
Associate Security Architect (Endpoint Security)
ZS · Pune Division, Maharashtra, India
- On site
- Full-time
- ₹1,500,000 / year
- Pune Division, Maharashtra, India
Job highlights
- Design and implement endpoint security architecture.
- Secure web gateway, proxy, and application controls.
- Lead endpoint hardening initiatives across platforms.
- Automate security tasks using Python and PowerShell.
- Collaborate with IT, SOC, and business teams.
About the role
About ZS
ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you’ll work side-by-side with a powerful collective of thinkers and experts shaping life-changing solutions for patients, caregivers and consumers, worldwide. ZSers drive impact by bringing a client-first mentality to each and every engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS.What you'll do:
Associate Security Architect in the Enterprise will be part of ZS IT Information Security team in Pune. As a Security Architecture & Engineering Consultant, you will be responsible for endpoint security, hardening, and automation. The ideal candidate will have deep hands-on expertise in endpoint protection technologies and will work closely with cross-functional stakeholders to design, implement, and optimize security controls while ensuring minimal impact to end-user experience. In addition, you will be expected to stay up to date on technology and security trends and make recommendations to enhance the security posture of ZS infrastructure and applications.- Design, implement, and manage endpoint security architecture with a strong emphasis on EDR / XDR solutions
- Secure web gateway / proxy solutions
- Application control / whitelisting
- Privileged Access / Privilege Management solutions
- Lead initiatives to secure and harden endpoints (Windows/macOS/Linux) while balancing usability and operational efficiency.
- Act as a technical consultant to internal teams, providing guidance on secure configurations, best practices, and architecture decisions.
- Collaborate with IT, infrastructure, SOC, risk, and business teams to ensure security solutions align with business needs.
- Manage and influence stakeholders at different levels, translating technical risks into business-relevant language.
- Develop and maintain security standards, baselines, and architecture documentation.
- Identify opportunities to automate manual or repetitive security tasks and improve operational efficiency.
- Create and maintain scripts and automation workflows to support endpoint security operations and deployments.
- Develop security automation using scripting techniques like Python, PowerShell, etc.
- Knowledge about AI/ML fundamentals, AI risk assessment, AI agentic use, etc.
- Participate in security assessments, gap analysis, and control improvements aligned with industry standards.
- Support incident response and investigations related to endpoint security when required.
- Stay current with emerging threats, endpoint attack techniques, and security technologies.
What you’ll bring:
- Bachelor’s degree in information security, Information Technology, or related field
- 6+ years of experience in Endpoint Security or equivalent knowledge
- Strong knowledge in industry standard Endpoint security tools like CrowdStrike, Carbon black, Zscaler, Microsoft Defender, Beyond trust
- Demonstratable expertise and experience with security related incidents is desirable
- Must be a team player, dedicated, and proactive
- Must possess good communication, problem-solving, critical thinking, and organizational skills
- Must have good presentation skills
- Ability to clearly present technical approaches or findings in oral and written format
- Ability to present ideas in business-friendly and user-friendly language
- Highly self-motivated and directed
- Candidate should be flexible to work in late shifts to converse with leadership teams in US as needed
- Fluency in English
- Client-first mentality
- Intense work ethic
- Collaborative spirit and problem-solving approach
How you’ll grow:
- Cross-functional skills development & custom learning pathways
- Milestone training programs aligned to career progression opportunities
- Internal mobility paths that empower growth via s-curves, individual contribution and role expansions
Perks & Benefits:
At ZS, your growth matters. We offer a comprehensive total rewards package that supports your health and well‑being, financial future, time away, and professional development. With robust skills‑building programs, multiple career progression paths, internal mobility, and a deeply collaborative culture, you’ll have the opportunity to do meaningful work, expand your capabilities, and thrive as part of a global community. For details on total rewards in India, visit ZS India office locations | Where we work | ZS.Hybrid working model:
We are committed to giving our employees a flexible and connected way of working. A flexible and connected ZS allows us to combine work from home and on-site presence at clients/ZS offices for the majority of our week. The magic of ZS culture and innovation thrives in both planned and spontaneous face-to-face connections.Travel:
Travel is a requirement at ZS for client facing ZSers; business needs of your project and client are the priority. While some projects may be local, all client-facing ZSers should be prepared to travel as needed. Travel provides opportunities to strengthen client relationships, gain diverse experiences, and enhance professional growth by working in different environments and cultures.Considering applying?
At ZS, we honor the visible and invisible elements of our identities, personal experiences, and belief systems—the ones that comprise us as individuals, shape who we are, and make us unique. We believe your personal interests, identities, and desire to learn are integral to your success here. We are committed to building a team that reflects a broad variety of backgrounds, perspectives, and experiences. Learn more about our inclusion and belonging efforts and the networks ZS supports to assist our ZSers in cultivating community spaces and obtaining the resources they need to thrive. If you’re eager to grow, contribute, and bring your unique self to our work, we encourage you to apply. ZS is an equal opportunity employer and is committed to providing equal employment and advancement opportunities without regard to any class protected by applicable law.To complete your application:
Candidates must possess or be able to obtain work authorization for their intended country of employment. An on-line application, including a full set of transcripts (official or unofficial), is required to be considered. NO AGENCY CALLS, PLEASE. Find Out More At: www.zs.comKey skills/competency
Associate Security Architect Endpoint Security, Endpoint Security, EDR, XDR, Security Architecture, Hardening, Automation, Python, PowerShell, CrowdStrike, Zscaler, Microsoft Defender, Beyond Trust, AI/ML, Risk Assessment.Skills & topics
- Associate Security Architect
- Endpoint Security
- EDR
- XDR
- Security Architecture
- Hardening
- Automation
- Python
- PowerShell
- CrowdStrike
- Zscaler
- Microsoft Defender
- Information Security
- IT Security
- Cybersecurity
How to get hired
- Tailor your resume: Highlight your 6+ years of Endpoint Security experience and expertise with tools like CrowdStrike, Zscaler, and Microsoft Defender.
- Showcase your skills: Emphasize your experience in EDR/XDR, security architecture, hardening, and automation using Python or PowerShell.
- Demonstrate soft skills: Highlight your communication, problem-solving, critical thinking, and presentation abilities, especially in translating technical risks.
- Align with ZS values: Convey your client-first mentality, intense work ethic, and collaborative spirit in your application and during interviews.
- Prepare for technical and behavioral questions: Be ready to discuss security incidents, secure configurations, and your approach to continuous learning and improvement.
Technical preparation
Master EDR/XDR tools like CrowdStrike.,Practice scripting with Python and PowerShell.,Study endpoint hardening for Windows/macOS/Linux.,Familiarize with AI/ML fundamentals for security.
Behavioral questions
Describe a complex security incident you handled.,How do you balance security with user experience?,How do you stay updated on security threats?,How do you communicate technical risks to non-technical stakeholders?
Frequently asked questions
- What are the key responsibilities of an Associate Security Architect at ZS?
- The Associate Security Architect at ZS focuses on endpoint security, hardening, and automation. This includes designing and implementing EDR/XDR solutions, secure web gateways, and privileged access management, as well as leading endpoint hardening initiatives and developing security automation scripts. You will also act as a technical consultant to internal teams and collaborate across various departments to ensure security aligns with business needs.
- What qualifications are needed for the Associate Security Architect role at ZS?
- A Bachelor's degree in information security, Information Technology, or a related field is required, along with 6+ years of experience in Endpoint Security. Strong knowledge of industry-standard endpoint security tools like CrowdStrike, Carbon Black, Zscaler, Microsoft Defender, and BeyondTrust is essential. Demonstrable experience with security incidents is desirable.
- What programming/scripting skills are important for this Associate Security Architect position at ZS?
- The role requires developing security automation using scripting techniques such as Python and PowerShell. Experience in creating and maintaining scripts and automation workflows to support endpoint security operations and deployments is crucial.
- How does ZS support the professional growth of an Associate Security Architect?
- ZS offers robust support for professional growth through cross-functional skills development, custom learning pathways, and milestone training programs aligned with career progression. Internal mobility paths also empower growth via individual contribution and role expansions.
- What is the work arrangement for this Associate Security Architect role at ZS?
- ZS operates on a hybrid working model, combining work from home with on-site presence at clients or ZS offices for the majority of the week. This model aims to balance flexibility with the benefits of face-to-face collaboration and innovation.
- Does ZS require travel for the Associate Security Architect position?
- Yes, travel is a requirement at ZS for client-facing roles. Business needs of the project and client are the priority. All client-facing ZSers should be prepared to travel as needed, which provides opportunities for strengthening client relationships and gaining diverse experiences.
- What is the application process for the Associate Security Architect job at ZS?
- To apply, candidates must complete an online application and submit a full set of transcripts (official or unofficial). Ensure you have the necessary work authorization for the intended country of employment.
- What kind of security tools expertise is ZS looking for in an Associate Security Architect?
- ZS is looking for strong knowledge in industry-standard endpoint security tools, specifically mentioning CrowdStrike, Carbon Black, Zscaler, Microsoft Defender, and BeyondTrust. Expertise in EDR/XDR solutions is also a key requirement.