Hybrid
INR 2,500,000 - 4,000,000
Lead Platform Engineer
Lead Platform Engineer

5 Star Recruitment • Hyderabad

On-site
INR 1,800,000 - 2,400,000
Sr Engineer Security Engineering Zscaler
Sr Engineer Security Engineering Zscaler

CBTS • Chennai District

On-site
INR 900,000 - 1,300,000
Cisco Enterprise Networking & Zscaler ZIA/ZPA Network Engineer
Cisco Enterprise Networking & Zscaler ZIA/ZPA Network Engineer

UST • Ahmedabad District

On-site
INR 1,500,000 - 2,300,000
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

Theomnihire • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

TOCUMULUS • Bengaluru

On-site
INR 3,000,000 - 6,000,000
DIGITAL SECURITY - Threat Prevention - NETWORK SECURITY - Proxy
DIGITAL SECURITY - Threat Prevention - NETWORK SECURITY - Proxy

Zensar Technologies • Hyderabad

On-site
INR 4,000,000 - 6,500,000
Network Architect / Infrastructure Architecture
Network Architect / Infrastructure Architecture

Tecnoprism • Hyderabad

On-site
INR 3,500,000 - 5,500,000