> Markdown version of [/jobs/ext/2677897-cyber-zscaler-network-security-engineering-manager-manager-strategy-growth-and-transformation](https://www.wearedevelopers.com/jobs/ext/2677897-cyber-zscaler-network-security-engineering-manager-manager-strategy-growth-and-transformation). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Zscaler Network Security Engineering Manager / Manager, Strategy, Growth, and Transformation - **Company:** Deloitte T.T.L. - **Location:** Cleveland, OH, United States - **Experience:** Experienced - **Salary:** $134,500.0 - $265,100.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, Border Gateway Protocol, Cloud Computing, Cloud Engineering, Cyber Security, System Configuration, Information Leak Prevention, Domain Name System Security Extensions, Identity and Access Management, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Network Segmentation, Performance Tuning, Ping (Networking Utility), Azure Active Directory, Cloud Services, Ansible, Zero Trust Network Access, Security Assertion Markup Language (SAML), Security Information and Event Management, Data Streaming, Syslog, User-Centered Design, Wide Area Networks, SSL Certificate Management, Google Cloud, Cloud Platform System, Okta, ARUBA, Web Filtering, Information Technology, Palo Alto Networks, Microsoft Sentinel, Cortex XSOAR Platform, Terraform, Splunk, Cisco, Vmware - **Published:** September 1, 2026 - **Apply:** https://dejobs.org/x/x/4E69A7A71AF64F9E850B0AD40BBE1C1A/job/ ## About the Role * Ability to work independently and collaborate as part of a team * Effective written and verbal communication skills * Meticulous attention to detail and quality of work product * Ability to build and sustain professional relationships * Ability to lead projects or workstreams * Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment * Strong interpersonal skills and professional demeanor * Ability to meet deadlines * Ability to mentor and provide clear guidance to others The team, * BA/BS degree in a technical field (e.g., Computer Science, Cyber Security, Information Technology) * Zscaler Digital Transformation Engineer (ZDTE) certification required * 7+ years of progressively responsible experience in network security engineering * 7+ years of hands-on experience designing, deploying, and managing Zscaler Internet Access (ZIA), including web filtering, DNS security, cloud firewall, bandwidth controls, and advanced threat protection policies in enterprise-scale environments * 7+ years of hands-on experience designing, deploying, and managing Zscaler Private Access (ZPA), including application segment configuration, access policies, connector deployment, and zero trust network access (ZTNA) architectures replacing legacy VPN infrastructure * 3+ years of experience designing, deploying, and managing Zscaler Branch Connector, and configuring BGP/static routing configurations and network segmentation, replacing traditional SD-WAN platforms (e.g., Cisco, VMware, Aruba) * 3+ years of experience designing, deploying, and managing Zscaler Cloud Connector, including deployment within cloud environments (AWS, Azure, and/or GCP), workload-to-internet and workload-to-workload traffic inspection, and integration with cloud-native networking constructs (e.g., VPCs, VNets, Transit Gateways) * 5+ years of experience configuring and tuning Zscaler advanced security features, including Cloud Sandboxing, Advanced Threat Protection (ATP), Intrusion Prevention (IPS), Cloud Browser Isolation (CBI), and Data Loss Prevention (DLP) policies * 5+ years of experience implementing and troubleshooting SSL/TLS inspection within ZIA, including certificate management, decryption policy design, bypass rules, and handling of certificate-pinned applications * 2+ years of experience with Zscaler AI-powered capabilities, including AI-driven policy recommendations, Digital Experience Monitoring (ZDX), and leveraging Zscaler's AI/ML-based threat intelligence for automated threat response * 3+ years of hands-on experience defining, managing, and reviewing Zscaler security policies, including rule base optimization, policy lifecycle management, access reviews, and role-based access controls within the Zscaler Admin Portal * Experience implementing ZIdentity for centralize identity management. * 4+ years of experience with one or more major cloud service providers (AWS, GCP, Azure) to deploy ZPA App Connectors within cloud-native architectures. * 4+ years of experience deploying Zscaler Cloud Connector. * Ability to travel up to 50%, on average, based on the work you perform and the clients and industries/sectors you serve, * Advanced cybersecurity certifications such as CISSP, CCIE Security, CCNP Security, or GIAC equivalents (e.g., GPEN, GCSA) * Ability to conduct SASE vendor competitive analysis and advise clients on solution selection based on specific use cases and requirements (e.g., Zscaler vs. Palo Alto Prisma vs. Netskope) * Ability to conduct Zero Trust Architecture assessments and develop roadmaps aligning Zscaler capabilities to NIST SP 800-207 or CISA Zero Trust Maturity Model frameworks * Experience integrating Zscaler with SIEM/SOAR platforms (e.g., Splunk, Microsoft Sentinel, Palo Alto XSOAR) via log streaming, API connectors, or syslog for threat detection and incident response workflows * Experience with Zscaler APIs and automation tooling (e.g., Terraform, Ansible, Python) for provisioning, policy management, and configuration-as-code workflows * Experience designing and presenting Zscaler solution architectures tailored to client requirements, translating technical concepts for executive and non-technical stakeholders * Familiarity with identity provider integrations (e.g., Okta, Azure AD, Ping Identity) for SAML/SCIM-based authentication within ZIA and ZPA deployments * Previous consulting or "Big 4" experience, with a track record of delivering enterprise network security or SASE transformation engagements ## Description As a Manager on the Cyber Enterprise Security team, you will be responsible for... * Lead the end-to-end design, deployment, and operational management of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions across complex enterprise environments. * Manage zero trust network access (ZTNA) transformation workstreams, including the replacement of legacy virtual private network (VPN) infrastructure and modernization of enterprise access controls. * Provide technical leadership for the configuration and optimization of Zscaler capabilities, including policy administration, SSL/TLS inspection, advanced threat protection, data loss prevention, and cloud-based traffic inspection. * Oversee the implementation of branch, cloud, and application connector architectures across on-premises and public cloud environments, including Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). * Direct the development and quality assurance of technical deliverables, solution architectures, and client-facing recommendations aligned with enterprise security, network transformation, and operational objectives. * Lead client and delivery teams through execution, managing workplans, risks, dependencies, stakeholder communications, and issue resolution to ensure high-quality outcomes. ## Related Videos - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Your Infrastructure Is Not a Playground: AI Agents for Infra Done Right](https://www.wearedevelopers.com/videos/2084-your-infrastructure-is-not-a-playground-ai-agents-for-infra-done-right) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)