Senior Architect

EOS

Dallas (TX)

On-site

USD 150,000 - 190,000

Full time

7 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

EOS is seeking a Principal Architect to lead architecture for Cisco ISE, TrustSec, and policy-driven segmentation across enterprise networks. You will design, implement, integrate, and govern ISE, Catalyst Center, and TrustSec solutions, driving automation and standardization across the environment.

The role requires hands-on expertise with Python, Ansible, Git, REST APIs, and IaC, plus strong governance and collaboration with security and network teams.

Qualifications

  • Extensive experience designing Cisco ISE solutions within large-scale enterprise environments.
  • Strong experience integrating Cisco ISE with Cisco Catalyst Center and related network platforms.
  • Deep knowledge of Cisco TrustSec architecture, SGTs, SGACLs, and policy-based segmentation.
  • Solid understanding of network security, identity-based access control, and Zero Trust principles.
  • Experience with REST APIs, automation frameworks, and Infrastructure as Code methodologies.
  • Hands-on with Python, Ansible, Git, and enterprise automation platforms.
  • Excellent troubleshooting and problem-solving skills across complex networks.
  • Experience developing technical roadmaps, reference architectures, and governance frameworks.
  • Strong stakeholder management, communication, and documentation skills.

Responsibilities

  • Lead architecture, design, deployment, and enhancement of Cisco ISE solutions across enterprise environments.
  • Provide engineering and operational support for Cisco ISE platforms, including troubleshooting complex issues.
  • Design, configure, test, and support integrations between Cisco ISE and Catalyst Center for centralized policy orchestration.
  • Collaborate with infrastructure, security, and operations teams to ensure secure, scalable identity-based networking.
  • Develop high-level and low-level designs aligned with enterprise standards and security objectives.
  • Drive platform lifecycle activities: upgrades, patches, and roadmap planning.

Skills

Cisco ISE
Policy-based segmentation
TrustSec
Zero Trust
IaC
Python
Ansible
REST APIs
Git
Automation

Tools

Cisco Catalyst Center
Git
CI/CD pipelines
REST APIs
Ansible

Job description

OUR COMPANY:

EOS IT Solutions is a Global Technology and Logistics company, providing Collaboration and Business IT Support services to some of the world’s largest industry leaders, delivering forward-thinking solutions based on multi-domain architecture. Customer satisfaction and commitment to superior quality of service are our top business priorities, along with investing in and supporting our partners and employees.

We are a true International IT provider and are proud to deliver our services through global simplicity with trusted transparency.

WHAT YOU WILL DO:

The Principal Architect will provide technical leadership, architectural direction, and engineering expertise across the enterprise network access control and segmentation services portfolio. This role is responsible for the design, implementation, integration, automation, governance, and lifecycle management of Cisco Identity Services Engine (ISE), Cisco Catalyst Center, and Cisco TrustSec technologies. The successful candidate will drive strategic initiatives focused on identity-based access control, policy-driven segmentation, infrastructure automation, and operational standardization while ensuring alignment with enterprise security and network architecture standards.

KEY RESPONSIBILITIES:

Architecture & Engineering

  • Lead the architecture, design, deployment, and ongoing enhancement of Cisco Identity Services Engine (ISE) solutions across enterprise environments.
  • Provide engineering and operational support for Cisco ISE platforms, including troubleshooting complex authentication, authorization, and policy enforcement issues.
  • Design, configure, test, and support integrations between Cisco ISE and Cisco Catalyst Center to enable centralized policy orchestration and automated network access control.
  • Collaborate with infrastructure, security, and operations teams to ensure secure and scalable deployment of identity-based networking solutions.
  • Develop high-level and low-level designs that align with enterprise architecture standards, security objectives, and operational requirements.
  • Support platform lifecycle management activities, including software upgrades, patching strategies, feature evaluations, and technology roadmap planning.

TrustSec & Network Segmentation

  • Lead the design and implementation of Cisco TrustSec-based segmentation architectures.
  • Define and develop Security Group Tags (SGTs), Security Group Access Control Lists (SGACLs), and policy-based segmentation frameworks across campus, data center, and hybrid environments.
  • Evaluate and validate TrustSec policy models to ensure compliance with security, regulatory, and business requirements.
  • Support deployment activities including testing, migration planning, implementation, and post-deployment optimization.
  • Partner with security architecture and governance teams to establish standards and best practices for identity-based segmentation and Zero Trust initiatives.
  • Conduct impact assessments and architectural reviews for new segmentation use cases and enterprise network changes.

Automation & Infrastructure as Code

  • Collaborate with automation and engineering teams to develop and implement ISE-as-Code and policy-as-code capabilities.
  • Design and support API-based integrations between Cisco ISE, Catalyst Center, and enterprise management platforms.
  • Develop automated workflows for policy deployment, configuration management, compliance validation, and operational reporting.
  • Drive adoption of Infrastructure as Code (IaC) methodologies to improve consistency, scalability, and operational efficiency.
  • Support automation initiatives utilizing technologies such as Python, REST APIs, Ansible, Git repositories, CI/CD processes, and related automation frameworks.
  • Identify opportunities to reduce manual operational activities through orchestration and automation.

Architecture Governance & Strategy

  • Define architectural standards, reference architectures, and design principles for network access control and segmentation services.
  • Develop strategic technology roadmaps supporting enterprise security transformation and network modernization initiatives.
  • Lead technical design reviews and provide governance oversight for projects impacting identity, access control, and segmentation services.
  • Ensure solutions adhere to security policies, compliance requirements, operational standards, and architectural best practices.
  • Provide technical leadership, mentoring, and guidance to engineering, operations, and project teams.

Documentation & Process Improvement

  • Drive continuous improvement of architectural documentation, operational procedures, and engineering standards.
  • Create and maintain High-Level Designs (HLDs), Low-Level Designs (LLDs), standards documentation, implementation guides, and support procedures.
  • Establish and promote process standardization across architecture, engineering, deployment, and operational functions.
  • Support governance activities including design approvals, risk assessments, technical reviews, and architectural decision records.
  • Develop and maintain reusable templates, frameworks, and best practices to improve consistency across technology initiatives.
ESSENTIAL CRITERIA:
  • Extensive experience designing, implementing, and supporting Cisco Identity Services Engine (ISE) solutions within large-scale enterprise environments.
  • Strong experience integrating Cisco ISE with Cisco Catalyst Center and associated network infrastructure platforms.
  • Deep knowledge of Cisco TrustSec architecture, Security Group Tags (SGTs), Security Group Access Control Lists (SGACLs), and policy-based segmentation strategies.
  • Strong understanding of network security, identity-based access control, Zero Trust principles, and enterprise authentication frameworks.
  • Experience with REST APIs, automation frameworks, and Infrastructure as Code methodologies.
  • Hands-on experience with Python, Ansible, Git, and enterprise automation platforms.
  • Strong troubleshooting and problem-solving skills across complex network and security environments.
  • Experience developing technical roadmaps, reference architectures, and governance frameworks.
  • Excellent stakeholder management, communication, and documentation skills.
DESIRABLE CRITERIA:
  • Cisco Certified Internetwork Expert (CCIE), Cisco Certified Design Expert (CCDE), or equivalent advanced networking certification.
  • Cisco Identity Services Engine (ISE) and Cisco Catalyst Center implementation experience within large enterprise or regulated environments.
  • Experience supporting Zero Trust transformation programs and software-defined segmentation initiatives.
  • Familiarity with DevOps, CI/CD pipelines, configuration management, and cloud-based automation practices.
  • Experience working within architecture review boards, governance committees, or enterprise architecture functions.

The EOS pay range for this job is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, experience, education, knowledge, skills, and abilities, as well as internal equity, market data, or other laws.

EOS is committed to creating a diverse and inclusive work environment and is proud to be an equal opportunity employer. We invite you to consider opportunities at EOS regardless of your gender; gender identity; gender reassignment; age; religious or similar philosophical belief; race; national origin; political opinion; sexual orientation; disability; marital or civil partnership status or other non-merit factor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Architect
Senior Architect

Socket.dev • Dallas (TX)

On-site
USD 150,000 - 190,000
Senior Architect
Senior Architect

eositsolutions • Dallas (TX)

On-site
USD 150,000 - 210,000
Principal Architect – Network Services
Principal Architect – Network Services

EOS IT Solutions • Buffalo (NY)

Hybrid
USD 170,000 - 200,000
Senior Architect: Identity-Based Networking & TrustSec
Senior Architect: Identity-Based Networking & TrustSec

EOS • Dallas (TX)

On-site
USD 150,000 - 190,000
Principal Architect – Network Services
Principal Architect – Network Services

EOS • New York (NY)

Hybrid
USD 170,000 - 200,000
Principal Architect - Perimeter/DMZ
Principal Architect - Perimeter/DMZ

EOS IT Solutions • Buffalo (NY)

Hybrid
USD 170,000 - 200,000
Senior Identity & Network Security Architect
Senior Identity & Network Security Architect

Socket.dev • Dallas (TX)

On-site
USD 150,000 - 190,000
Principal Architect - Automation & Orchestration
Principal Architect - Automation & Orchestration

EOS IT Solutions • Buffalo (NY)

Hybrid
USD 170,000 - 200,000
Director, Solutions Engineer
Director, Solutions Engineer

Cisco Systems, Inc. • New York (NY)

On-site
USD 321,000 - 407,000
Network Engineer - Senior
Network Engineer - Senior

New Directions Technologies, Inc • Port Hueneme (CA)

On-site
USD 79,000 - 102,000