ZScaler Engineer

Implicit Solutions, L.P.
Arlington, VA, United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$170,000.0 - $225,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Amazon Web Services Microsoft Azure Cloud Computing Security Cloud Engineering Domain Name System (DNS) Internet Protocol Security (IP SEC) IPv4 IPv6 Multi-protocol Systems Python (Programming Language) Network Security
+12 more
Network Diagrams Network Connections Cloud Services Ansible Zero Trust Network Access Web Application Security TCP/IP Transport Layer Security Google Cloud Firewalls (Computer Science) Information Technology Terraform

Job description

We are seeking an experienced Zscaler Engineer to support, maintain, optimize and improve an existing Zscaler implementation for a Government Agency. The ideal candidate will have extensive experience in Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA), ensuring secure and seamless network connectivity for enterprise environments.

Essential Job Functions:

· Provide ongoing operational support, maintenance, and engineering with regards to the full Zscaler product suite (ZIA, ZPA, ZDX) and related technologies for a currently deployed Zscaler implementation.

· Configure and tune the system to optimize performance and/or alerting.

· Leverage expertise and experience to actively troubleshoot complex networking and security issues related to Zscaler.

· Provide guidance on all aspects of Zscaler network and security capabilities for the customer.

· Ensure compliance with security standards, policies, and best practices for IT systems and data protection.

· Collaborate with cross-functional teams to integrate Zscaler with existing network, firewalls, external vendors, and server infrastructure to deliver high-quality technical support.

· Develop and maintain technical documentation, including network diagrams and security policies.

· Design, implement, and optimize Zscaler solutions, often as part of a broader SASE/Zero Trust strategy, ensuring alignment with security standards.

· Configure and fine-tune URL filtering, threat protection, DLP, and SSL inspection policies for diverse user groups (remote, branch).

· PAC / tunnel / GRE/IPsec onboarding and troubleshooting for sites and laptops

· Manage change control / exceptions

· Support SSL Inspection, DLP, Firewall, and DNS

· Onboarding internal apps (defining app segments, segment groups, server groups)

Requirements

· 3+ years of experience in network security, cloud security, or related fields.

· 2+ years of experience hands-on with Zscaler deployments in a professional support role.

· Experience deploying and operating ZScaler ZIA, ZPA, and ZDX for large enterprises.

· Broad understanding of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA), and Zscaler Client Connector.

· Experience with deployments and management of App Connectors and Branch Connectors.

· Familiarity with Zscaler’s cloud architecture and security services.

· Strong knowledge of networking protocols (TCP/IP, HTTP/HTTPS, DNS, etc.).

· Solid network and cybersecurity fundamentals knowledge.

· Knowledge of cybersecurity principles and best practices.

· Familiarity with cloud service providers (AWS, Azure, Google Cloud).

· Understanding of Trusted Internet Connections (TIC)

· Fundamental knowledge of MPLS and WAN routing principles

· Fundamental knowledge of IPv4 and IPv6 protocols

· Understanding of Zero Trust principles and Secure Web Gateway (SWG) architectures.

· Strong ability to work as part of a team, but also possess the drive and ability to perform duties autonomously if the project demands it.

· Must be able to obtain and maintain a public trust clearance.

Skills and Qualifications Preferred:

· Zscaler Digital Transformation Administrator (ZDTA)

· Zscaler Digital Transformation Engineer (ZDTE)

· Zscaler Digital Experience Administrator (ZDXA)

· Proficiency with automation and scripting tools (Python, Ansible, Terraform)

· Network and Security Certifications a plus, * ZScaler: 2 years (Required)

Benefits & conditions

Pulled from the full job description

  • Referral program
  • Professional development assistance
  • 401(k)
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Employee discount, * 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Employee discount
  • Flexible schedule
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:34 min

The pros and cons of campus-wide IP authentication

Christoph Eicke Christoph Eicke · WWC 2025

2:22 min

Introducing Skupper for application connectivity

Alex Soto Alex Soto · WWC 2024

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:05 min

Exploring microcontrollers and communication protocols for amateur hardware

Philipp-Alexander Blum · LIVE

Videos

See all

Related articles

See all