Cyber Zscaler Network Security Engineer / Senior Consultant, Strategy, Growth, and Transformation

Deloitte T.T.L.
Miami, FL, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Python (Programming Language) Network Security Ping (Networking Utility) Azure Active Directory Ansible Zero Trust Network Access Security Assertion Markup Language (SAML)
+9 more
Security Information and Event Management Systems Integration Google Cloud Okta Palo Alto Networks Microsoft Sentinel Cortex XSOAR Platform Terraform Splunk

Job description

Experteer Overview In this role you help clients modernize network security using cloud-delivered zero trust architectures. You will work within Deloitte Cyber to design, deploy, and optimize Zscaler capabilities across complex environments, improving security posture and user experience while enabling secure digital transformation. You collaborate with cross-functional teams to deliver practical, enterprise-grade solutions and present clear recommendations to executive stakeholders. The opportunity combines hands-on engineering with strategic guidance to shape secure, scalable networks. Compensation / Benefits * Design, deploy, and manage Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) across enterprise environments * Support zero trust network access (ZTNA) transformations and modernization of access controls * Configure and optimize Zscaler security features (policy admin, SSL/TLS inspection, ATP, DLP, cloud-based traffic inspection) * Implement branch, cloud, and application connector architectures across on-premises and cloud (AWS, Azure, GCP) * Develop technical deliverables, solution designs, and client-facing recommendations aligned to security and transformation requirements Tasks * BA/BS in a technical field * ZDTE certification * 5+ years of network security engineering experience * 5+ years hands-on ZIA deployment experience * 5+ years hands-on ZPA deployment experience * 1+ years experience with Zscaler Branch Connector and Zscaler Cloud Connector * 3+ years configuring advanced Zscaler security features (CBI, ATP, IPS, DLP) * 3+ years SSL/TLS inspection experience in ZIA * 1+ years Zscaler AI capabilities experience * 3+ years experience defining and managing Zscaler security policies * Experience with major cloud providers (AWS, GCP, Azure) and deploying ZPA App Connectors * Experience integrating Zscaler with SIEM/SOAR (Splunk, Microsoft Sentinel, Palo Alto XSOAR) * Experience with Zscaler APIs and automation tooling (Terraform, Ansible, Python) * Experience with identity integrations (Okta, Azure AD, Ping Identity) for SAML/SCIM * Willingness to travel up to 50% Key requirements * discretionary annual incentive program * reasonable accommodations

Requirements

design, connector architectures across on-premises and cloud (AWS, Azure, GCP) * Develop technical deliverables, solution designs, and client-facing recommendations aligned to security and transformation requirements Tasks * BA/BS in a technical field * ZDTE certification * 5+ years of network security engineering experience * 5+ years hands-on ZIA deployment experience * 5+ years hands-on ZPA deployment experience * 1+ years experience with Zscaler Branch Connector and Zscaler Cloud Connector * 3+ years configuring advanced Zscaler security features (CBI, ATP, IPS, DLP) * 3+ years SSL/TLS inspection experience in ZIA * 1+ years Zscaler AI capabilities experience * 3+ years experience defining and managing Zscaler security policies * Experience with major cloud providers (AWS, GCP, Azure) and deploying ZPA App Connectors * Experience integrating Zscaler with SIEM/SOAR (Splunk, Microsoft Sentinel, Palo Alto XSOAR) * Experience with Zscaler APIs and automation tooling (Terraform, aaaaaa 1+ Python) * Experience with identity integrations (Okta, Azure AD, Ping Identity) for SAML/SCIM * Willingness to travel up to 50% Key requirements * discretionary annual incentive program * reasonable accommodations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

Videos

See all

Related articles

See all