Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

TOCUMULUS

Bengaluru

On-site

INR 1,500,000 - 2,200,000

Full time

21 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

TOCUMULUS is seeking an experienced Cloud Network Security Engineer in Bengaluru to design, implement, and support secure cloud and hybrid networks. You will work on Zscaler ZIA/ZPA, Entra and Azure networking, and Zero Trust architectures, collaborating with infrastructure, security, and application teams.

The role involves configuring security solutions, SSL/TLS inspection, and large-scale cloud transformations, with emphasis on enterprise-grade security and connectivity.

Qualifications

  • Hands-on with ZIA and ZPA
  • Experience with Microsoft Global Secure Access and Entra family
  • Strong understanding of SWG, SSE, SASE, ZTNA and Zero Trust
  • Experience with Entra ID, SAML, SCIM, MFA, and Conditional Access
  • Experience monitoring Defender for Cloud Apps and Defender for Endpoint
  • Knowledge of SSL/TLS inspection, PAC Files, Proxy Chaining, Traffic Forwarding
  • Strong Azure networking experience: VNets, Peering, NSGs, Route Tables, Azure Firewall
  • Experience with Azure ExpressRoute deployment/operations
  • Networking fundamentals: TCP/IP, DNS, DHCP, Routing, Switching, VLANs, NAT, VPN, Load Balancing
  • Experience with enterprise firewall platforms: Palo Alto, Fortinet, Check Point, Cisco Firepower
  • Troubleshooting using packet captures, logs, traceroute, firewall logs, proxy logs, monitoring tools

Responsibilities

  • Design, implement, configure, and support ZIA and ZPA solutions
  • Implement and manage Microsoft Global Secure Access and Entra Internet/Private Access
  • Design and support SSE, SASE, ZTNA, SWG, CASB, Cloud Firewall, Zero Trust architectures
  • Integrate security solutions with Microsoft Entra ID (SAML, SCIM, MFA, Conditional Access)
  • Configure and support Defender for Cloud Apps and Defender for Endpoint
  • Implement SSL/TLS inspection, PAC files, proxy chaining, traffic forwarding, policy-based access control
  • Design, configure, and support Azure networking (VNets, VNet Peering, NSGs, Route Tables, Azure Firewall, Private Endpoints, DNS, Virtual WAN)
  • Support Azure ExpressRoute deployment, configuration, monitoring, operations
  • Work with TCP/IP, DNS, DHCP, routing, switching, VLANs, NAT, VPN, load balancing
  • Configure and troubleshoot Cisco enterprise routing/switching environments
  • Engage with Palo Alto, Fortinet, Check Point, Cisco Firepower platforms
  • Troubleshoot with packet captures, logs, traceroute, firewall/proxy logs, network monitoring tools
  • Collaborate with infrastructure, cloud, security, and app teams for secure connectivity
  • Participate in large-scale cloud transformation and Zero Trust adoption initiatives
  • Ensure security solutions align with policies and standards

Skills

Zscaler Internet Access
Zscaler Private Access
Azure Networking
Zero Trust
SASE
ZTNA
MFA
Conditional Access
Microsoft Entra ID
Networking fundamentals

Tools

Azure ExpressRoute
Microsoft Defender for Cloud Apps
Microsoft Defender for Endpoint
Cisco Firepower

Job description

We are looking for an experienced Cloud Network Security Engineer with strong expertise in Zscaler, Microsoft Entra, Azure Networking, Zero Trust, and enterprise network security. The ideal candidate will have hands‑on experience designing, implementing, and supporting secure cloud and hybrid network environments, with a strong understanding of SASE, SSE, ZTNA, Secure Web Gateway, CASB, and Zero Trust security architectures.

The role will involve working with enterprise‑scale security and networking technologies, troubleshooting complex connectivity and security issues, and supporting cloud transformation initiatives.

Key Responsibilities:
  • Design, implement, configure, and support Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions.
  • Implement and manage Microsoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access.
  • Design and support SSE, SASE, ZTNA, SWG, CASB, Cloud Firewall, and Zero Trust Security architectures.
  • Integrate security solutions with Microsoft Entra ID, including SAML, SCIM, MFA, and Conditional Access.
  • Configure and support integrations with Microsoft Defender for Cloud Apps and Microsoft Defender for Endpoint.
  • Implement and troubleshoot SSL/TLS inspection, PAC files, proxy chaining, traffic forwarding, and policy-based access controls.
  • Design, configure, and support Azure networking environments, including VNets, VNet Peering, NSGs, Route Tables, Azure Firewall, Private Endpoints, DNS Services, and Virtual WAN.
  • Support Azure ExpressRoute deployment, configuration, monitoring, and operations.
  • Work with enterprise networking technologies including TCP/IP, DNS, DHCP, routing, switching, VLANs, NAT, VPN, and load balancing.
  • Configure and troubleshoot Cisco enterprise routing and switching environments.
  • Work with enterprise firewall platforms such as Palo Alto, Fortinet, Check Point, Cisco Firepower, or equivalent technologies.
  • Perform network and security troubleshooting using packet captures, traceroute, firewall logs, proxy logs, and security monitoring tools.
  • Analyze network traffic, identify security or connectivity issues, and implement appropriate remediation.
  • Collaborate with infrastructure, cloud, security, and application teams to implement secure connectivity solutions.
  • Participate in large-scale cloud transformation and Zero Trust adoption initiatives.
  • Ensure security solutions align with enterprise security policies, architecture standards, and operational requirements.
Requirements:
  • Strong hands‑on experience with Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
  • Experience with Microsoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access.
  • Strong understanding of SWG, Cloud Firewall, CASB, SSE, SASE, ZTNA, and Zero Trust Security concepts.
  • Experience with Microsoft Entra ID, SAML, SCIM, MFA, and Conditional Access.
  • Experience integrating and monitoring Microsoft Defender for Cloud Apps and Microsoft Defender for Endpoint.
  • Strong knowledge of SSL/TLS Inspection, PAC Files, Proxy Chaining, Traffic Forwarding, and Policy-Based Access Control.
  • Strong Azure networking experience with:
  • VNets and VNet Peering
  • NSGs and Route Tables
  • DNS Services
  • Hands‑on experience with Azure ExpressRoute deployment and operations.
  • Strong networking fundamentals covering TCP/IP, DNS, DHCP, Routing, Switching, VLANs, NAT, VPN, and Load Balancing.
  • Strong experience with Cisco networking technologies and enterprise Routing/Switching.
  • Experience with enterprise firewall platforms such as Palo Alto, Fortinet, Check Point, Cisco Firepower, or equivalent.
  • Strong troubleshooting skills using packet capture, log analysis, traceroute, firewall logs, proxy logs, and network monitoring tools.
Preferred Skills & Certifications:
  • Zscaler Certified Administrator or Professional certification.
  • Microsoft security certifications related to Entra, Zero Trust, and Defender technologies.
  • CCNP Enterprise or CCNP Security.
  • PCNSE or equivalent firewall certification.
  • CISSP, CCSP, or equivalent security certification.
  • Experience in the Banking / Financial Services domain.
  • Experience working on large-scale cloud transformation and security modernization initiatives.
Ideal Candidate Profile:
  • Strong combination of networking, cloud, and cybersecurity expertise.
  • Hands‑on experience implementing Zscaler and Microsoft security solutions in enterprise environments.
  • Good understanding of Zero Trust and SASE/SSE architecture.
  • Strong analytical and troubleshooting skills.
  • Ability to work across network, security, cloud, and infrastructure teams.
  • Experience handling enterprise-scale environments and complex technical issues.
  • Strong communication and stakeholder management skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP
Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP

Theomnihire • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Zscaler & Microsoft Security Cloud Network Security Engineer - AVP (Bengaluru)
Zscaler & Microsoft Security Cloud Network Security Engineer - AVP (Bengaluru)

ToCumulus • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Zscaler Senior Expert (ZIA / ZPA)
Zscaler Senior Expert (ZIA / ZPA)

Swediumglobal • Pune District

On-site
INR 1,500,000 - 2,500,000
Zscaler & Network Security Engineer
Zscaler & Network Security Engineer

Cbts • Chennai District

On-site
INR 1,200,000 - 1,800,000
Cyber Security Engineer
Cyber Security Engineer

Rockwell Automation • Dadri, Pune District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Zscaler L3 Engineer
Zscaler L3 Engineer

KPG99 INC • Bengaluru

Remote
INR 2,200,000 - 3,400,000
Cybersecurity Engineer - Network
Cybersecurity Engineer - Network

Jobtailor • Pune District

On-site
INR 2,800,000 - 3,800,000
Senior Zscaler Engineer (ZIA/ZPA)
Senior Zscaler Engineer (ZIA/ZPA)

Jobgether • India

On-site
INR 10,536,000 - 11,195,000
Competitive contract compensation
Medical, dental, and vision coverage
Full-time contract opportunity
Network Zscaler SME
Network Zscaler SME

Tata Consultancy Services • Hyderabad

On-site
INR 800,000 - 1,200,000
Zscalar/Zero Trust Security Architect - Consultant
Zscalar/Zero Trust Security Architect - Consultant

Deloitte Development LLC • Bengaluru

On-site
INR 1,400,000 - 2,400,000