Illumio Zero Trust Segmentation Platform Engineer - TS/SCI CI Poly

Engg

Metro Manila

On-site

PHP 7,505,000 - 11,257,000

Full time

10 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

GuidePoint Security is seeking an Illumio Zero Trust Segmentation Platform Engineer to architect and implement segmentation policies across on-prem, virtualized, and cloud environments. You will map dependencies, create labeling frameworks, and enforce zone-based controls while integrating Illumio with SIEM, CMDB, and automation pipelines.

The role focuses on troubleshooting, policy optimization, and collaborating with security architects to align with NIST 800-207.

Qualifications

  • Active TS/SCI clearance; willingness to take a polygraph exam.
  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.
  • 3+ years of Linux/Windows systems, virtualization, and cloud environments (AWS, Azure, or GCP).
  • 2+ years building solutions for regulated mission-critical environments.
  • 1+ year experience with infrastructure automation tools (Ansible, Terraform).
  • 1+ year experience with REST APIs, scripting, or automation frameworks.

Responsibilities

  • Assist in design, deployment, configuration, and optimization of Illumio Core and Edge across environments.
  • Architect and implement Zero Trust Segmentation policies.
  • Develop Illumio workflows, dashboards, and segmentation models for workloads.
  • Integrate Illumio with SIEM/SOAR, CMDB, vulnerability scanners, and automation pipelines.
  • Conduct traffic flow analysis and build policy recommendations to reduce attack surface.
  • Troubleshoot performance, VEN issues, policy conflicts, and platform health.
  • Partner with workload owners to onboard workloads and validate segmentation plans.
  • Lifecycle management: upgrades, health checks, certificates, and policy governance.
  • Collaborate with security architects to align policies with Zero Trust and NIST 800-207.
  • Contribute to standards, documentation, and playbooks.
  • Embrace AI tools to improve efficiency and outcomes.

Skills

Cybersecurity
Cloud security
Linux/Windows
Automation tooling
REST APIs
Scripting

Education

Associate/Bachelor/Master IT degree

Tools

Ansible
Terraform
ServiceNow
SIEM/SOAR
Python

Job description

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

Illumio Zero Trust Segmentation Platform Engineer General Description

We are looking for a skilled Illumio Zero Trust Segmentation Platform Engineer to support the architecting and implementation of Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls. This role will assist in the design, deployment, configurations and optimization of Illumio Core and Illumio Edge across on-premises, virtualized and cloud environments. The Zero Trust Segmentation Platform Engineer will develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications. Integrate Illumio with SIEM, SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines. Conduct traffic flow analysis using Illumio VEN telemetry and assist in building policy recommendations to reduce attack surface and limit east-west movement. Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure. Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes. Perform lifecycle management, including upgrades, health checks, certificate operations, and policy governance. Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies. Contribute to architectural standards, documentation, and enterprise security playbooks.

About the Federal Region

GuidePoint Security is the trusted partner that defense and civilian government agencies rely on to lead their cybersecurity efforts and protect their organizations. We help solve their most complex security challenges, mature security architectures, and proactively reduce risk. Our purpose-built solutions ensure compliance, safeguard critical assets, and align security with organizational objectives. Backed by deep expertise, strong partnerships, and advanced technologies, we deliver scalable, adaptive capabilities that evolve with the threat landscape so Federal agencies can lead with confidence and protect what’s next.

Roles and Responsibilities
  • Assist in the design, deployment, configuration, and optimization of Illumio Core and Illumio Edge across on-premises, virtualized, and cloud environments.
  • Architect and implement Zero Trust Segmentation policies, including application dependency mapping, labeling frameworks, enforcement boundaries, and zone-based controls.
  • Develop Illumio workflows, runbooks, dashboards, and segmentation models for enterprise workloads and critical applications.
  • Integrate Illumio with SIEM/SOAR, CMDB, C2C, vulnerability scanners, cloud-native controls, and enterprise automation pipelines.
  • Conduct traffic flow analysis using Illumio VEN telemetry and build policy recommendations to reduce attack surface and limit east-west movement.
  • Troubleshoot system performance, VEN installation issues, policy conflicts, and platform health across distributed infrastructure.
  • Partner with application owners to onboard workloads, validate segmentation plans, and support change management processes.
  • Perform lifecycle management: upgrades, health checks, certificate operations, and policy governance.
  • Collaborate with security architects to align Illumio policy models with broader Zero Trust and NIST 800-207 strategies.
  • Contribute to architectural standards, documentation, and enterprise security playbooks.
  • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes.
Required Experience and Education
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • 5+ years in cybersecurity, cloud security, or infrastructure engineering.
  • 3+ years of expertise in Linux/Windows systems, virtualization (VMware, Hyper-V), and cloud environments (AWS, Azure, or GCP).
  • 2+ years of experience developing and deploying solutions for highly regulated mission-critical environments (finance, healthcare, federal, or energy).
  • 1+ year experience with infrastructure automation tools (Ansible, Terraform, or similar).
  • 1+ year experienced with REST APIs, scripting (Python, Bash, PowerShell), or automation frameworks.
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, or Master’s degree and 1+ years of experience supporting IT projects and activities.
  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support (CSSP-IS) Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification within 30 days of offer accept.
  • Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX (formerly CASP+), CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP certification within 45 days of CSSP-IS date (or offer accept if candidate already has CSSP-IS Cert).
Preferred Experience and Education
  • Experience deploying and managing Illumio Adaptive Security Platform (ASP) in enterprise environments
  • Experience with CMDB systems such as ServiceNow, SIEM and SOAR tools, or vulnerability management platforms
  • Knowledge of Zero Trust principles, micro-segmentation, and lateral movement mitigation
  • Ability to translate policies into technical controls
  • Possession of strong analytical and problem-solving skills
  • Illumio certifications such as Illumio Platform Associate, Illumio Platform Speci
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Zero-Trust Segmentation Platform Engineer
Zero-Trust Segmentation Platform Engineer

Engg • Metro Manila

On-site
PHP 7,505,000 - 11,257,000
TIP/VM Engineer
TIP/VM Engineer

Trends Group, Inc. • Philippines

On-site
PHP 500,000 - 900,000
Information Security Consultant
Information Security Consultant

iQor • Calabarzon

On-site
PHP 700,000 - 1,300,000
IT Security Specialist
IT Security Specialist

Ibex Limited • Manila

On-site
PHP 600,000 - 900,000
Senior Security Consultant
Senior Security Consultant

Hunter's Hub Inc. • Taguig

On-site
IT Operations Security Analyst | Midshift | Hybrid
IT Operations Security Analyst | Midshift | Hybrid

Infinit-O • Philippines

On-site
PHP 500,000 - 900,000
Security Engineering Engineer III
Security Engineering Engineer III

Vertiv Co • Mandaluyong

On-site
PHP 900,000 - 1,200,000
Equal opportunity employer
IT Security Specialist
IT Security Specialist

ibex • Mandaluyong

On-site
PHP 420,000 - 640,000
Specialist (Cybersecurity)
Specialist (Cybersecurity)

NTUC FIRST CAMPUS LIMITED • Santo Niño 1st

On-site
PHP 1,200,000 - 1,800,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Morgan McKinley • Philippines

On-site
PHP 1,200,000 - 2,400,000