Qualifications
Experience
8-12 years of experience in cybersecurity or enterprise networking with a sustained focus on segmentation and Zero Trust; must include 5+ years in a senior consulting or technical leadership role with hands-on architecture and client advisory experience.
Demonstrated experience serving as a segmentation or Zero Trust technical SME within pursuit or sales teams, with a track record of contributing to scoping, pricing, and winning consulting engagements.
Demonstrated experience as the lead author and final owner of client-facing security strategy and assessment documents, including assessment reports, enterprise strategies, execution plans, and executive presentations.
Deep technical expertise across segmentation domains, including:
Enterprise and Data Center Segmentation: next-generation firewall zone architecture; fabric-layer and overlay-based segmentation, including VXLAN/EVPN and VRF design; and east-west enforcement strategy
Host-Based Microsegmentation: agent-based workload segmentation platforms, including policy model design, ringfencing strategy, dependency-driven policy authoring, and phased enforcement rollout
Identity- and Access-Driven Segmentation: network access control, dynamic authorization, device trust posture, and zero trust network access
Cloud Segmentation: cloud provider network constructs, security groups and network security groups, transit and hub-and-spoke architectures, cloud-native policy, and container and service-mesh segmentation
OT/ICS, IoT, and IoMT Segmentation: Purdue model and IEC 62443 zone-and-conduit design; passive asset visibility and risk platforms; and the brownfield constraints that limit enforcement options
Discovery and Dependency Mapping: flow collection and analysis, application dependency mapping, and translating observed traffic and dependencies into segmentation policy and zone design
Working knowledge of Zero Trust architecture and maturity models: NIST SP 800-207, the CISA Zero Trust Maturity Model (ZTMM), the DoD Zero Trust Reference Architecture, and protect-surface methodology.
Working knowledge of the frameworks and regulatory drivers that shape segmentation: NIST CSF 2.0, NIST SP 800-53 (SC and AC control families), NIST SP 800-171/172, PCI DSS v4 segmentation and scoping, HIPAA Security Rule, ISA/IEC 62443, NERC CIP, and FFIEC/GLBA.
Practical understanding of the adjacent domains that determine whether a segmentation plan is executable: identity and access management, endpoint and device trust, asset management and CMDB hygiene, change management and operational readiness, and the shared platform foundations segmentation depends on.
Preferred: experience leading segmentation programs across financial services, healthcare, manufacturing, retail, energy, or public sector, particularly where segmentation intersects with regulatory scrutiny (HIPAA, PCI DSS, NERC CIP, DORA); and experience with OT/ICS, IoT, and IoMT environments and the operational constraints that shape segmentation in those environments.
Preferred: contributions to segmentation or Zero Trust thought leadership through white papers, conference presentations, or intellectual property; and experience with adjacent drivers of segmentation work, including M&A network integration, data center or cloud migration, PCI scope reduction, and post-incident segmentation remediation.
Certifications desired: CISSP, CISSP-ISSAP, CISM, CRISC, or CCSP; ISA/IEC 62443 is a plus for OT-adjacent work.
Specialized Knowledge, Skills & Abilities
Working knowledge and consulting experience in at least five of the following areas:
Demonstrated consulting delivery competencies, including:
Professional Attributes
Professional Behaviors
Beyond technical delivery, this role is expected to demonstrate the following in front of clients and within the WWT team:
Want to learn more about Consulting & Security Services? Check us out on our platform:
https://www.wwt.com/consulting-services
https://www.wwt.com/category/security-transformation
Certain states and localities require employers to post a reasonable estimate of salary range. A reasonable estimate of the current base pay range for this position is $137,200 to $171,500 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that is not included in the base pay.
The well-being of WWT employees is essential. When it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
Note: This is not an all-encompassing list and should not be used as a complete description of the plan's benefits. For more information, see our US benefits website at wwt.com/us-benefits.
We strive to create an environment where all employees are empowered to succeed based on their skills, performance, and dedication. Our goal is to cultivate a culture of belonging that encourages innovation, collaboration, and respect for all team members, ensuring that WWT
remains a great place to work for all!
If you require accessibility accommodation(s) or adjustment during any stage of the hiring process, please let your WWT Recruiter know. The recruiter will work with you to understand your needs and help ensure an accessible experience throughout the interview process.
World Wide Technology is an Equal Opportunity Employer.
If you have any questions or concerns about this posting, please email taposting@wwt.com.
#LI-TB1
| Location | MO |
| Salary | $137,200–$171,500 Per Year |
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder