Hiring: Cloud Security Engineer - SASE & Zero Trust

Zero Hash Trust Company, LLC
South Plainfield, United States
16 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Bash Shell Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Computer Networks Domain Name System (DNS) Identity and Access Management Virtual Private Networks (VPN) Python (Programming Language) Microsoft Security Essentials
+17 more
System Center Configuration Manager Routing Packet Analyzer Ping (Networking Utility) Public Key Infrastructure Windows PowerShell Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Web Application Security TCP/IP Tcpdump Wireshark Okta Microsoft InTune Tanium Platform Expertise Casper Suite

Job description

  • Design, deploy, configure, and manage enterprise Zscaler SASE environments.
  • Administer Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), Zscaler Client Connector (ZCC), and Zscaler Digital Experience (ZDX).
  • Package and deploy ZCC across enterprise endpoints using Intune, Jamf Pro, Tanium, SCCM, or similar UEM platforms.
  • Configure PAC files, forwarding rules, SSL/TLS inspection, bypass rules, application segments, and security policies.
  • Configure ZPA App Connectors and application segments for Zero Trust access.
  • Integrate Zscaler with Microsoft Entra ID/Azure AD, Okta, or Ping Identity using SAML/SCIM.
  • Provide L3/Tier-3 troubleshooting for ZCC connectivity, certificate errors, posture-check failures, routing issues, and application-access problems.
  • Analyze network traffic using Wireshark, TCPDump, and packet captures.
  • Manage DNS, TCP/IP, routing, VPN, proxy, and secure web gateway issues.
  • Configure and troubleshoot SSL/TLS inspection and PKI certificate chains.
  • Monitor and optimize SASE connectivity and tunnel-bypass strategies.
  • Develop automation using Python, PowerShell, or Bash.
  • Collaborate with Endpoint, Network, IAM, and Security Operations teams.

Requirements

We are looking for an experienced Cloud Security Engineer with strong hands-on expertise in Zscaler, SASE, Zero Trust, endpoint security, networking, and identity management., * 11+ years of overall IT/Network/Security experience

  • 3+ years of hands-on Zscaler engineering
  • Strong experience with ZIA, ZPA, ZCC, and ZDX
  • Experience with Intune, Jamf Pro, Tanium, SCCM, or equivalent UEM platforms
  • Strong PowerShell, Python, or Bash scripting
  • Strong knowledge of DNS, PAC files, TCP/IP, routing, VPN, proxy technologies, and Wireshark
  • Experience with Entra ID/Azure AD, Okta, or Ping Identity
  • Strong knowledge of SAML, SCIM, SSO, and MFA
  • Strong understanding of PKI, SSL/TLS, root/intermediate certificates, and HTTPS inspection
  • Hands-on SASE and Zero Trust architecture experience, * Zscaler Certified Cloud Associate (ZCCA-IA / ZCCA-PA)
  • Zscaler Certified Cloud Professional (ZCCP-IA / ZCCP-PA)
  • CompTIA Security+
  • Microsoft Security certifications
  • CCNP Security or equivalent

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Loading talks and stories from around this role…