> Markdown version of [/jobs/ext/3309744-hiring-cloud-security-engineer-sase-zero-trust](https://www.wearedevelopers.com/jobs/ext/3309744-hiring-cloud-security-engineer-sase-zero-trust). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Hiring: Cloud Security Engineer - SASE & Zero Trust - **Company:** Zero Hash Trust Company, LLC - **Location:** South Plainfield, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Microsoft Access, Bash Shell, Cloud Computing, Cloud Computing Security, CompTIA Security+, Cyber Security, Computer Networks, Domain Name System (DNS), Identity and Access Management, Virtual Private Networks (VPN), Python (Programming Language), Microsoft Security Essentials, System Center Configuration Manager, Routing, Packet Analyzer, Ping (Networking Utility), Public Key Infrastructure, Windows PowerShell, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Web Application Security, TCP/IP, Tcpdump, Wireshark, Okta, Microsoft InTune, Tanium Platform Expertise, Casper Suite - **Published:** September 22, 2026 - **Apply:** https://www.dice.com/job-detail/09033cd4-1379-4057-82f5-7fcef2b5e8fb ## About the Role We are looking for an experienced Cloud Security Engineer with strong hands-on expertise in Zscaler, SASE, Zero Trust, endpoint security, networking, and identity management., * 11+ years of overall IT/Network/Security experience * 3+ years of hands-on Zscaler engineering * Strong experience with ZIA, ZPA, ZCC, and ZDX * Experience with Intune, Jamf Pro, Tanium, SCCM, or equivalent UEM platforms * Strong PowerShell, Python, or Bash scripting * Strong knowledge of DNS, PAC files, TCP/IP, routing, VPN, proxy technologies, and Wireshark * Experience with Entra ID/Azure AD, Okta, or Ping Identity * Strong knowledge of SAML, SCIM, SSO, and MFA * Strong understanding of PKI, SSL/TLS, root/intermediate certificates, and HTTPS inspection * Hands-on SASE and Zero Trust architecture experience, * Zscaler Certified Cloud Associate (ZCCA-IA / ZCCA-PA) * Zscaler Certified Cloud Professional (ZCCP-IA / ZCCP-PA) * CompTIA Security+ * Microsoft Security certifications * CCNP Security or equivalent ## Description * Design, deploy, configure, and manage enterprise Zscaler SASE environments. * Administer Zscaler Internet Access (ZIA), Zscaler Private Access (ZPA), Zscaler Client Connector (ZCC), and Zscaler Digital Experience (ZDX). * Package and deploy ZCC across enterprise endpoints using Intune, Jamf Pro, Tanium, SCCM, or similar UEM platforms. * Configure PAC files, forwarding rules, SSL/TLS inspection, bypass rules, application segments, and security policies. * Configure ZPA App Connectors and application segments for Zero Trust access. * Integrate Zscaler with Microsoft Entra ID/Azure AD, Okta, or Ping Identity using SAML/SCIM. * Provide L3/Tier-3 troubleshooting for ZCC connectivity, certificate errors, posture-check failures, routing issues, and application-access problems. * Analyze network traffic using Wireshark, TCPDump, and packet captures. * Manage DNS, TCP/IP, routing, VPN, proxy, and secure web gateway issues. * Configure and troubleshoot SSL/TLS inspection and PKI certificate chains. * Monitor and optimize SASE connectivity and tunnel-bypass strategies. * Develop automation using Python, PowerShell, or Bash. * Collaborate with Endpoint, Network, IAM, and Security Operations teams.