Experience
8 - 11 yrs
Salary (CTC)
₹16.4L - ₹23.7L
Job Location
Thane, India
Vacancy
1
Designation
Senior Manager Information Technology
Job Type
Not specified
Job Description
Weare looking for an experienced and technically strong Senior Manager to leadand manage the organizations cloud security, proxy security, andmicrosegmentation environment.
Thecandidate will be primarily responsible for end-to-end management of Zscalertechnologies including ZIA, ZPA, and ZDX, along with Symantec Proxyinfrastructure and Data Center microsegmentation security operations alignedwith Zero Trust architecture principles.
Therole requires strong understanding of microsegmentation concepts, applicationtraffic visibility, process-level communication analysis, and policy governanceto secure east-west traffic within Data Center environments.
Thecandidate should also possess good awareness of enterprise network and securitytechnologies to effectively coordinate with Network, Firewall, NAC, Server, andApplication teams.
Thisis a senior leadership role requiring strong technical expertise, operationalownership, stakeholder management, and team leadership capabilities.
KeyResponsibilities
PrimaryResponsibilities Zscaler Proxy Security
- Manage complete administration, monitoring, and support of Zscaler:
-
- ZIA (Zscaler Internet Access)
- ZPA (Zscaler Private Access)
- ZDX (Digital Experience Monitoring)
- ZIA (Zscaler Internet Access)
- Manage Symantec Proxy infrastructure and internet access security operations.
- Configure, manage, and optimize:
-
- URL filtering policies
- SSL inspection policies
- Cloud application access policies
- Web access and browsing control policies
- User/group-based internet access policies
- Bandwidth control and traffic shaping policies
- File type control and malware protection policies
- Application segmentation and private access policies
- Authentication and SSO integrations
- Security and access governance policies
- URL filtering policies
- Perform troubleshooting related to:
-
- Internet access issues
- Application accessibility
- Slow browsing and latency
- VPN and remote user access
- Authentication and SSO failures
- SSL inspection issues
- User policy mismatch
- Cloud application connectivity
- Internet access issues
- Monitor and analyze:
-
- Proxy traffic logs
- Security alerts
- Threat visibility dashboards
- User experience monitoring
- Bandwidth utilization
- Application performance metrics
- Security event trends
- Proxy traffic logs
Performpolicy review, tuning, cleanup, and optimization activities.
Coordinatewith endpoint, IAM, Network, Firewall, and Server teams for integratedtroubleshooting.
Workclosely with OEM/vendor support teams for critical issue resolution andescalations.
Supportaudit, compliance, VAPT observations, and security hardening activities relatedto internet access and proxy infrastructure.
Participatein proxy transformation, cloud security enhancement, and Zero Trust securityinitiatives.
Ensureoperational stability and adherence to SLA for Zscaler and Proxy environments.
PrepareRCA reports, incident summaries, and operational dashboards for managementreview.
Supportproduction changes, maintenance activities, policy modifications, and emergencytroubleshooting during critical incidents.
PrimaryResponsibilities Microsegmentation Security
Goodunderstanding of Zero Trust security architecture and microsegmentationconcepts for Data Center and Disaster Recovery environments.
Manageand support microsegmentation security operations across DC and DRenvironments.
Understandthe importance of controlling east-west traffic communication between servers,even within the same VLAN or subnet.
Ensureprotection against unauthorized lateral movement across servers andapplications.
Monitorand analyze server-to-server communication traffic across production, DR, andcritical application environments.
Understandapplication dependencies, traffic flows, ports, protocols, and process-levelinteractions before defining security policies.
Create,review, and manage whitelist-based communication policies allowing onlyauthorized traffic between workloads.
Performtraffic flow analysis and dependency mapping for critical business applicationsand infrastructure services.
Understandprocess-level communication between applications, middleware, databases, and systemservices for accurate policy creation.
Coordinatewith Server, Application, Database, Network, and Security teams to identifylegitimate traffic patterns and application dependencies.
Reviewapplication communication behavior and validate policy impact before enablingenforcement mode.
Performpolicy tuning, monitoring, validation, and optimization activities to avoidapplication impact and false blocking.
Analyzeblocked traffic logs, security events, and policy violations to identifyunauthorized communication attempts.
Supportsegregation of application tiers such as Web, Application, and Database serversthrough granular security controls.
Ensureleast privilege access model between workloads based on business andapplication requirements.
Participatein onboarding of new servers, applications, and environments intomicrosegmentation monitoring and policy governance.
SupportDR activities, server migration activities, and infrastructure changes from amicrosegmentation security perspective.
Monitorworkload communication visibility dashboards, alerts, and policy compliancestatus.
Coordinatewith infrastructure and application teams during troubleshooting of blocked orimpacted application communication.
Ensuresecurity policy consistency across DC and DR environments.
Participatein security audits, compliance reviews, and security architecture discussionsrelated to Zero Trust and east-west traffic security.
- Support continuous improvement of microsegmentation governance, policy hygiene, and workload security posture.
Workwith SOC/SIEM teams for analysis of suspicious east-west traffic behavior andlateral movement attempts.
Maintaindocumentation related to application dependency mapping, policy standards,exception handling, and operational procedures.
Supportsecurity enhancement initiatives aligned with Zero Trust strategy and DataCenter workload protection.
AdditionalResponsibilities Network Security Coordination
Goodunderstanding of enterprise Data Center and branch network environments.
Awarenessof:
-
- Cisco Switching Routing
- Cisco NAC
- FortiGate Firewall
- Enterprise Proxy Security infrastructure
- Cisco Switching Routing
Coordinatewith Network, Firewall, NAC, Server, and Security teams during incidenttroubleshooting and project activities.
Understandinfrastructure dependencies between proxy, firewall, authentication, server,and network environments.
Supportcross-functional troubleshooting and operational coordination activities.
Governance,Compliance Security Hardening
Ensuretimely closure of VAPT observations related to proxy, Zscaler, andmicrosegmentation environments.
Coordinatewith internal teams and auditors for closure of audit observations, compliancefindings, and security gaps.
Implementand maintain baseline security policies and hardening standards across securityplatforms and workloads.
Performperiodic rule review, rule optimization, policy cleanup, and removal of unusedor stale access rules.
Ensureadherence to security governance standards, compliance requirements, andorganizational security policies.
Reviewsecurity exceptions, temporary access rules, and policy deviations to minimizesecurity risks.
Supportsecurity assessment activities, compliance audits, and infrastructure securityreviews.
Monitorpolicy effectiveness and recommend security improvements based on operationaland threat analysis.
Ensureproper documentation of security standards, policy exceptions, operationalprocedures, and governance controls.
Coordinatewith SOC/SIEM teams for analysis and remediation of suspicious trafficpatterns, policy violations, and security alerts.
Supportcontinuous improvement initiatives related to workload security, proxygovernance, and Zero Trust architecture.
Participatein hardening activities for internet access security, server communicationcontrols, and application access governance.
Ensureperiodic review and validation of whitelist-based communication policies andaccess controls.
Driveoperational security hygiene activities across Zscaler, Proxy, andmicrosegmentation environments.
LeadershipTeam Management
Leadand manage teams handling Zscaler, Proxy, and Security operations.
Driveincident management, RCA preparation, and service improvement initiatives.
Ensureadherence to SLA, operational governance, and security standards.
Coordinatewith internal teams, OEMs, ISPs, and management stakeholders.
Mentorteam members and support operational planning and task management.
Participatein infrastructure transformation and security enhancement initiatives.
RequiredSkills
MandatorySkills
- Strong hands-on experience in Zscaler:
-
- ZIA
- ZPA
- ZDX
- ZIA
- Experience with Symantec Proxy administration and support.
- Strong understanding of:
-
- Secure Web Gateway (SWG)
- Zero Trust Network Access (ZTNA)
- Cloud proxy architecture
- SSL inspection
- Secure remote access
- Internet access governance
- Cloud security operations
- Secure Web Gateway (SWG)
- Strong understanding of Microsegmentation and Zero Trust security concepts.
- Understanding of:
East-west traffic security
Lateral movement protection
Whitelist-based workloadcommunication
Application dependencymapping
Process-level trafficvisibility and policy creation
- Strong troubleshooting and operational management skills in cloud security and proxy technologies.
Preferred/ Additional Skills
- Basic to good understanding of:
-
- Cisco Switching Routing
- Cisco NAC
- FortiGate Firewall
- Cisco Switching Routing
- Ability to coordinate effectively with Network, Security, Server, and Application teams.
EducationalQualification
- Bachelors Degree in Engineering / Technology / Computer Science / IT.
- Relevant certifications in Cloud Security, Zero Trust Security, Network Security, or Security Technologies will be an added advantage.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
