Job offer

Remote Access Engineer (Citrix NetScaler & Zscaler Private Access) 100% (f/m/d)

Julius Baer is seeking a Remote Access Engineer in Madrid to manage Citrix NetScaler and implement the Zscaler Private Access platform as part of a zero-trust architecture. The candidate should have at least five years of experience in security infrastructure, as well as knowledge of automation and cloud technologies.

YOUR CHALLENGE

  • As part of a dedicated security engineering team, administer, configure, and continuously improve the Citrix NetScaler ADC and NetScaler Gateway infrastructure, ensuring high availability, performance, and operational resilience across primary and disaster recovery environments
  • Manage and maintain SSL-VPN and clientless access services, including virtual server configuration, authentication policies, rewrite rules, responder policies, and traffic steering mechanisms
  • Design, implement, and maintain access authentication and conditional access policies based on device type, network location, and contextual risk factors
  • Participate in the design, implementation, and rollout of the Bank's Zscaler Private Access (ZPA) platform, supporting the transition to a modern Zero Trust Network Access architecture and contributing to technical testing, design, integration, and operational readiness activities
  • Develop and maintain expertise in both Citrix NetScaler Gateway and Zscaler Private Access technologies, supporting the Bank's strategic remote access roadmap and ensuring secure, seamless connectivity across multiple access platforms
  • Plan, coordinate, and execute infrastructure upgrades, security patches, policy changes, and platform enhancements in accordance with established change management processes within a results-driven and agile team environment

Qualifications & Skills

  • A proven track record within a mature security and operations function, managing large-scale infrastructure and policy-based enforcement that maintain usability and provide an overall excellent user experience for bank employees and contractors accessing internal assets securely, whether from home or on the go, in any location
  • Knowledge of key security concepts and frameworks, as well as standards and guidelines published by national and international regulatory authorities (e.g., PKI and 3DS), and standards issued by national and international associations and certification bodies (e.g., ISO, NIST, PCI, etc.)
  • Experience in establishing and refining security policy frameworks and processes within the technology organization
  • Strong communication and collaboration skills, with the ability to explain complex security issues and their policy implications—as well as their technical impact—to highly educated senior technical stakeholders, and to facilitate knowledge transfer to technical teams and service desk teams
  • Strong knowledge of operating systems, networks, and web technologies, including application programming interfaces (APIs) and secure distributed storage systems

What We're Looking For

  • At least 5 years of experience in system, network, and/or application architecture, design, and operations
  • Work experience with cloud computing technologies, preferably cloud service providers (such as Azure, GCP, AWS, or similar)
  • Experience integrating various networking and security hardware and software appliances used for configuration, operation, connectivity, management, integration, and monitoring
  • Work experience with automation technologies and tools to deliver scalable security and infrastructure solutions using ITSM tools and scripting technologies, along with a solid understanding of computer networking, including TCP/IP, NAT, routing, subnetting, DNS, DHCP, and 802.1X
  • Network security expertise and experience working with a wide variety of networking and security vendors (Fortinet, next-generation firewalls), IDPS products (Darktrace, DarkTracer, Proventia, Emerging Threats), and secure access solutions (Citrix NetScaler Access Gateway, Zscaler NTA, Zscaler Private Access, Jamf, Intune, or similar)
  • Ability to work independently, collaboratively, and across geographical distances, across all business units and locations
  • Strong written and spoken English (B2/C1)
  • Strong analytical and conceptual thinking skills, with a high level of attention to detail, particularly when working on complex processes and projects
  • A willingness and curiosity to learn new technologies and expand expertise across multiple security domains in order to contribute to the continuous evolution of the Bank's security infrastructure
  • University degree or higher (university of applied sciences, federal diploma)
  • Practical scripting and automation skills using one or more of PowerShell, Python, or Bash, including the automation of certificate validation, health checks, log analysis, and operational tasks via the REST or Nitro API, or comparable interfaces
  • Practical experience with Microsoft Entra ID (Azure AD), Active Directory, and hybrid identity environments
  • Proven experience integrating remote access platforms with multi-factor authentication (MFA) and modern identity providers
  • A strong understanding of endpoint compliance validation, device trust concepts, BYOD access models, and modern

Job details

© 2025 House of Skills by skillaware. All rights reserved.
Our website uses cookies to make navigation easier for you and to analyze the use of the site. You can find more information in our privacy policy.