Sr. Engineer – Security Engineering (Zscaler)
Quick Summary
SSL inspection Application control Sandbox policies URL filtering CASB controls Malware exceptions, blocks, and security policies Manage and troubleshoot Zscaler Client Connector (ZCC) deployments,
CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.
We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.
Responsibilities
~2 min read- →Administer and maintain Zscaler Internet Access (ZIA) policies, including:
- →
- →SSL inspection
- →Application control
- →Sandbox policies
- →URL filtering
- →CASB controls
- →Malware exceptions, blocks, and security policies
- →Manage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.
- →Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.
- →Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.
- →Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.
- →Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.
- →Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.
- →Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.
- →Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.
- →Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.
- →Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.
- →Administer and maintain Zscaler Internet Access (ZIA) policies, including:
- →
- →SSL inspection
- →Application control
- →Sandbox policies
- →URL filtering
- →CASB controls
- →Malware exceptions, blocks, and security policies
- →Manage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.
- →Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.
- →Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.
- →Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.
- →Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.
- →Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.
- →Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.
- →Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.
- →Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.
- →Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.
Requirements
~1 min read- Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.
- Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
- Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.
- Experience with VPN technologies, preferably Palo Alto GlobalProtect.
- Familiarity with security incident management, alert monitoring, and SLA-driven operations.
- Understanding of Change Management and Change Control processes.
- Experience using Qualys or similar vulnerability/asset-management platforms.
- Strong understanding of least privilege, secure baselines, access control, and security governance.
- Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.
- Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.
- Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.
- Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
- Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.
- Experience with VPN technologies, preferably Palo Alto GlobalProtect.
- Familiarity with security incident management, alert monitoring, and SLA-driven operations.
- Understanding of Change Management and Change Control processes.
- Experience using Qualys or similar vulnerability/asset-management platforms.
- Strong understanding of least privilege, secure baselines, access control, and security governance.
- Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.
- Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.
Nice to Have
~1 min read- Experience working in an enterprise Security Operations or Network Security environment.
- Palo Alto Networks security technology experience.
- Familiarity with vulnerability-management and security-compliance frameworks.
- Experience supporting internal and external security audits.
- Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.
- Experience working in an enterprise Security Operations or Network Security environment.
- Palo Alto Networks security technology experience.
- Familiarity with vulnerability-management and security-compliance frameworks.
- Experience supporting internal and external security audits.
- Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.
- Strong analytical and troubleshooting skills
- Security-focused mindset
- Attention to detail and risk awareness
- Effective incident and change management
- Clear written and verbal communication
- Ability to work within defined SLAs and operational processes
- Strong stakeholder management and escalation skillsRole Overview
We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.
- Strong analytical and troubleshooting skills
- Security-focused mindset
- Attention to detail and risk awareness
- Effective incident and change management
- Clear written and verbal communication
- Ability to work within defined SLAs and operational processes
- Strong stakeholder management and escalation skills
tion.
Location & Eligibility
Listing Details
- First seen
- September 27, 2026
- Last seen
- September 27, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 57%
- Scored at
- September 27, 2026
Signal breakdown
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.