Security Engineer - Zscaler

Recutify Inc.
Sunnyvale, CA, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$114,400.0 - $124,800.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Agile Methodology Amazon Web Services User Authentication Cloud Computing Security Data Centers Domain Name System (DNS) Hypertext Transfer Protocols (HTTP) Internet Protocol Security (IP SEC) Network Security Network Troubleshooting Networking Basics
+13 more
Packet Analyzer Scrum Methodology Zero Trust Network Access Security Assertion Markup Language (SAML) Software Engineering TCP/IP Tcpdump Wireshark Multitopology Routing Configuration Transport Layer Security Workspace ONE Information Technology Servicenow

Job description

We are seeking a Security Engineer who will be responsible for designing, deploying, and operating Zero Trust security solutions using Zscaler technologies (ZIA, ZPA, ZDX). This role involves deep technical expertise in cloud security, endpoint integration, and advanced network troubleshooting, acting as a Level 3 escalation point for critical incidents. The engineer will partner closely with cross-functional teams to ensure secure, optimized, and resilient access for enterprise users and applications., * Zero Trust & Zscaler Engineering

  • Deploy and manage Zscaler ZIA, ZPA, ZDX for large enterprise environments.
  • Design and optimize security policies: SSL Inspection, URL Filtering, Sandbox, Access & Timeout Policies, Client Forwarding.

  • Support Zscaler migration and integration with Workspace ONE / MDM platforms.
  • Deploy and manage ZPA App Connectors in data centers and cloud (AWS preferred).
  • Endpoint & Zscaler Client Connector (ZCC)
  • Manage ZCC agent profiles, configuration updates, rollout strategy.
  • Maintain SSL Inspection Exemption lists for certificate pinned applications.
  • Support development and monitoring of DLP policies.
  • Advanced Troubleshooting & Operations
  • Perform L3 L7 troubleshooting using tools such as: Wireshark, tcpdump, MTR, Zscaler Analyzer, ZSATunnel & ZSATray logs.

  • Use ZDX and other Zscaler diagnostics to analyze latency and performance issues.
  • Act as Level 3 escalation for P1/P2 incidents and coordinate with Zscaler TAMs & Support.
  • Manage Zscaler related tickets and escalations in ServiceNow.
  • Collaboration & Documentation
  • Collaborate with infrastructure, cloud, network, and security teams.
  • Create and maintain SOPs, documentation, and knowledge articles.

Requirements

Do you have experience in Zero trust architecture design?, Do you have a Bachelor’s degree?, * BS/MS in Computer Science or related area or equivalent relevant experience

  • 8+ years of network security / cloud security / Zero Trust
  • Strong hands-on expertise with ZIA, ZPA, ZDX, ZCC (mandatory).
  • Solid understanding of: TCP/IP, DNS, HTTP/HTTPS, TLS/SSL, Proxy architecture, authentication (SAML/AD), IPSec/GRE
  • Proficiency in packet analysis (Wireshark, tcpdump).
  • Experience with AWS/GCP (networking fundamentals).
  • Strong Analytical, Problem solving, and creative mindset
  • Experience with various Software Development Lifecycle Process ( Agile Development, SCRUM methodologies. etc.)
  • Strong stakeholder communication with leadership and cross-functional teams.
  • Excellent communication skills. Communicates clearly, succinctly, and persuasively to all levels of employees, customers, and management
  • Ability to work independently and lead problem-solving efforts.
  • Excellent troubleshooting and documentation skills.
  • Ability to work under pressure and in fast paced enterprise environments.

Preferred Certifications

  • Zscaler: ZCCP IA, ZCCP PA, ZCCA
  • Security: CEH, CISSP (added advantage)
  • Networking: CCNP Security
  • AWS Cloud certifications

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

10:19 min

Continuous learning strategies and emerging industry trends

Kurt Eder · LIVE

3:19 min

Setting up a vulnerable test application and monitoring environment

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC 2024

52 sec

Introduction to eBPF as a secure virtual machine

Ayesha Kaleem · WWC 2023

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

7:50 min

Prioritizing cybersecurity and zero trust in development

Ash Ryan Arnwine Ash Ryan Arnwine +3 · WWC 2024

1:48 min

Analyzing network packets with database protocol tools

Daniël van Eeden Daniël van Eeden · WWC Europe 2026

Videos

See all

Related articles

See all