The Zero Trust Architect will serve as the technical authority for the customer's enterprise Zero Trust, IAM, and identity-security environment. The role is responsible for designing, implementing, and continuously improving Zero Trust architectures across identity, devices, applications, networks, cloud, data, and security operations. The Architect will work closely with IAM, SOC, AD, infrastructure, network, application, endpoint, cloud, and security teams to implement secure, scalable, and resilient Zero Trust solutions aligned with business and cybersecurity requirements.
Responsibilities
- Design and maintain Zero Trust architecture, security standards, reference architectures, and adoption roadmaps.
- Assess security gaps across identity, devices, applications, network, cloud, data, and workloads.
- Implement least privilege, continuous verification, identity-first security, device trust, and risk-based access controls.
- Design and support IAM, SSO, MFA, ITDR, ZTNA, micro-segmentation, and identity-based access controls.
- Support application integrations using SAML 2.0, OAuth 2.0, and OIDC.
- Configure and troubleshoot enterprise security platforms including Ping Identity, RadiantOne, Semperis DSP, Silverfort, and Zimperium MTD.
- Integrate identity, endpoint, network, application, cloud, and security telemetry to support Zero Trust policy enforcement.
- Monitor and investigate identity threats, suspicious authentication, privileged access, AD security events, and indicators of compromise.
- Support integration with SIEM, SOAR, EDR/XDR, UEBA, MDM/UEM, and NAC platforms.
- Perform security architecture reviews, Zero Trust maturity assessments, risk assessments, and control-gap analysis.
- Provide L2/L3 troubleshooting, root-cause analysis, incident investigation, remediation, and vendor escalation.
- Develop HLD/LLD, architecture diagrams, technical documentation, security recommendations, and implementation roadmaps.
- Provide technical guidance and knowledge transfer to customer teams and support continuous security improvement.
Qualifications & Skills
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, IT, or a related field.
- 5+ years of experience in Zero Trust, IAM, cybersecurity, identity security, or infrastructure security.
- Strong knowledge of Zero Trust Architecture, IAM, authentication, authorization, MFA, and ITDR.
- Good working knowledge of SAML 2.0, OAuth 2.0, OIDC, LDAP, and Kerberos.
- Strong knowledge of Active Directory, Microsoft Entra ID, and hybrid identity architectures.
- Understanding of ZTNA, micro-segmentation, NAC, device trust, conditional access, and risk-based authentication.
- Hands-on experience with at least 2-3 of: Ping Identity, RadiantOne, Semperis DSP, Silverfort, Zimperium MTD, ZTNA/SASE/SSE, SIEM, or EDR/XDR platforms.
- Strong troubleshooting, log analysis, security-event investigation, and root-cause analysis skills.
- Experience working with enterprise production environments and complex security architectures.
- Strong customer-facing communication, stakeholder management, technical documentation, and knowledge-transfer skills.
- Knowledge of NIST SP 800-207 and Zero Trust maturity concepts is preferred.
- Relevant certifications such as CISSP, CISM, GIAC, Microsoft, Zero Trust, IAM, or vendor-specific security certifications are preferred.
Benefits
- Health insurance with one of the leading global providers for medical insurance.
- Career progression and growth through challenging projects and work.
- Employee engagement and wellness campaigns activities throughout the year.
- Annual Flight tickets to home country.
- Excellent learning and development opportunities.
- Flexible/Hybrid working environment.
- Inclusive and diverse working environment.
- Open door policy
About Us
Help AG, an e& company, is the Middle East's trusted cybersecurity partner enabling governments, enterprises and critical industries to innovate with confidence. Combining strategic consulting, advanced managed security services and deep technology expertise, Help AG enables organizations to strengthen cyber resilience, secure AI adoption, and build trusted sovereign digital environments.
With more than 20 years of regional expertise, a team of over 600 cybersecurity specialists and more than 500 enterprise and government customers, Help AG combines deep local knowledge with world-class capabilities. The company operates state-of-the-art, AI-powered sovereign Security Operations Centers (SOCs) in Dubai and Riyadh. To date, these centers have processed more than 32 trillion security events.
Recognized as a Leader in the IDC MarketScape for Managed Security Services (2026) and Managed Detection and Response (2025), and awarded the Dubai AI Seal certification, Help AG continues to help organizations strengthen cyber resilience, adopt AI with confidence, and build trusted, digital futures across the Middle East.