주요업무
Microsoft 365 Platform Engineering
• Exchange Online: Configure mail flow rules, anti-spam policies, mailbox permissions, and hybrid mail setups.
• Microsoft Teams: Manage Teams policies, voice configurations, federation settings, and app permissions.
• SharePoint & OneDrive: Administer site collections, sharing policies, storage quotas, and data governance.
• Intune & Endpoint Manager: Deploy device compliance policies, app protection policies, and manage Windows Autopilot provisioning.
• PowerShell Automation: Develop scripts for bulk user provisioning, license assignment, and reporting across M365 services.
• Security & Compliance (Microsoft Purview): Configure DLP policies, sensitivity labels, retention policies, and audit logging.
Zscaler VPN & Secure Access Management
• Zscaler Internet Access (ZIA): Configure URL filtering, SSL inspection, bandwidth control, and threat protection policies.
• Zscaler Private Access (ZPA): Design application segmentation policies, connector deployments, and access control rules.
• Authentication & Identity Integration: Integrate Zscaler with Azure AD for SAML-based SSO and conditional access enforcement.
• Policy Management: Create granular access policies based on user identity, device posture, and location.
• Monitoring & Troubleshooting: Use Zscaler Admin Portal and logs to diagnose connectivity issues, latency, and policy misconfigurations.
Security & Compliance
• Implement Conditional Access policies combining M365 and Zscaler signals for zero-trust enforcement.
• Monitor Microsoft Defender for Office 365 and Zscaler Threat Insights for malware, phishing, and data exfiltration attempts.
• Conduct regular security assessments and penetration testing of cloud and VPN configurations.
• Ensure alignment with ISO 27001, NIST, and GDPR/PDPA compliance frameworks.
Operational Support & Documentation
• Provide Tier 2/3 support for escalated incidents related to M365 and Zscaler services.
• Maintain detailed runbooks, architecture diagrams, and change logs for all configurations.
• Collaborate with SOC and NOC teams for incident response and threat hunting.
Continuous Improvement
• Identify opportunities to optimize services and enhance user experience.
• Implement automation and self-service tools where applicable.
Ad hoc Support
• Additional tasks given by the supervisor or management team