Zscaler & Microsoft 365 Security Engineer

GRM Technologies

Chennai District

Hybrid

INR 1,800,000 - 2,800,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

GRM Technologies is seeking an experienced Zscaler & Microsoft 365 Security Engineer to join the Cybersecurity team in Chennai. You will implement, administer, monitor, troubleshoot, and continuously improve enterprise security controls across Zscaler and Microsoft 365 security platforms.

The ideal candidate will have hands-on experience with ZIA/ZPA, Defender, Entra ID, Intune, Purview, Conditional Access, DLP, endpoint security, identity security, and Zero Trust architecture.

Qualifications

  • Strong hands-on experience with Zscaler ZIA/ZPA, Microsoft Defender, Microsoft Entra ID, Microsoft Intune, Microsoft Purview, Conditional Access and Zero Trust architecture.
  • Experience implementing, administering, monitoring, troubleshooting, and improving enterprise security controls across Zscaler and Microsoft 365 security platforms.
  • Ability to independently configure security controls, troubleshoot incidents, and support enterprise security operations.

Responsibilities

  • Implement, configure, administer, and troubleshoot ZIA and ZPA, including web and SSL inspection, firewall policies, and threat protection.
  • Configure and manage Zscaler Client Connector across enterprise endpoints and ZPA applications, connectors, and access policies.
  • Integrate Zscaler with enterprise identity providers and Microsoft Entra ID; configure SAML, MFA, and identity-based access policies.
  • Administer and secure Microsoft 365 and Entra ID environments; design Conditional Access policies; manage MFA and privileged access (PIM).
  • Manage Defender for Endpoint/Office 365/Identity/Cloud Apps/XDR; implement ASR, EDR, and security baselines.
  • Configure and administer Microsoft Intune; enforce device compliance and endpoint security policies.
  • Configure Microsoft Purview DLP policies; apply sensitivity labels and information protection controls.
  • Perform regular security configuration reviews, identify misconfigurations and vulnerabilities, and support audits and compliance.

Skills

Zscaler ZIA/ZPA
Zscaler Client Connector
SSL inspection
Zero Trust
Microsoft Entra ID
Microsoft Intune
MFA & Conditional Access
Privileged Identity Management (PIM)
Defender XDR
DLP & Information Protection
SIEM/SOC integration

Education

Bachelor's degree in Computer Science / IT / Cybersecurity

Tools

Microsoft Defender
Microsoft Entra ID
Microsoft Intune

Job description

Role Overview

We are looking for an experienced Zscaler & Microsoft 365 Security Engineer to join our Cybersecurity team.

The candidate will be responsible for implementing, administering, monitoring, troubleshooting, and continuously improving enterprise security controls across Zscaler and Microsoft 365 security platforms.

The ideal candidate should have strong hands-on experience with Zscaler ZIA/ZPA, Microsoft Defender, Microsoft Entra ID, Microsoft Intune, Microsoft Purview, Conditional Access, DLP, endpoint security, identity security, and Zero Trust architecture.

This is a hands-on engineering role requiring the ability to independently configure security controls, troubleshoot incidents, perform security assessments, and support enterprise security operations.

Key Responsibilities
Zscaler Security
  • Implement, configure, administer, and troubleshoot Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
  • Configure web filtering, URL filtering, SSL inspection, firewall policies, cloud application controls, and threat protection.
  • Configure and manage Zscaler Client Connector across enterprise endpoints.
  • Configure ZPA applications, App Connectors, Server Groups, Application Segments, Segment Groups, and access policies.
  • Integrate Zscaler with enterprise identity providers and Microsoft Entra ID.
  • Configure authentication using SAML, MFA, and identity-based access policies.
  • Implement Zero Trust access principles for internal applications.
  • Monitor Zscaler security events, traffic logs, policy violations, and threats.
  • Troubleshoot user connectivity, authentication, application access, SSL inspection, and policy-related issues.
  • Review existing Zscaler configurations and recommend security hardening and optimization measures.
  • Support integration of Zscaler logs with SIEM/SOC platforms.
Microsoft 365 & Identity Security
  • Administer and secure Microsoft 365 and Microsoft Entra ID environments.
  • Design and manage Conditional Access policies.
  • Implement and maintain MFA and strong authentication controls.
  • Manage privileged access and administrative roles using Privileged Identity Management (PIM).
  • Review and harden Entra ID identities, enterprise applications, service principals, and privileged accounts.
  • Support implementation of passwordless authentication and modern authentication mechanisms.
  • Review legacy authentication and insecure access mechanisms and support their remediation.
Microsoft Defender Security

Hands-on experience with:

  • Microsoft Defender for Endpoint
  • Microsoft Defender for Office 365
  • Microsoft Defender for Identity
  • Microsoft Defender for Cloud Apps
  • Microsoft Defender XDR

Responsibilities include:

  • Endpoint onboarding and security configuration.
  • Attack Surface Reduction (ASR) policies.
  • Endpoint Detection and Response (EDR).
  • Antivirus and endpoint security policies.
  • Threat and vulnerability management.
  • Email security and anti-phishing controls.
  • Safe Links and Safe Attachments.
  • Investigation and remediation of security alerts.
  • Incident investigation using Microsoft Defender XDR.
  • Security posture and exposure management.
Microsoft Intune & Endpoint Security
  • Configure and administer Microsoft Intune.
  • Implement device compliance policies.
  • Configure endpoint security policies and security baselines.
  • Manage Windows endpoint security configurations.
  • Implement application protection policies where applicable.
  • Integrate device compliance with Entra Conditional Access.
  • Identify and remediate non-compliant or high-risk endpoints.
Microsoft Purview & Data Protection
  • Configure and manage Microsoft Purview Data Loss Prevention (DLP) policies.
  • Implement sensitivity labels and information protection controls.
  • Support data classification and protection requirements.
  • Configure Microsoft 365 DLP controls across Exchange, SharePoint, OneDrive, Teams, and endpoints where applicable.
  • Investigate DLP alerts and policy violations.
  • Support Insider Risk, Audit, eDiscovery, and compliance requirements where applicable.
Security Operations & Governance
  • Perform periodic security configuration reviews and health checks across Zscaler and Microsoft 365.
  • Identify security misconfigurations, vulnerabilities, and control gaps.
  • Support security incident investigation and remediation.
  • Develop and maintain security configuration standards and operational procedures.
  • Maintain documentation for architecture, configurations, policies, changes, and troubleshooting procedures.
  • Support internal and external security audits.
  • Provide evidence and configuration reports for compliance assessments.
  • Work closely with SOC, IT Infrastructure, Network, Cloud, GRC, and Application teams.
  • Participate in change management and security improvement initiatives.
Required Technical Skills

Strong hands-on experience in several of the following technologies is expected:

Zscaler
  • Zscaler Internet Access ZIA
  • Zscaler Private Access – ZPA
  • Zscaler Client Connector
  • SSL Inspection
  • Cloud Firewall
  • Web/URL Filtering
  • Application Control
  • App Connectors
  • Zero Trust Network Access (ZTNA)
Microsoft Security
  • Microsoft Entra ID
  • Conditional Access
  • MFA
  • Privileged Identity Management
  • Microsoft Defender XDR
  • Defender for Endpoint
  • Defender for Office 365
  • Defender for Identity
  • Defender for Cloud Apps
  • Microsoft Intune
  • Microsoft Purview
  • Data Loss Prevention
  • Sensitivity Labels / Information Protection
General Security
  • Zero Trust Architecture
  • Identity & Access Management
  • Endpoint Security
  • Network Security
  • Email Security
  • Data Protection
  • SIEM/SOC integration
  • Incident Investigation
  • Security Hardening
Preferred Knowledge

Knowledge or experience in the following will be an advantage:

  • Microsoft Sentinel
  • Azure Security
  • PowerShell scripting and security automation
  • Microsoft Graph
  • Active Directory
  • Hybrid Entra ID environments
  • PKI and certificate-based authentication
  • Azure Key Vault
  • SAML / OAuth / OIDC
  • Service account security
  • Certificate-based authentication
  • Security monitoring and incident response
Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent practical experience.
  • Minimum 5+ years of IT/Security experience, with strong hands‑on exposure to enterprise security technologies.
  • Practical implementation and troubleshooting experience with Zscaler and/or Microsoft Security platforms.
Preferred Certifications

Any of the following certifications would be advantageous:

  • Zscaler Certified Administrator / Engineer
  • Microsoft Certified: Security Operations Analyst Associate (SC-200)
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400)
  • Microsoft Certified: Endpoint Administrator Associate (MD-102)
  • Microsoft Security-related certifications
  • CISSP / CCSP / equivalent security certification
Candidate Profile

We are particularly interested in candidates who are:

  • Strongly hands‑on, rather than purely governance or coordination focused.
  • Capable of independently configuring and troubleshooting security platforms.
  • Comfortable working with enterprise production environments.
  • Able to investigate security incidents and configuration issues systematically.
  • Experienced in implementing security controls through formal change‑management processes.
  • Capable of preparing clear technical documentation and communicating with infrastructure, application, security, and management teams.
Key Selection Criteria

Candidates should ideally demonstrate hands‑on experience in at least two major Zscaler components (ZIA/ZPA) and multiple components of the Microsoft Security ecosystem, particularly Entra ID, Defender, Intune, and Purview.

Practical implementation, troubleshooting, and security‑hardening experience will be given greater weight than certification‑only experience.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

Theomnihire • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

TOCUMULUS • Bengaluru

On-site
INR 1,500,000 - 2,200,000
Senior System Engineering Administrator
Senior System Engineering Administrator

Procain Consulting & Services • Bengaluru, Thiruvananthapuram

On-site
INR 1,200,000 - 2,200,000
Sr Engineer Security Engineering Zscaler
Sr Engineer Security Engineering Zscaler

CBTS • Chennai District

On-site
INR 900,000 - 1,300,000
Senior Engineering Systems Administrator - Zscaler
Senior Engineering Systems Administrator - Zscaler

Envestnet • Thiruvananthapuram

On-site
INR 1,500,000 - 2,100,000
Sr. Engineer – Security Engineering (Zscaler)
Sr. Engineer – Security Engineering (Zscaler)

National Spinning Co., Inc. (USA) • Chennai District

On-site
INR 1,200,000 - 1,800,000
Contract -Certified Zscaler L3 Engineer (EDU 301 & EDU 302)
Contract -Certified Zscaler L3 Engineer (EDU 301 & EDU 302)

KPG99 INC • Bengaluru

On-site
INR 1,000,000 - 1,400,000
Cyber Security Engineer
Cyber Security Engineer

Rockwell Automation • Dadri, Pune District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Information Systems Engineer
Information Systems Engineer

Zscaler • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Health plans
Time off for vacation and sick leave
Parental leave
+3
Zscaler & Network Security Engineer
Zscaler & Network Security Engineer

Cbts • Chennai District

On-site
INR 1,200,000 - 1,800,000