Senior ZScaler Resource

Artech LLC

Dallas, TX

JOB DETAILS
SKILLS
Access Control, Amazon Web Services (AWS), Analysis Skills, Application Programming Interface (API), Applications Security, Architectural Analysis, Authentication, Best Practices, CCNP - Cisco Certified Network Professional, CEH - Certified Ethical Hacker, Cisco Network Systems, Cloud Architecture, Cloud Computing, Communication Skills, Computer Security, Corrective Action, Cross-Functional, Digital Certificates, Documentation, EC-Council, Firewalls, GRE (Generic Routing Encapsulation), Hunting, IPsec (IP Security), Identify Issues, Identity Data Management, Incident Response, Leadership, Malware, Microsoft Windows Azure, Network Administration/Management, Network Security, Network Traffic Analysis, Operations Processes, Operations Security (OPSEC), Performance Tuning/Optimization, Problem Solving Skills, Python Programming/Scripting Language, Root Cause Analysis, SSL-TLS (Secure Socket Layer - Transport Layer Security), Scripting (Scripting Languages), Security Analysis, Security Architecture, Security Assertion Markup Language (SAML), Security Information and Event Management (SIEM), Security Infrastructure, Splunk, Team Player, Technical Leadership, Technical Support, Technical Writing, Windows PowerShell
LOCATION
Dallas, TX
POSTED
3 days ago

Zscaler Engineer – Level 3

Position Overview

We are seeking an experienced Zscaler Engineer (L3) to support and enhance the organization's Zero Trust and SASE security architecture. The ideal candidate will possess deep expertise in Zscaler technologies, advanced network security, cloud-based access controls, and complex troubleshooting in enterprise environments. This role requires strong technical leadership, analytical problem-solving skills, and the ability to collaborate across security, network, and cloud teams.


Key Responsibilities

  • Administer, configure, and optimize advanced Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) deployments.
  • Design, implement, and troubleshoot GRE and IPsec tunnels, including performance optimization, latency analysis, and tunnel failure remediation.
  • Develop and maintain ZPA access policies, application segmentation, and identity-based access controls aligned with Zero Trust principles.
  • Configure and manage traffic forwarding methods, including Zscaler Client Connector (ZCC), Client files, GRE, and IPsec tunnels.
  • Implement and optimize SSL/TLS inspection policies, certificate management, and security enforcement controls.
  • Support and enhance Zscaler Cloud Firewall capabilities, including Layer 7 traffic inspection, application visibility, and threat intelligence integration.
  • Implement and support deception technology initiatives for threat hunting, threat detection, and malware containment.
  • Integrate Zscaler solutions with enterprise Identity Providers (IdPs) such as Azure AD/Entra ID, Okta, SAML, SCIM, and MFA solutions.
  • Configure and support SIEM integrations, forwarding ZIA and ZPA logs to Splunk, Azure Sentinel, or similar platforms for monitoring, alerting, and incident response.
  • Perform root cause analysis (RCA) for complex security and network incidents and recommend long-term corrective actions.
  • Evaluate and improve security architectures to ensure alignment with Zero Trust and industry best practices.
  • Create and maintain technical documentation, operational procedures, and security reports.
  • Serve as an escalation point for critical incidents and work closely with cross-functional teams to resolve complex technical issues.

Required Qualifications

  • Minimum 4+ years of hands-on experience with advanced Zscaler configurations and administration.
  • Strong expertise in:
    • ZIA (Zscaler Internet Access)
    • ZPA (Zscaler Private Access)
    • ZCC (Zscaler Client Connector)
    • Zero Trust Network Access (ZTNA)
  • Extensive experience managing and troubleshooting:
    • GRE tunnels
    • IPsec tunnels
    • Traffic forwarding configurations
    • SSL inspection policies
  • Advanced knowledge of cloud firewall technologies and Layer 7 traffic analysis.
  • Strong understanding of role-based access control (RBAC), identity integration, and authentication technologies.
  • Experience integrating security platforms with SIEM solutions such as Splunk or Client Sentinel.
  • Strong troubleshooting skills covering network, security, authentication, and application access issues.
  • Ability to communicate technical concepts effectively to leadership, stakeholders, and engineering teams.

Preferred Qualifications

  • Experience with deception technology, threat hunting, malware containment, and advanced threat detection.
  • Experience with multi-cloud environments including AWS and Azure.
  • Exposure to enterprise firewall platforms such as Palo Alto, Fortinet, Cisco, or Check Point.
  • Experience with automation and scripting using PowerShell, Python, or APIs.
  • Familiarity with SASE/SSE architectures and cloud security best practices.

Certifications

Preferred

  • Zscaler Certified Cloud Expert (ZCCE) or equivalent Zscaler certification

Highly Desirable

  • Cisco CCNP Security
  • Certified Ethical Hacker (CEH)
  • EC-Council Certified Security Analyst (ECSA)
  • Palo Alto PCNSE

Key Competencies

  • Zero Trust Security Architecture
  • Security Architecture Review & Assessment
  • Root Cause Analysis (RCA)
  • Threat Detection & Containment
  • Identity & Access Management (IAM)
  • Incident Response
  • Executive Communication
  • Cross-Functional Collaboration
  • Security Reporting & Documentation

Location: Hybrid (3 days onsite per week)
Level: Senior / L3
Domain: Network Security / Zscaler / Zero Trust / SASE/SSE

About the Company

A

Artech LLC