Domain Architect - Network Security

VanguardWayne, PA
1dHybrid

About The Position

At Vanguard, we don't just have a mission—we're on a mission. To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best. Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience. Vanguard, one of the world's largest investment management companies, serves individual investors, institutions, employer-sponsored retirement plans, and financial professionals. We have a diverse and talented crew with a culture that promotes teamwork, along with an unwavering focus on serving our clients' best interests. This website uses "cookies" to distinguish you from other users. A cookie is a small file of letters and numbers placed on your computer or device. This helps us to provide you with a good experience when you browse our website and also allows us to improve our site and services. The cookies are stored locally on your computer or mobile device. To accept cookies you can continue browsing as normal. Or you can go to our Privacy Policy to read more information and learn how to change your preferences.

Requirements

  • 8 years related work experience, with at least 3 years of technology architect experience.
  • Deep knowledge of network and cloud security architecture principles, segmentation strategies, and Zero Trust design models.
  • Architectural experience with Palo Alto Networks firewalls, including enterprise policy frameworks, large‑scale deployments, and integration with data center and cloud environments.
  • Architectural experience with Zscaler platforms, including ZIA and ZPA, and their role in secure internet access, private application access, and Zero Trust network transformations.
  • Strong understanding of integrating firewall and Zscaler architectures with identity providers, routing, load balancing, application delivery, and hybrid cloud connectivity models.

Responsibilities

  • Provides the architectural leadership in shaping strategic, infrastructure technology programs and planning
  • Leverages knowledge capital available through subscription research services and critical resources for related knowledge capital, inclusive of blogs, podcasts, webinar, etc.
  • Produces technology roadmaps, defines reference and implementation architectures, and develops proof-of-concept prototypes and initial implementation models.
  • Ensures implementation solutions support architecture objectives (availability, scalability, performance, security, etc.), as appropriate, and monitors implementation activities to ensure architecture and design principles are upheld.
  • Utilizes partnership skills especially in the areas of persuasion, influence, conceptualizing solutions and problem solving.
  • Communicates complicated technical concepts effectively to a broad group of stakeholders.
  • Establishes relationships with IT leaders, architects, and technical specialists for the purpose of advancing proposed architectural solutions, and ensuring availability of infrastructure technologies and support.
  • Possesses deep understanding of the competitive landscape and corporate and business unit strategies to provide context for architectural decision making.
  • Identifies and mitigates risks of introducing architecture technology enhancements, ensures that IT project teams comply with IT Governance policies and procedures.
  • Participates in special projects and performs other duties as assigned.
  • Defines enterprise and data center network security architectures leveraging modernized firewall implementations and cloud‑delivered security services.
  • Provides architectural leadership for Palo Alto Networks firewall deployments, including policy design, segmentation strategies, traffic inspection models, and integration with enterprise routing and application delivery architectures.
  • Establishes standards for north‑south and east‑west traffic security, including integration across data center, campus, cloud, and remote access environments.
  • Defines and governs Zero Trust access architectures using Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA), enabling secure user‑to‑application connectivity without traditional network‑based trust models.
  • Leads architectural patterns for secure internet access, private application access, and SaaS security, including traffic steering, identity‑based access controls, and policy enforcement across hybrid and remote work scenarios.
  • Ensures firewall and Zscaler architecture align with Zero Trust principles, regulatory requirements, and enterprise security standards, including data protection and compliance controls.
  • Partners with security operations teams to ensure architectures support operational visibility, threat prevention, user experience monitoring, and lifecycle management across both on‑prem and cloud‑delivered security platforms.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service