HirePortal

Senior Engineer – Security Engineering (Zscaler)

  • CBTS
  • Chennai, India
  • INR 2,000,000 – INR 3,000,000

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

OnX is a leading technology solution provider that serves businesses, healthcare organizations, and government agencies across Canada. OnX combines deep technical expertise with a full suite of flexible technology solutions—including Generative AI, Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, OnX delivers comprehensive technology solutions for its clients’ transformative business initiatives. For more information, please visit www.onx.com.

Role Overview

We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

  • Administer and maintain Zscaler Internet Access (ZIA) policies, including:
    • SSL inspection
    • Application control
    • Sandbox policies
    • URL filtering
    • CASB controls
    • Malware exceptions, blocks, and security policies
  • Manage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.
  • Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.
  • Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.
  • Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.
  • Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.
  • Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.
  • Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.
  • Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.
  • Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.
  • Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.

Required Skills & Experience

  • Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.
  • Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
  • Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.
  • Experience with VPN technologies, preferably Palo Alto GlobalProtect.
  • Familiarity with security incident management, alert monitoring, and SLA-driven operations.
  • Understanding of Change Management and Change Control processes.
  • Experience using Qualys or similar vulnerability/asset-management platforms.
  • Strong understanding of least privilege, secure baselines, access control, and security governance.
  • Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.
  • Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.

Preferred Skills

  • Experience working in an enterprise Security Operations or Network Security environment.
  • Palo Alto Networks security technology experience.
  • Familiarity with vulnerability-management and security-compliance frameworks.
  • Experience supporting internal and external security audits.
  • Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.

Key Competencies

  • Strong analytical and troubleshooting skills
  • Security-focused mindset
  • Attention to detail and risk awareness
  • Effective incident and change management
  • Clear written and verbal communication
  • Ability to work within defined SLAs and operational processes
  • Strong stakeholder management and escalation skillsRole Overview

We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

  • Administer and maintain Zscaler Internet Access (ZIA) policies, including:
    • SSL inspection
    • Application control
    • Sandbox policies
    • URL filtering
    • CASB controls
    • Malware exceptions, blocks, and security policies
  • Manage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.
  • Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.
  • Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.
  • Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.
  • Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.
  • Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.
  • Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.
  • Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.
  • Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.
  • Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.

Required Skills & Experience

  • Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.
  • Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
  • Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.
  • Experience with VPN technologies, preferably Palo Alto GlobalProtect.
  • Familiarity with security incident management, alert monitoring, and SLA-driven operations.
  • Understanding of Change Management and Change Control processes.
  • Experience using Qualys or similar vulnerability/asset-management platforms.
  • Strong understanding of least privilege, secure baselines, access control, and security governance.
  • Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.
  • Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.

Preferred Skills

  • Experience working in an enterprise Security Operations or Network Security environment.
  • Palo Alto Networks security technology experience.
  • Familiarity with vulnerability-management and security-compliance frameworks.
  • Experience supporting internal and external security audits.
  • Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.

Key Competencies

  • Strong analytical and troubleshooting skills
  • Security-focused mindset
  • Attention to detail and risk awareness
  • Effective incident and change management
  • Clear written and verbal communication
  • Ability to work within defined SLAs and operational processes
  • Strong stakeholder management and escalation skills

tion.

Skills

  • Zscaler
  • Network Security
  • Troubleshooting
  • Secure Internet Access
  • Endpoint Security
  • Monitoring
  • Administration

Related jobs

CBTSApply for this job