31 Aug
|
ToCumulus
|
Mumbai
Remote: Hybrid
Job Summary:We are looking for an experiencedCloud Network Security Engineerwith strong expertise inZscaler, Microsoft Entra, Azure Networking, Zero Trust, and enterprise network security . The ideal candidate will have hands-on experience designing, implementing, and supporting secure cloud and hybrid network environments, with a strong understanding ofSASE, SSE, ZTNA, Secure Web Gateway, CASB, and Zero Trust security architectures .The role will involve working with enterprise-scale security and networking technologies, troubleshooting complex connectivity and security issues, and supporting cloud transformation initiatives.Key Responsibilities:Design, implement, configure, and supportZscaler Internet Access (ZIA)andZscaler Private Access (ZPA)solutions.Implement and manageMicrosoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access .Design and supportSSE, SASE, ZTNA, SWG, CASB, Cloud Firewall, and Zero Trust Securityarchitectures.Integrate security solutions withMicrosoft Entra ID , including SAML, SCIM, MFA, and Conditional Access.Configure and support integrations withMicrosoft Defender for Cloud AppsandMicrosoft Defender for Endpoint .Implement and troubleshootSSL/TLS inspection, PAC files, proxy chaining, traffic forwarding, and policy-based access controls .Design, configure, and supportAzure networking environments , including VNets, VNet Peering, NSGs, Route Tables, Azure Firewall, Private Endpoints, DNS Services, and Virtual WAN.SupportAzure ExpressRoutedeployment, configuration, monitoring, and operations.Work with enterprise networking technologies includingTCP/IP, DNS, DHCP, routing, switching, VLANs, NAT, VPN,
and load balancing .Configure and troubleshootCisco enterprise routing and switchingenvironments.Work with enterprise firewall platforms such asPalo Alto, Fortinet, Check Point, Cisco Firepower , or equivalent technologies.Perform network and security troubleshooting usingpacket captures, traceroute, firewall logs, proxy logs, and security monitoring tools .Analyze network traffic, identify security or connectivity issues, and implement appropriate remediation.Collaborate with infrastructure, cloud, security, and application teams to implement secure connectivity solutions.Participate in large-scalecloud transformation and Zero Trust adoption initiatives .Ensure security solutions align with enterprise security policies, architecture standards, and operational requirements.Requirements:Strong hands-on experience withZscaler Internet Access (ZIA)andZscaler Private Access (ZPA) .Experience withMicrosoft Global Secure Access, Microsoft Entra Internet Access, and Microsoft Entra Private Access .Strong understanding ofSWG, Cloud Firewall, CASB, SSE, SASE, ZTNA, and Zero Trust Securityconcepts.Experience withMicrosoft Entra ID, SAML, SCIM, MFA, and Conditional Access .Experience integrating and monitoringMicrosoft Defender for Cloud Apps and Microsoft Defender for Endpoint .Strong knowledge ofSSL/TLS Inspection, PAC Files, Proxy Chaining, Traffic Forwarding,
and Policy-Based Access Control .Strong Azure networking experience with:VNets and VNet PeeringNSGs and Route TablesAzure FirewallPrivate EndpointsDNS ServicesAzure Virtual WANHands-on experience withAzure ExpressRoute deployment and operations .Solid networking fundamentals coveringTCP/IP, DNS, DHCP, Routing, Switching, VLANs, NAT, VPN, and Load Balancing .Strong experience withCisco networking technologies and enterprise Routing/Switching .Experience with enterprise firewall platforms such asPalo Alto, Fortinet, Check Point, Cisco Firepower , or equivalent.Strong troubleshooting skills usingpacket capture, log analysis, traceroute, firewall logs, proxy logs, and network monitoring tools .Preferred Skills & Certifications:Zscaler Certified Administrator or Professionalcertification.Microsoft Certified: Azure Network Engineer Associate (AZ-700) .Microsoft Certified: Azure Administrator Associate (AZ-104) .Microsoft security certifications related toEntra, Zero Trust, and Defender technologies .CCNP Enterprise or CCNP Security .PCNSEor equivalent firewall certification.CISSP, CCSP , or equivalent security certification.Experience in theBanking / Financial Servicesdomain.Experience working onlarge-scale cloud transformationand security modernization initiatives.Ideal Candidate Profile:Strong combination ofnetworking, cloud, and cybersecurityexpertise.Hands-on experience implementingZscaler and Microsoft security solutionsin enterprise environments.Good understanding ofZero Trust and SASE/SSE architecture .Strong analytical and troubleshooting skills.Ability to work across network, security, cloud, and infrastructure teams.Experience handling enterprise-scale environments and complex technical issues.Strong communication and stakeholder management skills.
📌 Zscaler & Microsoft Security – Cloud Network Security Engineer - AVP (Mumbai)
🏢 ToCumulus
📍 Mumbai