London
Role/Job Title: L3 Engineer Work Location: London (onsite) Mode of Working: Office Any other working conditions (travel/on call/shifts): on call/shifts if required The Role This role was handled by a single person from TCS end in customer environment and helping customers to work on Zscaler related requests, issues and any kind of migrations to applications, this is a BAU tasks role, critical as there is no other one working on this requirement. Might have to create and work on change requests by working with multiple teams and gathering required information. Your responsibilities: (Up to 10, Avoid repetition) Design and implement Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions to secure internet-bound and internal application traffic. Integrate Zscaler services with enterprise infrastructure such as identity providers, SIEM platforms, firewalls, and endpoint security tools to enable a zero trust framework. Manage and maintain Zscaler configurations including policy setup, app connectors, authentication profiles, and access control to ensure consistent and secure connectivity across the enterprise. Monitor network traffic, analyse logs, and troubleshoot performance or access issues, optimizing Zscaler deployments for reliability and low latency. Collaborate with security and IT teams to align Zscaler policies with compliance requirements, assist in audits, and support incident response processes. Design and implement Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions to secure internet-bound and internal application traffic. Integrate Zscaler services with enterprise infrastructure such as identity providers, SIEM platforms, firewalls, and endpoint security tools to enable a zero trust framework. Manage and maintain Zscaler configurations including policy setup, app connectors, authentication profiles, and access control to ensure consistent and secure connectivity across the enterprise. Monitor network traffic, analyse logs, and troubleshoot performance or access issues, optimizing Zscaler deployments for reliability and low latency. Collaborate with security and IT teams to align Zscaler policies with compliance requirements, assist in audits, and support incident response processes. Administer and manage Microsoft Entra ID (formerly Azure AD), including user and group lifecycle, directory synchronization, and role-based access control (RBAC) to enforce least privilege access across Azure resources and identities. Configure and maintain Single Sign-On (SSO) for Enterprise Applications, integrating with SAML, OAuth, and OpenID Connect protocols to enable secure and seamless access for users. Implement and manage Azure Privileged Identity Management (PIM) to control and monitor just-in-time (JIT) privileged access, approval workflows, and time-bound assignments for critical roles. Design and manage Identity Governance solutions such as Access Packages and entitlement workflows to streamline access requests, approvals, and reviews for both internal and external users. Create and enforce Conditional Access Policies and Multi-Factor Authentication (MFA) strategies based on contextual signals like user risk, device compliance, and location to balance security with usability. Administer and manage Microsoft Entra ID (formerly Azure AD), including user and group lifecycle, directory synchronization, and role-based access control (RBAC) to enforce least privilege access across Azure resources and identities. Configure and maintain Single Sign-On (SSO) for Enterprise Applications, integrating with SAML, OAuth, and OpenID Connect protocols to enable secure and seamless access for users. Implement and manage Azure Privileged Identity Management (PIM) to control and monitor just-in-time (JIT) privileged access, approval workflows, and time-bound assignments for critical roles. Design and manage Identity Governance solutions such as Access Packages and entitlement workflows to streamline access requests, approvals, and reviews for both internal and external users. Create and enforce Conditional Access Policies and Multi-Factor Authentication (MFA) strategies based on contextual signals like user risk, device compliance, and location to balance security with usability Your Profile Essential skills/knowledge/experience: (Up to 10, Avoid repetition) Zscaler Internet Access (ZIA) Zscaler Private Access (ZPA) Manage and maintain Zscaler configurations Monitor network traffic, analyze logs, and troubleshoot performance or access issues, optimizing Zscaler deployments for reliability and low latency Microsoft Entra ID (formerly Azure AD) Configure and maintain Single Sign-On (SSO) for Enterprise Applications, integrating with SAML, OAuth, and OpenID Connect protocols Implement and manage Azure Privileged Identity Management (PIM) Design and manage Identity Governance Create and enforce Conditional Access Policies and Multi-Factor Authentication Desirable skills/knowledge/experience: (As applicable) Contribute to company-wide initiatives by participating in project planning, execution, and delivery, ensuring alignment with business goals and timelines. Collaborate with cross-functional teams across departments to gather requirements, share insights, and drive solutions that support strategic objectives and operational efficiency. TPBN1_UKTJ