Zscaler & Microsoft 365 Security Engineer (Chennai)

Zscaler & Microsoft 365 Security Engineer (Chennai)

02 Sep
|
GRM Technologies
|
Chennai

02 Sep

GRM Technologies

Chennai

Role Overview

We are looking for an experienced Zscaler & Microsoft 365 Security Engineer to join our Cybersecurity team.

The candidate will be responsible for implementing, administering, monitoring, troubleshooting, and continuously improving enterprise security controls across Zscaler and Microsoft 365 security platforms.

The ideal candidate should have strong hands-on experience with Zscaler ZIA/ZPA, Microsoft Defender, Microsoft Entra ID, Microsoft Intune, Microsoft Purview, Conditional Access, DLP, endpoint security, identity security, and Zero Trust architecture.

This is a hands-on engineering role requiring the ability to independently configure security controls, troubleshoot incidents, perform security assessments, and support enterprise security operations.

Key Responsibilities

Zscaler Security

- Implement, configure, administer, and troubleshoot Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
- Configure web filtering, URL filtering, SSL inspection, firewall policies, cloud application controls, and threat protection.
- Configure and manage Zscaler Client Connector across enterprise endpoints.
- Configure ZPA applications, App Connectors, Server Groups, Application Segments, Segment Groups, and access policies.
- Integrate Zscaler with enterprise identity providers and Microsoft Entra ID.
- Configure authentication using SAML, MFA, and identity-based access policies.
- Implement Zero Trust access principles for internal applications.
- Monitor Zscaler security events, traffic logs, policy violations, and threats.
- Troubleshoot user connectivity, authentication, application access, SSL inspection, and policy-related issues.
- Review existing Zscaler configurations and recommend security hardening and optimization measures.
- Support integration of Zscaler logs with SIEM/SOC platforms.

Microsoft 365 & Identity Security
- Administer and secure Microsoft 365 and Microsoft Entra ID environments.
- Design and manage Conditional Access policies.
- Implement and maintain MFA and strong authentication controls.
- Manage privileged access and administrative roles using Privileged Identity Management (PIM).
- Review and harden Entra ID identities, enterprise applications, service principals, and privileged accounts.
- Support implementation of passwordless authentication and modern authentication mechanisms.
- Review legacy authentication and insecure access mechanisms and support their remediation.

Microsoft Defender Security Hands-on experience with:
- Microsoft Defender for Endpoint
- Microsoft Defender for Office 365
- Microsoft Defender for Identity
- Microsoft Defender for Cloud Apps
- Microsoft Defender XDR

Responsibilities include:
- Endpoint onboarding and security configuration.
- Attack Surface Reduction (ASR) policies.
- Endpoint Detection and Response (EDR).




- Antivirus and endpoint security policies.
- Threat and vulnerability management.
- Email security and anti-phishing controls.
- Protected Links and Safe Attachments.
- Investigation and remediation of security alerts.
- Incident investigation using Microsoft Defender XDR.
- Security posture and exposure management.

Microsoft Intune & Endpoint Security
- Configure and administer Microsoft Intune.
- Implement device compliance policies.
- Configure endpoint security policies and security baselines.
- Manage Windows endpoint security configurations.
- Implement application protection policies where applicable.
- Integrate device compliance with Entra Conditional Access.
- Identify and remediate non-compliant or high-risk endpoints.

Microsoft Purview & Data Protection
- Configure and manage Microsoft Purview Data Loss Prevention (DLP) policies.
- Implement sensitivity labels and information protection controls.
- Support data classification and protection requirements.
- Configure Microsoft 365 DLP controls across Exchange, SharePoint, OneDrive, Teams, and endpoints where applicable.
- Investigate DLP alerts and policy violations.
- Support Insider Risk, Audit, eDiscovery, and compliance requirements where applicable.

Security Operations & Governance
- Perform periodic security configuration reviews and health checks across Zscaler and Microsoft 365.
- Identify security misconfigurations, vulnerabilities, and control gaps.
- Support security incident investigation and remediation.
- Develop and maintain security configuration standards and operational procedures.
- Maintain documentation for architecture, configurations, policies, changes, and troubleshooting procedures.
- Support internal and external security audits.
- Provide evidence and configuration reports for compliance assessments.
- Work closely with SOC, IT Infrastructure, Network, Cloud, GRC, and Application teams.
- Participate in change management and security improvement initiatives.

Required Technical Skills Strong hands-on experience in several of the following technologies is expected:

Zscaler

- Zscaler Internet Access ZIA
- Zscaler Private Access – ZPA
- Zscaler Client Connector
- SSL Inspection
- Cloud Firewall
- Web/URL Filtering
- Application Control
- App Connectors
- Zero Trust Network Access (ZTNA)

Microsoft Security

- Microsoft Entra ID
- Conditional Access
- MFA
- Privileged Identity Management




- Microsoft Defender XDR
- Defender for Endpoint
- Defender for Office 365
- Defender for Identity
- Defender for Cloud Apps
- Microsoft Intune
- Microsoft Purview
- Data Loss Prevention
- Sensitivity Labels / Information Protection

General Security

- Zero Trust Architecture
- Identity & Access Management
- Endpoint Security
- Network Security
- Email Security
- Data Protection
- SIEM/SOC integration
- Incident Investigation
- Security Hardening

Preferred Knowledge Knowledge or experience in the following will be an advantage:
- Microsoft Sentinel
- Azure Security
- PowerShell scripting and security automation
- Microsoft Graph
- Active Directory
- Hybrid Entra ID environments
- PKI and certificate-based authentication
- Azure Key Vault
- SAML / OAuth / OIDC
- Service account security
- Certificate-based authentication
- Security monitoring and incident response

Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or equivalent practical experience.
- Minimum 5+ years of IT/Security experience, with strong hands-on exposure to enterprise security technologies.
- Practical implementation and troubleshooting experience with Zscaler and/or Microsoft Security platforms.

Preferred Certifications Any of the following certifications would be advantageous:
- Zscaler Certified Administrator / Engineer
- Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400)
- Microsoft Certified: Endpoint Administrator Associate (MD-102)
- Microsoft Security-related certifications
- CISSP / CCSP / equivalent security certification

Candidate Profile We are particularly interested in candidates who are:
- Strongly hands-on, rather than purely governance or coordination focused.
- Capable of independently configuring and troubleshooting security platforms.
- Comfortable working with enterprise production environments.
- Able to investigate security incidents and configuration issues systematically.
- Experienced in implementing security controls through formal change-management processes.
- Capable of preparing clear technical documentation and communicating with infrastructure, application, security, and management teams.

Key Selection Criteria Candidates should ideally demonstrate hands-on experience in at least two major Zscaler components (ZIA/ZPA) and multiple components of the Microsoft Security ecosystem, particularly Entra ID, Defender, Intune, and Purview.

Practical implementation, troubleshooting, and security-hardening experience will be given greater weight than certification-only experience.

📌 Zscaler & Microsoft 365 Security Engineer (Chennai)
🏢 GRM Technologies
📍 Chennai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: zscaler & microsoft 365 security engineer (chennai) / chennai

Subscribe to this job alert:

Get the latest job offers by email for: zscaler & microsoft 365 security engineer (chennai) / chennai