Network Security Architect – Zero Trust / Cisco ACILocation: 100% Remote – Continental U.S.
Employment Type: Full-Time
Schedule: Wednesday–Sunday or Thursday–Monday (Weekend Cutover Schedule)
Position Summary
We are seeking an experienced Network Security Architect to support a large-scale Zero Trust architecture implementation within a highly regulated financial services environment.
This is a hands-on architecture role centered around Cisco Application Centric Infrastructure (ACI), data center security, Zero Trust implementation, and critical network cutover events.
This is not a traditional steady-state NOC position. You will operate in high-stakes, time-sensitive maintenance windows where preparation, technical depth, troubleshooting ability, and clear communication are essential.
The ideal candidate is comfortable owning critical network changes, making sound technical decisions under pressure, and working collaboratively with technical teams and business stakeholders.
Key Responsibilities
- Execute readiness assessments ahead of scheduled network cutovers and security policy enforcement windows.
- Validate configurations, dependencies, implementation plans, and rollback procedures before go-live.
- Lead and support live execution of Zero Trust security policy changes and network cutovers.
- Design, operate, and troubleshoot data center security environments utilizing Cisco Application Centric Infrastructure (ACI).
- Perform application dependency mapping to support cutover planning, policy design, and risk assessment.
- Conduct post-change validation to ensure network functionality and security-policy enforcement meet expected outcomes.
- Diagnose and troubleshoot complex network and security issues during live production events.
- Execute rollback procedures when necessary to protect service availability and business operations.
- Communicate technical status, risks, issues, and remediation plans to both technical and non-technical stakeholders.
- Document readiness assessments, implementation activities, execution results, and post-event findings.
- Maintain accurate project documentation and time tracking.
Required Qualifications
- 3+ years of hands-on experience with Cisco Application Centric Infrastructure (ACI).
- Demonstrated experience designing, operating, and troubleshooting data center security environments.
- Strong experience with traditional data center networking technologies.
- In-depth understanding of data center networking protocols and principles.
- Strong Layer 2/Layer 3 networking knowledge.
- Understanding of Zero Trust architecture and network security principles.
- Experience performing complex network changes and cutovers within production environments.
- Strong troubleshooting capabilities across network and security infrastructure.
- CCNP Route/Switch, CCNP Security, or equivalent demonstrated experience.
- Ability to clearly communicate technical status and risk to non-technical business stakeholders.
- Ability to remain composed and make sound technical decisions during high-pressure production events.
- Ability to work a Wednesday–Sunday or Thursday–Monday schedule supporting weekend cutover windows.
- U.S. citizenship and continental U.S. residency.
- Ability to successfully complete the required Tier II-Credit Check Enhanced federal background investigation, including pre-employment drug screening.
- Strong technical documentation and time-management discipline.
Preferred Qualifications
- Hands-on experience with Cisco Secure Workload (CSW).
- Experience with Zero Trust and microsegmentation architectures.
- Network automation experience utilizing scripting, orchestration, or network automation technologies.
- In-depth understanding of security protocols and principles.
- Experience working directly with Cisco TAC and driving technical escalations through resolution.
- Ability to independently gather and analyze diagnostic evidence.
- Previous experience supporting financial services or another highly regulated industry.
- Previous federal background investigation or Public Trust experience.
What Makes This Role Different
This position is designed for a Network Security Architect who performs exceptionally well during high-consequence technical events.
Rather than spending the majority of your time performing routine network administration, you will focus on preparing for and executing critical infrastructure and security changes.
The operating model follows a structured:
Readiness → Cutover → Validation → Troubleshooting/Rollback
approach.
You will have significant autonomy during live events while working as part of a collaborative technical team responsible for protecting availability and ensuring security-policy changes are successfully implemented.
If you are the engineer people turn to when a critical network change has to go right, this is the type of opportunity where your experience will be highly valued.
Schedule
The position requires a Wednesday–Sunday or Thursday–Monday schedule to support scheduled weekend cutover activities.
The weekend schedule is expected to continue through approximately June 2027, after which the schedule is anticipated to transition toward standard business hours.