Cisco ISE Architect
Posted on April 3, 2025
Job Description
- Hello All
- We have an immediate need for an Cisco ISE Architect. Please see the detailed JD below and help us with the cost/quote details of the candidate at the earliest.
- Duration:- 6 Months to start may extend to 1 year
- Location:- Any Yash Offices (Bangalore, Hyderabad,Pune & Indore)
- Experience : 10+
- Working time:9-6 pm Monday to Friday
- Cisco ISE:
- Was Responsible for Day to day operational work.
- Migrating ISE from 2.7 to 3.1 and patch up-gradation.
- Created Authentication, Authorization and Posture Policy for User.
- Fine tuning User authentications Policies as per customer need
- Created Device Authentication, Authorization Policy, shell Profiles.
- Fine tuning Device authentications Policies as per customer need.
- ISE TACACS Integration with ACI Fabric, Palo Alto.
- Below is the Detailed JD:-
- Key responsibilities of a Cisco ISE Architect:
- �
- � Design and Architecture:
- � Develop comprehensive network access control architectures leveraging Cisco ISE functionalities to manage user and device identities across wired, wireless, and VPN environments.
- � Create detailed design documents outlining network segmentation, policy enforcement, and integration with other security solutions.
- � Define and implement posture assessment policies to ensure devices meet security compliance standards before granting network access.
- �
- � Implementation and Configuration:
- � Configure Cisco ISE with user and device authentication methods (RADIUS, LDAP, Active Directory).
- � Set up authorization policies based on user roles, device type, location, and other relevant factors.
- � Establish accounting mechanisms to track user activity and network access.
- � Integrate Cisco ISE with other network infrastructure components like switches, wireless controllers, and firewalls.
- �
- � API Integration:
- � Utilize Cisco ISE APIs to integrate with third-party systems like ticketing tools, SIEM platforms, and identity management systems.
- � Develop custom scripts and workflows to automate network access control tasks.
- �
- � Troubleshooting and Support:
- � Monitor Cisco ISE system health and performance
- � Identify and resolve issues related to user authentication, authorization, and posture assessment
- � Provide technical support to network administrators regarding Cisco ISE configuration and troubleshooting
- Required Skills and Experience:
- � Deep understanding of Cisco ISE features and functionalities including authentication protocols, authorization policies, and posture assessment
- � Expertise in network design principles, including LAN, WAN, and wireless networking
- � Experience with network security concepts like firewalls, VPNs, and intrusion detection/prevention systems
- � Strong scripting and automation skills (e.g., Python, Ansible)
- � Familiarity with directory services like Active Directory and LDAP
- � Proven ability to work independently and collaborate with cross-functional teams
Required Skills
expertise in network design principles
including lan
wan
and wireless networking � experience with network security concepts like firewalls
vpns
and intrusion detection/prevention systems � strong scripting and automation skills (e.g.
python
ansible)