Sr. Engineer – Security Engineering (Zscaler)

CBTS

Chennai District

On-site

INR 1,200,000 - 2,400,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CBTS is seeking a Zscaler & Network Security Engineer to administer secure internet access, endpoint connectivity, and remote access, while improving security controls. You will partner with security operations and network teams to maintain a strong security posture and reliable user connectivity.

The role emphasizes hands-on management of ZIA/ZCC, VPNs, vulnerability management, and change control, with a focus on least-privilege and robust documentation for SOPs and runbooks.

Qualifications

  • Hands-on experience administering ZIA and ZCC.
  • Strong web security concepts incl SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
  • Troubleshoot ZCC, PAC files, proxy connectivity, and endpoint access issues.
  • Experience with VPN technologies, preferably Palo Alto GlobalProtect.
  • Familiarity with security incident management, alert monitoring, and SLA-driven operations.
  • Understanding of Change Management and Change Control processes.
  • Experience using Qualys or similar vulnerability-management platforms.
  • Strong understanding of least privilege, secure baselines, access control, and security governance.
  • Ability to assess security risks and appropriately stagger exceptions or higher-risk requests.
  • Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.

Responsibilities

  • Administer and maintain ZIA policies, including SSL inspection, application control, sandbox policies, URL filtering, CASB controls, malware protection.
  • Manage and troubleshoot ZCC deployments, including installation, connectivity, authentication, policy enforcement, and endpoint issues.
  • Process PAC file changes through controlled, peer-reviewed deployment processes.
  • Monitor security alerts and dashboards, investigate issues, and resolve day-to-day security incidents within SLAs.
  • Follow Change Control processes for changes deviating from the security baseline.
  • Manage and troubleshoot VPN/remote-access solutions like GlobalProtect.
  • Use Qualys or similar tools for asset identification and vulnerability-management activities.
  • Review policy, URL, application, and whitelisting requests and escalate high-risk cases for approval.
  • Apply least-privilege access across users including employees, contractors, and executives.
  • Develop and maintain SOPs, runbooks, and knowledge articles for consistency.

Skills

ZIA administration
Web security concepts
ZCC / PAC troubleshooting
GlobalProtect VPN
Security incident mgmt
Change management
Vulnerability management
Access control
Risk assessment & exceptions
SOPs & runbooks
Enterprise security ops
Palo Alto tech
Security audits
Certifications

Tools

Qualys
Zscaler Client Connector

Job description

About this position

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

OnX is a leading technology solution provider that serves businesses, healthcare organizations, and government agencies across Canada. OnX combines deep technical expertise with a full suite of flexible technology solutions—including Generative AI, Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, OnX delivers comprehensive technology solutions for its clients’ transformative business initiatives. For more information, please visit www.onx.com.

Role Overview

We are seeking aZscaler & Network Security Engineerresponsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

Administer and maintainZscaler Internet Access (ZIA)policies, including:SSL inspectionApplication controlSandbox policiesURL filteringCASB controlsMalware exceptions, blocks, and security policiesManage and troubleshootZscaler Client Connector (ZCC)deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.ManagePAC filechanges through a controlled, tested, peer-reviewed, and approved deployment process.Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-daysecurity incidents within defined SLAs.Raise, document, implement, and drive changes through formalChange Controlprocesses, particularly where changes deviate from the approved security baseline.Manage and troubleshootVPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.Useasset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.Review and assesspolicy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.Applyleast-privilege access principlesacross different user populations, including employees, contractors, privileged users, and executives.Supportsecurity audits and compliance reviewsby collecting, validating, and providing appropriate control evidence and supporting documentation.Develop and maintainStandard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articlesto improve operational consistency and knowledge sharing.

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

OnX is a leading technology solution provider that serves businesses, healthcare organizations, and government agencies across Canada. OnX combines deep technical expertise with a full suite of flexible technology solutions—including Generative AI, Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, OnX delivers comprehensive technology solutions for its clients’ transformative business initiatives. For more information, please visit www.onx.com.

Role Overview

We are seeking aZscaler & Network Security Engineerresponsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

Administer and maintainZscaler Internet Access (ZIA)policies, including:SSL inspectionApplication controlSandbox policiesURL filteringCASB controlsMalware exceptions, blocks, and security policiesManage and troubleshootZscaler Client Connector (ZCC)deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.ManagePAC filechanges through a controlled, tested, peer-reviewed, and approved deployment process.Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-daysecurity incidents within defined SLAs.Raise, document, implement, and drive changes through formalChange Controlprocesses, particularly where changes deviate from the approved security baseline.Manage and troubleshootVPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.Useasset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.Review and assesspolicy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.Applyleast-privilege access principlesacross different user populations, including employees, contractors, privileged users, and executives.Supportsecurity audits and compliance reviewsby collecting, validating, and providing appropriate control evidence and supporting documentation.Develop and maintainStandard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articlesto improve operational consistency and knowledge sharing.

Required Skills & Experience
  • Hands-on experience administeringZscaler ZIA and Zscaler Client Connector.
  • Strong understanding of web security concepts, includingSSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
  • Experience troubleshootingZCC, PAC files, proxy connectivity, and endpoint access issues.
  • Experience withVPN technologies, preferably Palo Alto GlobalProtect.
  • Familiarity withsecurity incident management, alert monitoring, and SLA-driven operations.
  • Understanding ofChange Management and Change Controlprocesses.
  • Experience usingQualys or similar vulnerability/asset-management platforms.
  • Strong understanding ofleast privilege, secure baselines, access control, and security governance.
  • Ability to assess security risks and appropriately stagger exceptions or higher-risk requests.
  • Strong documentation skills, including writingSOPs, runbooks, and knowledge articles.
Preferred Skills
  • Experience working in an enterpriseSecurity Operations or Network Securityenvironment.
  • Palo Alto Networks security technology experience.
  • Familiarity with vulnerability-management and security-compliance frameworks.
  • Experience supporting internal and externalsecurity audits.
  • Relevant certifications such asZscaler, Palo Alto Networks, Security+, or equivalent.
Key Competencies
  • Strong analytical and troubleshooting skills
  • Security-focused mindset
  • Attention to detail and risk awareness
  • Effective incident and change management
  • Clear written and verbal communication
  • Ability to work within defined SLAs and operational processes
  • Strong stakeholder management and escalation skills
Role Overview

We are seeking aZscaler & Network Security Engineerresponsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

Administer and maintainZscaler Internet Access (ZIA)policies, including:SSL inspectionApplication controlSandbox policiesURL filteringCASB controlsMalware exceptions, blocks, and security policiesManage and troubleshootZscaler Client Connector (ZCC)deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.ManagePAC filechanges through a controlled, tested, peer-reviewed, and approved deployment process.Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-daysecurity incidents within defined SLAs.Raise, document, implement, and drive changes through formalChange Controlprocesses, particularly where changes deviate from the approved security baseline.Manage and troubleshootVPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.Useasset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.Review and assesspolicy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.Applyleast-privilege access principlesacross different user populations, including employees, contractors, privileged users, and executives.Supportsecurity audits and compliance reviewsby collecting, validating, and providing appropriate control evidence and supporting documentation.Develop and maintainStandard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articlesto improve operational consistency and knowledge sharing.

Share this Job:

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Engineer – Security Engineering (Zscaler)
Sr. Engineer – Security Engineering (Zscaler)

National Spinning Co., Inc. (USA) • Chennai District

On-site
INR 1,200,000 - 1,800,000
Sr Engineer Security Engineering Zscaler
Sr Engineer Security Engineering Zscaler

CBTS • Chennai District

On-site
INR 900,000 - 1,300,000
Zscaler & Network Security Engineer
Zscaler & Network Security Engineer

Cbts • Chennai District

On-site
INR 1,200,000 - 1,800,000
Zscaler Engineer
Zscaler Engineer

Persistent Systems Limited • Mumbai

Hybrid
INR 1,800,000 - 2,400,000
Hybrid work
Long service awards
Education sponsorship
+1
Zscaler Engineer
Zscaler Engineer

Persistent Systems • Mumbai

Hybrid
INR 1,000,000 - 2,000,000
Hybrid work model
Company-sponsored higher education & C
Certifications
Network Security Engineer
Network Security Engineer

People Prime Worldwide • Bengaluru

Hybrid
INR <1,000
Senior Engineer - Network Security (Zscaler & Palo Alto)
Senior Engineer - Network Security (Zscaler & Palo Alto)

Wipro • Maharashtra

On-site
INR 600,000 - 1,200,000
Z SCALER Technical Support
Z SCALER Technical Support

NTT America, Inc. • Dadri

On-site
INR 900,000 - 1,300,000
Information Systems Engineer
Information Systems Engineer

Zscaler • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Health plans
Time off for vacation and sick leave
Parental leave
+3
Zscaler Technical Support Engineer
Zscaler Technical Support Engineer

NTT DATA BUSINESS SOLUTIONS • Dadri, Hyderabad

On-site
INR 1,000,000 - 1,800,000