台北市中山區5年以上大學
Security Solutions Architect - Zero Trust
Team: Cybersecurity & Enterprise Infrastructure
Seniority: Principal / Lead / Staff Level
Type: Full-time
Role Summary:
We are seeking an experienced and visionary SRE & Solution Architect to drive the architecture, implementation, and continuous evolution of our Zero Trust Security Suite. You will be a cross-functional technical capable of designing and integrating enterprise-scale security controls across identity, device, application, and network layers. This is a role for people with strong passion for cloud, security, and continuous technical learning.
We're looking for someone with insatiable curiosity who wants to understand solution architecture end-to-end, has confidence in their technical experience, and thrives on collaborative learning and knowledge sharing with teammates.
Key Responsibilities:
- Technical design and implementation of Zero Trust architecture, aligned with industry best practices and First Wave's security roadmap.
- Architect secure access frameworks across hybrid environments, including SSO, MFA, Conditional Access, and Privileged Identity Management (Microsoft Entra ID).
- Drive implementation of Cloudflare ONE ZTNA, WAF, DLP, CASB, and SASE capabilities, including performance optimization and segmentation.
- Oversee device management, compliance enforcement, and OS update policies using Microsoft Intune across Windows, macOS, iOS, and Android.
- Define and operate advanced threat protection and response systems using Microsoft Defender for Endpoint and Defender for Cloud Apps.
- Integrate and tune SIEM (Guance Security) and HashiCorp Key Vault, delivering real-time monitoring, log management, and secrets lifecycle management.
- Support secure access and browser isolation via Managed Chrome and Cisco Meraki (Wi-Fi SSO, segmentation).
- Own architectural documentation, Zero Trust maturity assessments, and lead implementation across all phases and tools described in the roadmap.
- Collaborate with stakeholders (product, IT, compliance) to align solutions with business needs and regulatory standards.
Required Skills & Experience:
- 5+ years of experience in enterprise security architecture, cloud infrastructure, and endpoint security.
- Experience in Microsoft Entra ID / Azure AD, Microsoft Intune, Defender for Endpoint, and Cloudflare ONE.
- Experience with EDR, SIEM, DLP, CASB, Zero Trust Network Access, and SASE architectures.
- Proven success in managing large-scale device compliance, identity lifecycle management, and privileged access programs.
- Familiarity with Chrome Browser Enterprise, Cisco Meraki, and HashiCorp Vault in security use cases.
- Understanding of Zero Trust maturity models, phased implementation strategies, and secure system design principles.
- Experience with scripting, automation, and infrastructure-as-code to support integrations and policy enforcement.
Preferred Qualifications:
- Certifications: CISSP, Azure Solutions Architect Expert, Microsoft Certified: Security Operations Analyst, GIAC, or equivalent.
- Experience with regulatory frameworks (e.g., NIST 800-207, ISO 27001, SOC 2).
- Prior background in building or integrating security platforms for SaaS or cloud-native products.
Why Join Us?
Be at the forefront of cybersecurity innovation, where your leadership will shape the future of enterprise protection through a full-suite Zero Trust implementation covering identity, devices, networks, and data.