Boschgroup

Network Security Architect

bangalore, IndiaFull timePosted 7 days ago
Apply on Boschgroup →

Sign in to see who you know at Boschgroup.

Bosch Global Software Technologies Private Limited is a 100% owned subsidiary of Robert Bosch GmbH, one of the world's leading global supplier of technology and services, offering end-to-end Engineering, IT and Business Solutions. With over 27,000+ associates, it’s the largest software development center of Bosch, outside Germany, indicating that it is the Technology Powerhouse of Bosch in India with a global footprint and presence in the US, Europe and the Asia Pacific region. Roles & Responsibilities : We are seeking a Network Security Architect with a world-class foundation in Core Networking (Layer 2/3) and Secure Site-to-Site Connectivity who would be working on customer products/projectsKey ResponsibilitiesRepresent OT network architecture with security and compliance, Connectivity architecture design and decision makingDefine reference architectures standards and design frameworks for different OT networksResponsible for designing, implementing, and governing secure, resilient, and scalable OT network architectures across industrial/manufacturing environments.Develop HLD/LLD, network diagrams, IP addressing schemes, routing and firewall policies, and architecture standardsAnalyze different products from OEMs and make the right decisions that fits with technical and commercial aspectsLead Zero Trust adoption for OT environments (ZPA/ZIA, Cisco ZTA)Drive architecture for multi-site, multi-region deploymentsDefine resiliency, redundancy, and failover strategiesLead architecture reviews with Product, Cybersecurity, and ComplianceInfluence vendor selection, technology standards, and long-term roadmapsWork with cybersecurity teams on IDS/IPS, network monitoring, NAC, vulnerability management, and secure remote access.Coordinate with enterprise IT Network teams for IT/OT convergence and secure remote access.    SKILLS Needed:First preference: Juniper devices ; Second preference: Cisco devices·       Networking (L2/L3): Switching, STP, VLANs, BGP, OSPF, VRF, routing protocols·       Firewall & Security: Cisco  ASA / FTD / FMC, DMZ, Context design, segmentation·       Zero Trust: ZPA / ZIA / Cisco ZTA, MFA, privileged access·       Cloud — AWS (Mandatory): VPC, EC2, Transit Gateway, Direct Connect, virtual firewall·       Enterprise proxy solutions : Hands-on experience with (SOCKS5, Squid, HAProxy, NGINX, Zscaler, Blue Coat, or F5) for secure traffic forwarding and access control·       Standards (Awareness): IEC 62443, NIST CSF, ISO 27001, Purdue Model·       Certifications (Preferred): CCNP / CCIE, AWS Advanced Networking, CISSP MUST-HAVE REQUIREMENTS•      Layer 2 / Layer 3 Networking — VLANs, STP, BGP, OSPF, VRF — must have designed ...