Product Ownership and Technical Leadership
- Act as the primary Subject Matter Expert (SME) for Secure Access technologies, providing deep technical expertise in the evaluation and selection of emerging security tools.
- Drive the long-term technical roadmap for network access, ensuring all initiatives are strictly aligned with Zero Trust security architecture and strategy.
- Partner with business units to translate high-level security requirements into actionable, scalable technical initiatives and functional policies.
- Provide mentorship and technical leadership to junior engineers, fostering a culture of continuous learning and operational excellence within the team
Identity-Based Access and Authentication
- Design, deploy, and maintain robust authentication solutions utilizing protocols such as 802.1X, EAP-TLS, EAP-TEAP, RADIUS, TACACS+, SAML, and MFA.
- Integrate disparate security platforms with enterprise Identity Providers (IdPs) to ensure a seamless and secure authentication flow across the environment.
- Architect and manage highly available authentication services to support global workforce and critical business operations.
Network Access Control (NAC) and Segmentation
- Lead the end-to-end lifecycle management of Cisco ISE deployments, including software upgrades, capacity planning, and platform optimization.
- Develop and refine endpoint profiling techniques to accurately identify and secure corporate, medical, and IoT devices.
- Implement advanced access control mechanisms, including Dot1x, MAC Authentication Bypass (MAB), Guest Access, and posture-based authorization.
- Design and oversee the implementation of Cisco TrustSec and Scalable Group Tag (SGT)-based micro-segmentation to reduce the network attack surface.
Operational Excellence and Automation
- Serve as a senior point of escalation for complex technical incidents, performing deep root-cause analysis to prevent recurrence.
- Develop and maintain comprehensive observability, monitoring, and reporting dashboards to track platform health and security compliance.
- Advocate for and implement Infrastructure-as-Code (IaC) principles and security automation to improve deployment speed and consistency.
- Build and optimize API-driven integrations and self-service capabilities to empower other IT teams while maintaining security standards.
Global Operations
- Ensure secure and reliable connectivity for tens of thousands of endpoints across diverse global regions.
- Collaborate effectively with globally distributed product squads and stakeholders to deliver integrated security solutions.