Job offer
Remote Access Engineer (Citrix NetScaler & Zscaler Private Access)
Julius Baer is seeking a Remote Access Engineer (Citrix Netscaler & Zscaler Private Access) in Zurich to be responsible for the development and lifecycle management of private access solutions in hybrid environments. The role also involves continuously improving security operations and providing support for global network security projects.
Tasks
- Contribute to the development and lifecycle management of a comprehensive and resilient security roadmap, including private access solutions in the hybrid environment and in the key systems used by employees, customers, and suppliers
- Continuous improvement of existing security operations, such as patching, monitoring, and vulnerability management
- Supporting local security engineers and security management in the implementation of (network) security technology projects on a global scale
- Close collaboration with local security partners across various teams, including Network, InfoSec, Physical Security, Compliance, and Legal
- Familiarize participants with the tools and technologies that the global InfoSec and cloud security teams will use in the future
- Willingness to travel, contribute to the 24/7 global security operations center, and participate in escalations outside of business hours as needed
Requirements
- Proficiency with network services in a virtualized environment; an understanding of or experience implementing virtualization technologies (VMware ESXi, vCenter; Nutanix) is desirable
- Proficiency in network operating systems (NOS) and protocols (Borderleaf/IxOS, Cisco IOS/XE, Cisco NX-OS, etc.)
- Proficiency with access infrastructure (F5 BIG-IP, Juniper MX/MSSP, Aruba; Zscaler Private Access or similar next-generation SASE gateways)
- Practical knowledge and, in particular, expertise in the application and infrastructure concepts used throughout the company (business processes ranging from the data center to the internal partner/customer cloud), as well as the related aspects of engineering and operations
- Functional proficiency with computer networks deployed in modern multi-hybrid cloud and/or private-access environments, including both Cisco and, to a lesser extent, Juniper products
- Extensive hands-on experience with Cisco IOS, JUNOS, and/or similar network operating systems
- Knowledge of network, security, and user infrastructure, including DNS/DHCP, Active Directory, PKI, MDM, Certificate Authority, and Key Management Systems (KMS)
- Practical knowledge of Zscaler Internet Access and other SASE products and security solutions (ZPA, ZIA, ZMC, ZPA Apps, and others)
- Professional and confident communication skills
- Ability to work both independently and as part of a team
- A solid understanding of the global information security landscape, including standards, regulations, and frameworks
- Successful implementation of technical solutions involving various IT departments (cloud-based and on-premises) and third-party providers
- Fluency in English (spoken and written)
- A high degree of integrity and discretion
- Experience with configuration management tools (e.g., Terraform, Ansible)
- Experience with automation scripts (Python, Bash, or similar)
Desirable
- Proficiency in security solutions (next-generation firewalls, zero-trust network access, SIEM, SOAR, EDR, and related tools)
- Experience with cloud networks (AWS, Azure, GCP), particularly with PrivateLink, Direct Connect, ExpressRoute, and equivalent technologies
- Familiarity with compliance frameworks (ISO 27001, SOC 2, NIST, etc.)
- Proven ability in safety engineering
Job details