2

Remote Access Control Engineer Jobs (NOW HIRING)

Sr. Prisma Access Engineer

$117K - $160K/yr

Job Title: Sr. Prisma Access Engineer Remote 3months Rate: 90$ - 100$/hr on W2 Key Responsibilities ... Identity-based access control and MFA integration * Security policy design using App-ID, User-ID ...

Senior Security Engineer - Data Platform

Austin, TX · On-site +1

$113K - $155K/yr

Access Control: Design and manage Role-Based Access Control (RBAC) and modern authentication protocols (e.g., OIDC, SAML) across the fleet and developer platforms. * Secure Remote Access: Establish ...

What we need The Technical Control Engineer ensures the smooth operation and reliability of ... related issues using remote access tools. * Troubleshoot and resolve issues related to:

What we need The Technical Control Engineer ensures the smooth operation and reliability ofSymbotic ... related issues using remote access tools. * Troubleshoot and resolve issues related to:

next page

Showing results 1-20

Remote Access Control Engineer information

See salary details

$61K

$108.8K

$175.5K

How much do remote access control engineer jobs pay per year?

As of Aug 1, 2026, the average yearly pay for remote access control engineer in the United States is $108,776.00, according to ZipRecruiter salary data. Most workers in this role earn between $84,000.00 and $126,500.00 per year, depending on experience, location, and employer.

What is a Remote Access Control Engineer?

A Remote Access Control Engineer is an IT professional responsible for designing, implementing, and managing secure remote access solutions for an organization's systems and networks. Their main duties include configuring VPNs, managing access permissions, and ensuring that remote connections are protected against unauthorized access. They often work with various security tools, firewalls, and authentication protocols to maintain secure connectivity for remote employees or third parties. This role is critical for organizations that support remote or hybrid work environments, helping to safeguard sensitive data and ensure compliance with security policies.

How does a Remote Access Control Engineer typically collaborate with on-site teams to ensure seamless system integration and issue resolution?

Remote Access Control Engineers work closely with on-site IT and security teams through regular virtual meetings, real-time communication tools, and remote monitoring software. They often assist with system installations, troubleshoot access issues, and provide guidance or training to staff on-site. Effective collaboration relies on clear documentation, proactive communication, and a strong understanding of both the technical environment and the physical security requirements. This teamwork ensures that remote configurations align with on-site needs and that any issues are swiftly addressed.

What is the difference between Remote Access Control Engineer vs Network Security Specialist?

AspectRemote Access Control EngineerNetwork Security Specialist
CredentialsCertifications like CompTIA Security+, Cisco CCNACertifications like CISSP, CISA, CompTIA Security+
Work EnvironmentIT departments, remote access systems, cybersecurity teamsNetwork infrastructure, security operations centers, consulting firms
Employer & IndustryTech companies, financial institutions, healthcareGovernment agencies, large enterprises, cybersecurity firms

While both roles focus on cybersecurity, the Remote Access Control Engineer specializes in managing remote access systems and permissions, ensuring secure connections for remote users. The Network Security Specialist has a broader scope, focusing on overall network security measures, threat mitigation, and infrastructure protection. Both roles often collaborate but serve distinct functions within cybersecurity teams.

What are the key skills and qualifications needed to thrive as a Remote Access Control Engineer, and why are they important?

To thrive as a Remote Access Control Engineer, you need a solid understanding of network security, access control systems, and authentication protocols, usually supported by a degree in computer science or related certifications like CompTIA Security+ or CISSP. Familiarity with tools such as VPNs, firewalls, identity and access management (IAM) platforms, and remote monitoring systems is essential. Strong problem-solving, attention to detail, and clear communication make someone stand out in this position. These skills ensure secure, reliable remote access and protect organizational assets from unauthorized use or cyber threats.
More about Remote Access Control Engineer jobs
What cities are hiring for Remote Access Control Engineer jobs? Cities with the most Remote Access Control Engineer job openings:
What are the most commonly searched types of Access Control Engineer jobs? The most popular types of Access Control Engineer jobs are:
What states have the most Remote Access Control Engineer jobs? States with the most job openings for Remote Access Control Engineer jobs include:
Infographic showing various Remote Access Control Engineer job openings in the United States as of July 2026, with employment types broken down into 1% As Needed, 67% Full Time, 25% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $108,776 per year, or $52.3 per hour.

Principal ZTNA Network Engineer - Employee Remote Access

Fidelity Investments

Durham, NC • On-site, Remote

Full-time

Re-posted 9 days ago


Fidelity Investments rating

8.7

Company rating: 8.7 out of 10

Based on 270 frontline employees who took The Breakroom Quiz

15th of 150 rated financial services


Job description


Note: Fidelity will not provide immigration sponsorship for this position.
The Role
We are seeking a Senior ZTNA (Zero Trust Network Access) Network Engineer to lead the engineering, deployment, and optimization of secure remote access solutions across the enterprise. This role will drive the transition from legacy VPN technologies to modern Zero Trust architectures, with a strong focus on Zscaler (ZPA/ZIA) and enterprise ZVPN initiatives.
You will design and implement secure, scalable, and resilient access solutions that enable seamless, secure connectivity to enterprise applications while eliminating implicit trust. This includes architecting Zero Trust segmentation, application-level access controls, and robust connectivity strategies for a global workforce. Responsibilities will include:
  • Lead design and implementation of ZTNA solutions (Zscaler ZPA/ZIA, ZVPN) to replace legacy VPN technologies
  • On call required rotation
  • Define and deliver modern Zero Trust architecture patterns, including application-level segmentation and identity-based access
  • Drive legacy VPN decommissioning and migration to ZTNA platforms
  • Develop and execute engineering roadmaps aligned to enterprise remote access strategy
  • Partner with security, infrastructure, and business units to ensure coordinated rollout and adoption
  • Document architecture, operational models, and implementation standards
  • Evaluate emerging ZTNA and secure access technologies and provide data-driven recommendations
  • Lead pilots and phased deployments, including testing, validation, and performance benchmarking
  • Act as a Tier-3 escalation lead for complex remote access and connectivity issues
  • Ensure high availability and resilience of remote access infrastructure in a 24x7 global environment
  • Assess and mitigate risks related to latency, scale, and user experience during migrations

The Expertise and Skills You Bring
  • 6-10 years of network/security engineering experience, including 4+ years in ZTNA or remote access transformations
  • Bachelor's degree in Computer Science, Information Technology, or related field
  • Hands-on experience with Zscaler (ZPA/ZIA) or comparable Zero Trust platforms
  • Proven success migrating legacy VPNs to Zero Trust, cloud-delivered access solutions
  • Deep expertise in ZTNA design, implementation, and Zero Trust principles (least privilege, continuous verification, no implicit trust)
  • Experience designing application segmentation and identity-based access policies
  • Strong knowledge of traffic steering, split tunneling, and secure access routing (ZVPN architectures)
  • Experience with load balancing, gateways, and access control layers
  • Advanced troubleshooting across network layers (L3-L7)
  • Familiarity with hybrid environments (on-prem, cloud, SaaS)
  • Ability to optimize latency, performance, and user experience in ZTNA environments
  • Experience with high availability, disaster recovery, and failover strategies in global, always-on environments
  • Experience with network automation tools (Python, Ansible, APIs)
  • Familiarity with endpoint management and deployment tools (Intune, SCCM)
  • Strong understanding of identity providers (Azure AD / Entra ID), SSO, and conditional access
  • Knowledge of PKI, certificates, and modern authentication methods
  • Experience integrating with SIEM, EDR, and security monitoring platforms
  • Strong ownership mindset with a focus on execution and delivery
  • Ability to thrive in fast-paced, ambiguous environments with competing priorities
  • Excellent communication skills across technical and business stakeholders
  • Proven ability to lead incident response and drive resolution under pressure
  • Preferred certifications: Zscaler (ZCCA / ZCCP / ZCSE), CCNP/CCIE (Security or Enterprise), CISSP (or equivalent), ITIL Foundation

The Team
You will be part of the Enterprise Cloud, Infrastructure, and Operations (ECIO) organization, playing a central role in transforming the enterprise's remote access strategy from legacy VPN to Zero Trust. This is a high-visibility, high-impact team focused on ZVPN rollout and enterprise-wide adoption, legacy VPN decommissioning, and Zscaler-driven Zero Trust transformation.
The team operates in a global, 24x7 environment and partners closely with security, infrastructure, and business stakeholders. Together, you enable secure, seamless access to applications for a distributed workforce-reducing cyber risk, improving resilience, and supporting business continuity at scale.
Certifications:
Category:
Information Technology
Please be advised that Fidelity's business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.

What Fidelity Investments employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom