Security Engineer â Zscaler / DLP / Endpoint & Email Security
Job Description
Looking for: Security Engineer – Zscaler / DLP / Endpoint & Email Security
Job Type: Contract
Location: Remote
No of positions:1
Role Summary:
This role will lead administration, engineering and operational support of our Zscaler cloud-security platform, endpoint/email protection tools and data-loss prevention controls. The ideal candidate is a certified Zscaler administrator, comfortable operating during U.S. business hours, and experienced in integrating security tooling across network, endpoint and email channels.
Key Responsibilities
• Lead the deployment, configuration, administration and optimization of the Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) platforms (and related modules such as ZDX, Zero Trust Browser, etc.).
• Develop, implement and maintain policy sets for Zscaler including URL Filtering, SSL Inspection, Cloud App Control, File Type Control, access control, user-forwarding, isolation, timeout/enforcement rules.
• Monitor, manage and troubleshoot Zscaler logs, alerts and performance metrics; perform root-cause analysis, escalate and remediate.
• Partner with endpoint and email security teams to ensure holistic protection: review and tune endpoint protection (AV/EDR), email-security (secure email gateways, DLP) and ensure coordination with the Zscaler platform where traffic leaves or enters the enterprise.
• Lead the administration of Data Loss Prevention (DLP) controls across web, email and endpoint channels: define rules/rule sets, tune for false-positives/false-negatives, report on DLP incidents, and work with business stakeholders to remediate exposures.
• Create, maintain and update operational documentation including configuration diagrams, change logs, standard operating procedures (SOPs) and run-books.
• Automate reporting and monitoring workflows where feasible (via scripting, APIs, dashboards) to reduce manual effort and increase visibility.
• Provide mentoring/training across teams (network, infrastructure, security operations) on Zscaler best practices, DLP configuration, and how endpoint/email tools integrate with the security ecosystem.
• Stay current on product updates, emerging threats, security tooling trends (especially in SASE, SSE, Zero Trust architectures) and proactively recommend improvements.
Required Qualifications
• Bachelor’s degree in Computer Science, Information Technology, Cybersecurity or equivalent experience.
• Demonstrated hands-on experience (typically 4+ years) in a security engineering or infrastructure role involving cloud-based security platforms and policy management.
• Experience administering Zscaler platforms (ZIA & ZPA) in a production environment: policy creation, routing/authentication management, SSL inspection, cloud-app control, file-type control, etc.
• Zscaler certification(s) – e.g., Zscaler Certified Cloud Administrator (ZCCA-IA, ZCCA-PA) or equivalent.
• Proficient in networking fundamentals (TCP/IP, DNS, VPNs, proxy, firewall, TLS/SSL) and cloud security architectures (SASE/SSE, Zero-Trust).
• Experience with endpoint security and email security tools (EDR/AV, secure email gateway, email DLP) and working in conjunction with network/web protections.
• Strong analytical, troubleshooting and root-cause analysis skills; comfortable reading logs, dashboards, interpreting data.
• Excellent communication skills – able to collaborate with technical teams and business stakeholders; document clearly; provide training as needed.
• Must be available to work full U.S. business hours (e.g., Eastern or Central time zones) to align with operations and incident response needs.
Preferred Qualifications
• Master’s degree in a relevant field or equivalent advanced certification (CISSP, CISM, CCNP Security, etc.).
• Experience integrating Zscaler with SD-WAN, Zero Trust network segmentation, CASB, Cloud Access Security Broker technologies.
• Experience with scripting/automation (Python, PowerShell, APIs) to manage and scale security operations.
• Familiarity with SIEM platforms (e.g., Microsoft Sentinel, Splunk) and experience feeding Zscaler logs into a security operations center (SOC) or analytics platform.
• Experience in a highly regulated environment (finance, healthcare, government) familiar with compliance standards such as PCI-DSS, HIPAA, NIST.
• Experience working with globally distributed teams and handling multi-region deployments.
Similar Jobs
Explore other opportunities that match your interests