Must Have Technical/Functional Skills
We are seeking a senior Level 3 Proxy Security Engineer with deep expertise in cloud security and enterprise web proxy platforms, specifically Netskope Security Cloud. Engineer will act as the top-tier technical escalation point and primary architect for secure web gateway (SWG), cloud access security broker (CASB), and zero-trust network access (ZTNA) solutions and responsible for designing, optimizing, and maintaining complex proxy infrastructures to protect corporate data and ensure seamless user connectivity.
Key Responsibilities
· Level 3 Escalations: Act as the highest operational tier for complex troubleshooting, incident root-cause analysis (RCA), and vendor escalations regarding proxy and traffic-steering failures.
· Netskope Administration & Engineering: Lead the policy design, configuration, deployment, and ongoing maintenance of Netskope SWG, CASB, and Private Access (ZTNA).
· Policy & Rule Management: Design and audit granular Security Services Edge (SSE) policies, real-time threat protection, SSL/TLS decryption rules, and Data Loss Prevention (DLP) profiles.
· Architecture & Optimization: Perform traffic steering optimization using Netskope Client, GRE/IPsec tunnels, explicit proxy configurations, and pac-file/WCCP integrations.
· Migration & Integration: Lead or assist in migrating legacy on-premises web proxies (e.g., Symantec/Broadcom, BlueCoat, Forcepoint) to cloud-native Netskope environments.
· Vendor & Platform Maintenance: Collaborate with Netskope technical support, manage platform upgrades, review cloud release release notes, and ensure operational readiness across enterprise environments.
· Automation & Scripting: Develop scripts (Python, PowerShell, REST APIs) for policy automation, tenant monitoring, and log extraction to SIEM systems.
Technical Skills & Qualifications
Primary Proxy Expertise
Netskope (Netskope Certified Cloud Security Administrator/Architect preferred) with hands-on mastery in SWG, CASB, ZTNA, inline SSL inspection, and steering methods.
Secondary Proxy Knowledge
Familiarity with platforms like Zscaler, FortiProxy, or legacy Symantec/BlueCoat.
Networking & Protocols
Advanced expertise in TCP/IP, HTTP/HTTPS, SSL/TLS certificates, DNS, PAC file syntax, IPsec, GRE, and BGP routing.
Identity & Authentication
Strong experience with SAML 2.0, Okta, Microsoft Entra ID (Azure AD), SCIM, and Active Directory integration.
Security Concepts
DLP policy development, threat prevention, URL filtering, sandboxing, and microsegmentation principles.
TCS Employee Benefits Summary:
Discretionary Annual Incentive.
Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
Family Support: Maternal & Parental Leaves.
Insurance Options: Auto & Home Insurance, Identity Theft Protection.
Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
Time Off: Vacation, Time Off, Sick Leave & Holidays.
Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.
Salary Range: $120,000 - $130,000 a year
More Information
Application Details
- Organization DetailsTCS / Tata Consultancy Services


Recommended Comments
There are no comments to display.
Join the conversation
You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.