Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

TOCUMULUS

Bengaluru

On-site

INR 3,000,000 - 6,000,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

TOCUMULUS is seeking an experienced Cloud Network Security Engineer to design, implement, and operate secure cloud and hybrid networks. You will work with Zscaler, Microsoft Entra, Azure networking, and Zero Trust architectures to secure enterprise connectivity.

The role includes troubleshooting complex issues, supporting cloud transformation, and collaborating with infrastructure, security, and application teams on secure connectivity initiatives.

Qualifications

  • Hands-on with ZIA and ZPA for secure access.
  • Experience with Entra Internet Access/Private Access.
  • Strong understanding of SSE, SASE, ZTNA and Zero Trust security concepts.
  • Experience integrating Microsoft Defender for Cloud Apps and Defender for Endpoint.
  • SSL/TLS inspection, PAC files, proxy chaining, traffic forwarding, and policy-based access control.

Responsibilities

  • Design, implement, configure, and support ZIA and ZPA solutions.
  • Implement and manage Microsoft Secure Access and Entra services.
  • Design and support SSE, SASE, ZTNA, SWG, CASB and Zero Trust architectures.
  • Integrate security with Microsoft Entra ID (SAML, SCIM, MFA, Conditional Access).
  • Troubleshoot SSL/TLS inspection, proxies, and traffic flows; monitor security events.

Skills

ZIA
ZPA
Microsoft Entra ID
Entra Internet Access
Entra Private Access
Zero Trust
SASE
ZTNA
SWG
Cloud Firewall
CASB
Azure Networking
Azure ExpressRoute
TCP/IP
DNS
DHCP
Routing
Switching
VLANs
NAT
VPN
Load Balancing
Cisco Routing/Switching
Palo Alto Firewall
Fortinet
Check Point
Cisco Firepower
Packet Capture
Traceroute
Firewall Logs

Tools

ZIA
ZPA
Microsoft Entra Suite
Azure Networking Tools
ExpressRoute Tools
Security Certifications
Cisco/Fortinet/Check Point Firewalls
PCNSE/CISSP/CCSP

Job description

We are looking for an experienced Cloud Network Security Engineer with strong expertise in Zscaler, Microsoft Entra, Azure Networking, Zero Trust, and enterprise network security. The ideal candidate will have hands-on experience designing, implementing, and supporting secure cloud and hybrid network environments, with a strong understanding of SASE, SSE, ZTNA, Secure Web Gateway, CASB, and Zero Trust security architectures.

The role will involve working with enterprise-scale security and networking technologies, troubleshooting complex connectivity and security issues, and supporting cloud transformation initiatives.

Key Responsibilities
Job Summary

We are looking for an experienced Cloud Network Security Engineer with strong expertise in Zscaler, Microsoft Entra, Azure Networking, Zero Trust, and enterprise network security. The ideal candidate will have hands-on experience designing, implementing, and supporting secure cloud and hybrid network environments, with a strong understanding of SASE, SSE, ZTNA, Secure Web Gateway, CASB, and Zero Trust security architectures.

The role will involve working with enterprise-scale security and networking technologies, troubleshooting complex connectivity and security issues, and supporting cloud transformation initiatives.

  • Design, implement, configure, and support Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions.
  • Implement and manage Microsoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access.
  • Design and support SSE, SASE, ZTNA, SWG, CASB, Cloud Firewall, and Zero Trust Security architectures.
  • Integrate security solutions with Microsoft Entra ID, including SAML, SCIM, MFA, and Conditional Access.
  • Configure and support integrations with Microsoft Defender for Cloud Apps and Microsoft Defender for Endpoint.
  • Implement and troubleshoot SSL/TLS inspection, PAC files, proxy chaining, traffic forwarding, and policy-based access controls.
  • Design, configure, and support Azure networking environments, including VNets, VNet Peering, NSGs, Route Tables, Azure Firewall, Private Endpoints, DNS Services, and Virtual WAN.
  • Support Azure ExpressRoute deployment, configuration, monitoring, and operations.
  • Work with enterprise networking technologies including TCP/IP, DNS, DHCP, routing, switching, VLANs, NAT, VPN, and load balancing.
  • Configure and troubleshoot Cisco enterprise routing and switching environments.
  • Work with enterprise firewall platforms such as Palo Alto, Fortinet, Check Point, Cisco Firepower, or equivalent technologies.
  • Perform network and security troubleshooting using packet captures, traceroute, firewall logs, proxy logs, and security monitoring tools.
  • Analyze network traffic, identify security or connectivity issues, and implement appropriate remediation.
  • Collaborate with infrastructure, cloud, security, and application teams to implement secure connectivity solutions.
  • Participate in large-scale cloud transformation and Zero Trust adoption initiatives.
  • Ensure security solutions align with enterprise security policies, architecture standards, and operational requirements.
Requirements
Mandatory Skills
  • Strong hands-on experience with Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
  • Experience with Microsoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access.
  • Strong understanding of SWG, Cloud Firewall, CASB, SSE, SASE, ZTNA, and Zero Trust Security concepts.
  • Experience with Microsoft Entra ID, SAML, SCIM, MFA, and Conditional Access.
  • Experience integrating and monitoring Microsoft Defender for Cloud Apps and Microsoft Defender for Endpoint.
  • Strong knowledge of SSL/TLS Inspection, PAC Files, Proxy Chaining, Traffic Forwarding, and Policy-Based Access Control.
  • Strong Azure networking experience with:
    • VNets and VNet Peering
    • NSGs and Route Tables
    • Azure Firewall
    • Private Endpoints
    • DNS Services
    • Azure Virtual WAN
  • Hands-on experience with Azure ExpressRoute deployment and operations.
  • Strong networking fundamentals covering TCP/IP, DNS, DHCP, Routing, Switching, VLANs, NAT, VPN, and Load Balancing.
  • Strong experience with Cisco networking technologies and enterprise Routing/Switching.
  • Experience with enterprise firewall platforms such as Palo Alto, Fortinet, Check Point, Cisco Firepower, or equivalent.
  • Strong troubleshooting skills using packet capture, log analysis, traceroute, firewall logs, proxy logs, and network monitoring tools.
Preferred Skills & Certifications
  • Zscaler Certified Administrator or Professional certification.
  • Microsoft Certified: Azure Network Engineer Associate (AZ-700).
  • Microsoft Certified: Azure Administrator Associate (AZ-104).
  • Microsoft security certifications related to Entra, Zero Trust, and Defender technologies.
  • CCNP Enterprise or CCNP Security.
  • PCNSE or equivalent firewall certification.
  • CISSP, CCSP, or equivalent security certification.
  • Experience in the Banking / Financial Services domain.
  • Experience working on large-scale cloud transformation and security modernization initiatives.
Ideal Candidate Profile
  • Strong combination of networking, cloud, and cybersecurity expertise.
  • Hands-on experience implementing Zscaler and Microsoft security solutions in enterprise environments.
  • Good understanding of Zero Trust and SASE/SSE architecture.
  • Strong analytical and troubleshooting skills.
  • Ability to work across network, security, cloud, and infrastructure teams.
  • Experience handling enterprise-scale environments and complex technical issues.
  • Strong communication and stakeholder management skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

Theomnihire • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Zscaler & Microsoft Security Cloud Network Security Engineer - AVP (Bengaluru)
Zscaler & Microsoft Security Cloud Network Security Engineer - AVP (Bengaluru)

ToCumulus • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Zscaler & Microsoft 365 Security Engineer
Zscaler & Microsoft 365 Security Engineer

GRM Technologies • Chennai District

Hybrid
INR 1,800,000 - 2,800,000
Cisco Enterprise Networking & Zscaler ZIA/ZPA Network Engineer
Cisco Enterprise Networking & Zscaler ZIA/ZPA Network Engineer

UST • Ahmedabad District

On-site
INR 1,500,000 - 2,300,000
Zscaler Specialist
Zscaler Specialist

Meta Infotech • Mumbai

On-site
INR 4,000,000 - 6,000,000
Zscaler Senior Expert (ZIA / ZPA)
Zscaler Senior Expert (ZIA / ZPA)

Swediumglobal • Pune District

On-site
INR 1,500,000 - 2,500,000
Cyber Security Engineer
Cyber Security Engineer

Rockwell Automation • Dadri, Pune District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Zscaler & Network Security Engineer
Zscaler & Network Security Engineer

Cbts • Chennai District

On-site
INR 1,200,000 - 1,800,000
Senior IT Expert - Zscaler Private Access and Azure Secure Connectivity
Senior IT Expert - Zscaler Private Access and Azure Secure Connectivity

Computacenter • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Zscaler Engineer
Zscaler Engineer

Persistent Systems • Mumbai

Hybrid
INR 1,000,000 - 2,000,000
Hybrid work model
Company-sponsored higher education & C
Certifications