Zero Trust Network Access (MacOS) at CACI Network Services, London, 6-12 Months, £Contract Rate

Contract Description

Zero Trust Network Access MacOS

Work Location: London

Role Description - Summary:

The Remote Access team, within the End User Computing division, is responsible for delivering remote access capability for corporate and BYOD devices. The team follows agile delivery principles and is structured into delivery teams that are each accountable for a specific set of technologies.

The Technical Specialist Premium will be responsible for engineering and driving the development of Zero Trust Network Access infrastructure used to provide secure access for personal and corporate iOS, Windows and macOS devices in an agile environment. The role will engineer backlog items and work closely with product management on backlog refinement and prioritisation, with a focus on improving user experience while maintaining security.

Responsibilities/Tasks:

  • Configure, build and deploy specific platform configurations based on requirements in an automated way.
  • Own all aspects of the platform from an end-to-end engineering perspective.
  • Ensure architectural standards implemented within end-user device products are aligned with control function requirements and policies, including security, compliance, data protection, end-user architecture, standards and governance.
  • Collaborate with product and operations teams to ensure a smooth transition from engineering to production.
  • Apply working knowledge of SDLC platforms, Jira and agile methodology.
  • Advocate continuous improvement and encourage innovation within the team.
  • Package Intune applications for Palo Alto Prisma Access Agent.
  • Package Intune applications for Palo Alto Enterprise Browser.

Ensure adherence to SDLC processes and established engineering and release management practices.

Required Skills:

  • Strong knowledge of macOS operating system components and architecture.
  • Strong knowledge of Microsoft Intune endpoint management, including provisioning, configuration, compliance, conditional access, Autopilot and app deployment.
  • Solid understanding of end-to-end IT processes, including architecture, design, implementation and operations.
  • Scripting and automation knowledge in Azure PowerShell or equivalent, including settings customisation and application configuration.
  • Knowledge of Microsoft Entra ID, including conditional access, identity protection, MFA and integration with Intune and Microsoft 365.
  • Reasonable understanding of Microsoft Active Directory architecture and GPO migration to MDM.
  • Working knowledge of SDLC and agile delivery.

Education/Certification:

  • Educated to bachelor's degree level or above, or overseas equivalent.
  • Agile or ITIL certification preferred.
  • Relevant network and/or security certifications preferred.

Candidate will be:

  • Hands-on, with strong communication, documentation, network engineering and agile delivery skills.
  • Logical, innovative, articulate and able to work directly with technical and non-technical stakeholders.
  • Organised and driven to continuously improve the platform and user experience.
  • Diligent, methodical and able to constructively review and improve designs and methods.
  • Able to work in virtual teams spanning multiple time zones.
  • Keeps up to date on recent IT security incidents and threats.