Security Engineer - Zscaler - United States
Role details
Job location
Tech stack
Job description
We are seeking a Security Engineer who will be responsible for designing, deploying, and operating Zero Trust security solutions using Zscaler technologies (ZIA, ZPA, ZDX). This role involves deep technical expertise in cloud security, endpoint integration, and advanced network troubleshooting, acting as a Level 3 escalation point for critical incidents. The engineer will partner closely with cross-functional teams to ensure secure, optimized, and resilient access for enterprise users and applications., * Deploy and manage Zscaler ZIA, ZPA, ZDX for large enterprise environments.
- Design and optimize security policies:
- SSL Inspection, URL Filtering, Sandbox, Access & Timeout Policies, Client Forwarding.
- Support Zscaler migration and integration with Workspace ONE / MDM platforms.
- Deploy and manage ZPA App Connectors in data centers and cloud (AWS preferred).
- Endpoint & Zscaler Client Connector (ZCC)
- Manage ZCC agent profiles, configuration updates, rollout strategy.
- Maintain SSL Inspection Exemption lists for certificate-pinned applications.
- Support development and monitoring of DLP policies.
- Advanced Troubleshooting & Operations
- Perform L3-L7 troubleshooting using tools such as:
- Wireshark, tcpdump, MTR, Zscaler Analyzer, ZSATunnel & ZSATray logs.
- Use ZDX and other Zscaler diagnostics to analyze latency and performance issues.
- Act as Level-3 escalation for P1/P2 incidents and coordinate with Zscaler TAMs & Support.
- Manage Zscaler-related tickets and escalations in ServiceNow.
- Collaboration & Documentation
- Collaborate with infrastructure, cloud, network, and security teams.
- Create and maintain SOPs, documentation, and knowledge articles.
Requirements
- Networking: CCNP Security
- AWS Cloud Certifications
- BS/MS in Computer Science or related area or equivalent relevant experience
- 8+ years of network security / cloud security / Zero Trust
- Strong hands-on expertise with ZIA, ZPA, ZDX, ZCC (mandatory).
- Solid understanding of: TCP/IP, DNS, HTTP/HTTPS, TLS/SSL, Proxy architecture, authentication (SAML/AD), IPSec/GRE
- Proficiency in packet analysis (Wireshark, tcpdump).
- Experience with AWS/GCP (networking fundamentals).
- Strong Analytical, Problem solving, and creative mindset
- Experience with various Software Development Lifecycle Process (Agile Development, SCRUM methodologies. etc.)
- Strong stakeholder communication with leadership and cross-functional teams.
- Excellent communication skills. Communicates clearly, succinctly, and persuasively to all levels of employees, customers, and management
- Ability to work independently and lead problem-solving efforts.
- Excellent troubleshooting and documentation skills.
- Ability to work under pressure and in fast-paced enterprise environments.
Benefits & conditions
- Competitive salary and benefits package
- Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications
- Opportunity to work with cutting-edge technologies
- Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards
- Annual health check-ups
- Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents
Values-Driven, People-Centric & Inclusive Work Environment:
Persistent is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds.
- We support hybrid work and flexible hours to fit diverse lifestyles.
- Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities.
- If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment