Zero Trust /SSE consultant

🗓️ Posted 2026-08-17 Bangkok, Bangkok City, Thailand Contract Hybrid ICT

Company shared salary

NA

Market rate

THB 120,000–THB 250,000/mo (THB 1,440,000–THB 3,000,000/yr)

Based on similar roles (title + domain + location).

About the Company

Cloudflare provides consultative and hands-on-keyboard implementation and migration services for enterprise customers. As a Senior Professional Services Consultant for Zero Trust Services/SSE and Network Services, you are an individual contributor working in the post-sales landscape, responsible for the technical execution of solutions and guidance to our customers to get the most value possible from their Cloudflare investment. You are a security expert and have experience with ZTNA, Data Loss Prevention, Email security, CASB, and SSE. Professional Level Thai and English Language skills is essential for the role. It is an initial 12 month contract highly likely to extend further. A great opportunity to develop your network and demonstrate your skills.

Responsibilities

  • Plan and deliver timely and organised services for customers, ensure customers see the full value in Cloudflare's products and advise on product best practices - including how AI-driven features within Cloudflare's platform can enhance their security posture and operational efficiency.
  • Gather business and technical requirements, use cases and any other information required to build, migrate and deliver a solution on behalf of the customer, and transition the Cloudflare working environment to the customer.
  • Produce a Solution Design, HLD, LLD, databuilds, procedures, scripts, test plans, drawings, deployment plan, migration plan, as-builts, and any other artefacts necessary to deliver the solution and transition smoothly into the customer's technical teams.
  • Implement changes on behalf of the customer in the Cloudflare environment following the customer's change management process. Provide guidance to the customer to configure their CPEs and integration points.
  • Develop and maintain automation scripts, infrastructure-as-code templates, and AI-assisted tooling to accelerate deployments, reduce manual effort, and improve repeatability across engagements.
  • Leverage AI tools and workflows - including large language models, AI-assisted code generation, and intelligent automation - to improve the quality and speed of technical delivery.
  • Troubleshoot implementation issues and collaborate with Customer Support, Engineering and other teams to assist technical escalations.
  • Contribute towards the success of the organisation through knowledge sharing activities such as contributing to internal and external documentation, answering technical Q&A, and helping to iterate on best practices. Support building operational assets like templates, automation scripts, procedures, and workflows - including AI-augmented assets where applicable.

Requirements

  • + years of experience working in a customer-facing technical implementation or onboarding team, security engineering team, security operations centre or other highly technical team
  • Layers and protocols of the OSI model, such as TCP/IP, TLS, DNS, HTTP
  • Deep understanding of Internet and Security technologies such as SWG, Sandboxing, Firewalls, DLP, and VPNs
  • Deep understanding of Zero Trust technologies such as Zero Trust Network Access (ZTNA), Secure Web Gateway (SWG), Remote Browser Isolation (RBI), Data Loss Prevention (DLP), CASB and Cloud Email Security
  • Deep understanding of SSO, ADFS, LDAP and SAML and the role of the IdP for SSO. Security aspects of an internet property, such as Firewalls, WAFs, Bot Management, Rate Limiting, (M)TLS
  • Performance aspects of an internet property, such as Speed, Latency, Caching, HTTP/2, TLSv1.3
  • Network transformation technologies such as MPLS, SD-WAN or WAN Optimisation
  • Ability to manage a project, work to deadlines, and prioritise between competing demands
  • Demonstrated comfort using AI tools (e.g. GitHub Copilot, ChatGPT, Claude Code, or similar) as part of day-to-day technical work - for scripting, documentation, troubleshooting, or solution design
  • Demonstrated technical experience (hands-on-keyboard) with:
  • Software distribution & deployment in Microsoft, Mac and Linux environments
  • Detailed working knowledge of web-based security, network segmentation, security proxies, Firewalls and NGFWs, SSL/IPSec and SSL/TLS VPN appliances & services
  • Windows & Linux Server system administration
  • Windows, MacOS and Linux client endpoints troubleshooting
  • Scripting or automation experience (e.g. Python, Bash, PowerShell, JavaScript) - including using AI-assisted code generation to accelerate development
  • Familiarity with infrastructure-as-code tools (e.g. Terraform) or configuration management frameworks
  • Preferred but not mandatory:
  • Software distribution via Mobile Device Management platforms
  • Security skills and certifications such as CISSP, GCIA, GCIH, GCFA, GCFE, CCIE, CCNP, JNCIE or MCSE
  • Familiarity with AI security considerations - including data privacy in AI pipelines, securing AI/LLM workloads, and understanding how Zero Trust principles apply to AI-driven environments