Microsoft 365 Endpoint & Identity Consultant

Zain Group

Ernakulam

On-site

INR 1,800,000 - 3,000,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Zain Group in India seeks a Microsoft 365 Endpoint & Identity Consultant to implement and deploy identity and endpoint security foundations across Microsoft 365 for enterprise clients. You will own the delivery of Entra ID, Intune, Defender for Endpoint, CA, and Windows Autopilot with Zero Trust alignment.

The role emphasizes hands-on design, configuration, and knowledge transfer, ensuring secure production deployments, governance, and collaboration with security and governance teams.

Qualifications

  • 5+ years hands-on experience deploying Microsoft identity and endpoint technologies in consulting or managed security environments.
  • Hands-on experience with Entra ID, Intune, Defender for Endpoint, Conditional Access, Windows Autopilot, Windows 365, and AVD.
  • Strong understanding of Microsoft 365 identity architecture, endpoint management, and Zero Trust security principles.
  • Experience implementing MFA, passwordless authentication, PIM, identity governance, Entitlement Management, and SSPR.
  • Experience designing least-privilege access models and risk-based authentication.
  • Experience with PowerShell scripting and automation for Microsoft 365 administration.

Responsibilities

  • Design, configure, and deploy Entra ID, Intune, Defender for Endpoint, CA, and Windows Autopilot based on client requirements.
  • Configure MFA, passwordless auth, PIM, identity governance, entitlement management, and SSPR.
  • Deploy and manage Intune enrollment, compliance policies, configuration profiles, MAM, Autopilot, Windows 365, and AVD.
  • Implement Zero Trust by integrating identity, device compliance, and access controls.
  • Own end-to-end deployment lifecycle from discovery through handover; create templates and runbooks.
  • Produce design docs, secure guides, deployment docs, and knowledge transfer materials.
  • Collaborate with Collaboration, Data Security, Copilot/AI, and SOC teams to deliver integrated solutions.

Skills

Microsoft Entra ID
Microsoft Intune
Microsoft Defender for Endpoint
Conditional Access
Windows Autopilot
Azure Virtual Desktop
PowerShell scripting

Education

Bachelor's degree in Computer Science / IT / Cybersecurity / Engineering

Tools

PowerShell

Job description

Microsoft 365 Endpoint & Identity Consultant

The Microsoft 365 Endpoint & Identity Consultant is responsible for the end-to-end implementation, configuration, and deployment of the identity and endpoint security foundation across the Microsoft 365 ecosystem. You will own the delivery of Microsoft Entra ID, Microsoft Intune, Microsoft Defender for Endpoint, Conditional Access, and Windows Autopilot solutions, ensuring secure, compliant, and well-governed Zero Trust environments for enterprise and public-sector clients.

This is a hands‑on consulting and engineering role focused on delivering production‑ready identity and endpoint management solutions, translating security and business requirements into secure Microsoft 365 configurations, and ensuring successful deployment, operational readiness, and knowledge transfer.

Responsibilities
Microsoft 365 Identity & Endpoint Implementation
  • Solution Design & Deployment: Design, configure, and deploy Microsoft Entra ID, Microsoft Intune, Microsoft Defender for Endpoint, Conditional Access, and Windows Autopilot solutions based on client security and business requirements.
  • Identity & Access: Configure Conditional Access, Multi‑Factor Authentication (MFA), passwordless authentication, Privileged Identity Management (PIM), Identity Governance, Entitlement Management, Self‑Service Password Reset (SSPR), and B2B access.
  • Endpoint Management: Deploy and manage Microsoft Intune device enrollment, compliance policies, configuration profiles, mobile application management (MAM), Windows Autopilot, Windows 365, and Azure Virtual Desktop (where applicable).
  • Endpoint Protection: Deploy Microsoft Defender for Endpoint, configure attack surface reduction policies, endpoint detection and response (EDR), device risk management, and integrate security signals with Conditional Access.
Zero Trust & Security Implementation
  • Zero Trust Architecture: Implement Zero Trust principles by integrating identity, device compliance, and access controls to enforce least‑privilege access.
  • Identity Governance: Configure Privileged Identity Management (PIM), access reviews, entitlement management, and identity lifecycle governance.
  • Conditional Access: Implement risk‑based access policies using user, device, and sign‑in risk signals to strengthen enterprise security.
  • Endpoint Security: Configure device compliance, application protection, endpoint hardening, and security baselines across Windows, macOS, iOS, and Android devices.
Deployment Ownership & Delivery Excellence
  • End‑to‑End Delivery: Own the complete deployment lifecycle from discovery workshops and security assessments through implementation, pilot deployments, production rollout, and operational handover.
  • Configuration Baselines: Develop reusable secure configuration baselines, deployment templates, PowerShell automation scripts, and operational runbooks.
  • Documentation: Produce technical design documents, secure configuration guides, implementation documentation, operational runbooks, and knowledge transfer materials.
  • Client Advisory: Act as a trusted advisor by translating client security objectives into Microsoft 365 Zero Trust solutions and recommending best practices.
Stakeholder Collaboration
  • Collaborate closely with Collaboration & Content, Data Security & Compliance, Copilot & AI, and Cybersecurity / Managed SOC teams to deliver integrated Microsoft 365 security solutions.
  • Conduct discovery workshops, security assessments, design reviews, and deployment planning sessions with client stakeholders.
  • Support operational readiness by ensuring deployed solutions align with enterprise governance, compliance, and security standards.
  • 5+ years of hands‑on experience deploying and configuring Microsoft identity and endpoint technologies within consulting, professional services, systems integration, or managed security environments.
  • Hands‑on experience with Microsoft Entra ID, Microsoft Intune, Microsoft Defender for Endpoint, Conditional Access, Windows Autopilot, Windows 365, and Azure Virtual Desktop.
  • Strong understanding of Microsoft 365 identity architecture, endpoint management, and Zero Trust security principles.
  • Expertise implementing Conditional Access, Multi‑Factor Authentication (MFA), passwordless authentication, Privileged Identity Management (PIM), Identity Governance, Entitlement Management, and Self‑Service Password Reset (SSPR).
  • Experience designing and implementing least‑privilege access models and risk‑based authentication.
  • Experience deploying Microsoft Intune device management, compliance policies, configuration profiles, application protection (MAM), and Windows Autopilot.
  • Experience implementing Microsoft Defender for Endpoint, endpoint detection and response (EDR), attack surface reduction, and device risk management.
  • Strong understanding of Zero Trust architecture, device compliance, identity protection, and risk‑based access control.
  • Working knowledge of MENA regulatory and data residency requirements affecting Microsoft 365 deployments, including SAMA CSF, NCA ECC, SDAIA, and UAE/Saudi PDPL.
  • Experience with PowerShell scripting and automation for Microsoft 365 administration, deployment, and configuration management.
  • Strong requirements gathering, solution design, client workshop facilitation, and technical documentation skills.
  • Ability to translate business security objectives into scalable Microsoft 365 identity and endpoint solutions.
  • Produce clear solution designs, secure configuration documentation, deployment guides, operational runbooks, and knowledge transfer documentation.
  • Ability to support client engagements across Saudi Arabia, UAE, Kuwait, Bahrain, Jordan, Iraq, Egypt, and Sudan.
  • Ownership the end‑to‑end delivery of Microsoft 365 identity, endpoint management, and Zero Trust solutions across enterprise and public sector clients.
  • Excellent English communication skills
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field (or equivalent practical experience).
  • Certifications (Preferred) : Microsoft Certified: Endpoint Administrator Associate (MD-102), Microsoft Certified: Identity and Access Administrator Associate (SC-300) , Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900)
  • Additional Microsoft Security certifications are advantageous.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Consultant - Security
Senior Consultant - Security

IFI Techsolutions • Dadri

On-site
INR 1,500,000 - 2,100,000
Microsoft 365 Collaboration & Content Consultant
Microsoft 365 Collaboration & Content Consultant

Zain Group • Ernakulam

Hybrid
INR 1,800,000 - 3,200,000
Security & Microsoft 365 Solution Architect
Security & Microsoft 365 Solution Architect

IFI Techsolutions • Dadri, Mumbai

On-site
INR 3,500,000 - 6,000,000
Assistant Manager - Information & Technology
Assistant Manager - Information & Technology

Portway Solutions India Private Limited • Dadri

On-site
INR 1,500,000 - 2,100,000
M365 Associate Consultant
M365 Associate Consultant

Mismo Systems • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Microsoft Security Consultant
Microsoft Security Consultant

SoftwareONE Deutschland GmbH • Chennai District

On-site
INR 1,200,000 - 1,800,000
Microsoft 365 Copilot & AI Productivity Lead
Microsoft 365 Copilot & AI Productivity Lead

Zain Group • Ernakulam

On-site
INR 4,000,000 - 7,000,000
Microsoft 365 and security
Microsoft 365 and security

IFI Techsolutions • Dadri, Mumbai

Hybrid
INR 4,000,000 - 6,500,000
Microsoft O365 Engineer
Microsoft O365 Engineer

StoneX Group Inc. • Maharashtra

On-site
INR 1,500,000 - 3,000,000
Assistant Manager - Microsoft Entra ID(IAM) & M365 Engineer
Assistant Manager - Microsoft Entra ID(IAM) & M365 Engineer

Portway Solutions India Private Limited • Dadri

On-site
INR 1,500,000 - 2,500,000