Zscaler L3 Engineer

KPG99 INC

Bengaluru

Remote

INR 2,200,000 - 3,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading tech company is seeking a Zscaler L3 Engineer to provide advanced operational support and troubleshooting for Zscaler technologies in a fully remote capacity. The ideal candidate should have 6-8 years of experience in IT Security and strong problem-solving skills, with direct Zscaler administration experience highly desirable. This role emphasizes deep knowledge of ZIA, ZPA, and ZDX configurations to ensure seamless operations aligned with Zero Trust security principles. A bachelor's degree in a relevant field is required.

Qualifications

  • 6-8 years in IT Security/Network Security roles.
  • 4+ years of direct Zscaler hands-on administration in enterprise or MSSP environments.
  • Proficiency in ZPA components: App Segments, Connectors, Cloud Connector, Private Service Edge.
  • Solid knowledge of TCP/IP, DNS, HTTP/HTTPS, SSL/TLS, VPNs.
  • Experience with certificate management and PKI.
  • Understanding of SD‑WAN integrations and hybrid network models.
  • Familiarity with SIEM/SOAR tools (Splunk, Sentinel, QRadar).
  • Experience with endpoint management (ZCC deployment via MDM/Intune).
  • Ability to analyze traffic flows, logs, and user experience metrics.
  • Strong analytical and problem-solving ability.
  • Clear technical communication for incident updates and RCA reports.
  • Ability to work independently with minimal supervision in high‑pressure environments.

Responsibilities

  • Resolve complex issues in ZIA, ZPA, and ZDX environments as the final point of escalation.
  • Perform root cause analysis using logs and advanced debugging.
  • Manage and optimize ZIA policies and ZPA configurations.
  • Implement Zscaler configurations aligned with Zero Trust and security best practices.
  • Configure, troubleshoot, and maintain ZPA components (App Connectors, App Segments, Private Service Edge, Cloud Connector).
  • Ensure tenant health, policy syncs, connector availability, and certificate renewals.
  • Implement and maintain Zscaler configurations aligned with Zero Trust principles.
  • Support identity integrations with SAML, SCIM, IdPs (Okta, Azure AD, Ping).
  • Handle SSL inspection rules and PKI operations; use Zscaler APIs for automation.

Skills

Hands-on experience with ZIA, ZPA, and ZDX at enterprise scale
Deep knowledge of ZIA features: SWG, FWaaS, sandboxing, CASB, DLP, SSL inspection
Proficiency in ZPA components: App Segments, Connectors, Cloud Connector, Private Service Edge
Solid knowledge of TCP/IP, DNS, HTTP/HTTPS, SSL/TLS, VPNs
Experience with certificate management and PKI
Understanding of SD-WAN integrations and hybrid network models
Familiarity with SIEM/SOAR tools (Splunk, Sentinel, QRadar)
Experience with endpoint management (ZCC deployment via MDM/Intune)
Strong analytical and problem-solving ability
Clear technical communication for incident updates and RCA reports

Education

Bachelor’s degree in computer science, Information Security, or related field
Zscaler Certified Cloud Professional (Edu-200, EDU202)
Edu-301 & EDU 302

Tools

Zscaler Admin Console

Job description

Please find the job description below and let me know your interest.

Position: Zscaler L3 Engineer
Location: Full Remote
Duration: 6+ months
Mode of Interview: Video
Role Overview

We are looking for a Zscaler L3 Engineer to provide advanced operational support, troubleshooting, and optimization for Zscaler technologies across a large enterprise environment. The candidate will act as the highest technical escalation point for ZIA, ZPA, and ZDX issues, ensuring seamless operations and strong alignment with Zero Trust security principles.

This role is hands‑on, technical, and execution‑focused ideal for someone who thrives on solving complex problems independently and working directly with vendors and customers to drive resolution.

Key Responsibilities
  • Advanced Troubleshooting & Escalations
    • Resolve complex issues in ZIA, ZPA, and ZDX environments as the final point of escalation.
    • Perform root cause analysis (RCA) using logs, PCAPs, and advanced debugging.
    • Directly engage with Zscaler TAC for unresolved incidents and feature defects.
    • Manage and optimize ZIA policies (SWG, FWaaS, SSL inspection, DLP, CASB).
    • Configure, troubleshoot, and maintain ZPA (App Connectors, App Segments, Private Service Edge, Cloud Connector).
    • Ensure tenant health, policy syncs, connector availability, and certificate renewals.
  • Security & Compliance Alignment
    • Implement and maintain Zscaler configurations aligned with Zero Trust and security best practices.
    • Support identity integrations with SAML, SCIM, and IdPs (Okta, Azure AD, Ping, etc.).
    • Handle SSL inspection rules and PKI/certificate operations.
    • Use Zscaler APIs for operational automation, reporting, and monitoring.
    • Maintain operational scripts or workflows to improve efficiency.
    • Produce detailed RCA reports for major incidents.
    • Maintain technical documentation and update configuration baselines.
    • Provide direct input into continuous improvement for monitoring and alerting.
Required Skills & Experience
  • Hands‑on experience with ZIA, ZPA, and ZDX at enterprise scale.
  • Deep knowledge of ZIA features: SWG, FWaaS, sandboxing, CASB, DLP, SSL inspection.
  • Proficiency in ZPA components: App Segments, Connectors, Cloud Connector, Private Service Edge.
  • Solid knowledge of TCP/IP, DNS, HTTP/HTTPS, SSL/TLS, VPNs.
  • Experience with certificate management and PKI.
  • Understanding of SD‑WAN integrations and hybrid network models.
  • Familiarity with SIEM/SOAR tools (Splunk, Sentinel, QRadar).
  • Experience with endpoint management (ZCC deployment via MDM/Intune).
  • Ability to analyze traffic flows, logs, and user experience metrics.
  • Strong analytical and problem‑solving ability.
  • Clear technical communication for incident updates and RCA reports.
  • Ability to work independently with minimal supervision in high‑pressure environments.
Qualifications
  • Education: Bachelor’s degree in computer science, Information Security, or related field (or equivalent experience).
  • Zscaler Certified Cloud Professional (Edu‑200, EDU202)
  • Must have (EDU 301 & EDU 302).
Experience
  • 6–8 years in IT Security/Network Security roles.
  • 4+ years of direct Zscaler hands‑on administration in enterprise or MSSP environments.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer (Zscaler L3 | ZIA | ZPA | ZDX | Zero Trust)
Security Engineer (Zscaler L3 | ZIA | ZPA | ZDX | Zero Trust)

Sky Systems, Inc. (SkySys) • India

Remote
INR 1,200,000 - 2,000,000
Contract -Certified Zscaler L3 Engineer (EDU 301 & EDU 302)
Contract -Certified Zscaler L3 Engineer (EDU 301 & EDU 302)

KPG99 INC • Bengaluru

On-site
INR 1,000,000 - 1,400,000
Zscaler Senior Expert (ZIA / ZPA)
Zscaler Senior Expert (ZIA / ZPA)

Swediumglobal • Pune District

On-site
INR 1,500,000 - 2,500,000
Senior Engineering Systems Administrator - Zscaler
Senior Engineering Systems Administrator - Zscaler

Envestnet • Thiruvananthapuram

On-site
INR 1,500,000 - 2,100,000
Lead Platform Engineer Hyderabad, India
Lead Platform Engineer Hyderabad, India

ESR Healthcare • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Zscaler Engineer
Zscaler Engineer

Neev • Kolkata District

On-site
INR 420,000 - 560,000
Zscaler Engineer
Zscaler Engineer

Neev • Hyderabad

On-site
INR 500,000 - 700,000
Network Zscaler SME
Network Zscaler SME

Tata Consultancy Services • Hyderabad

On-site
INR 800,000 - 1,200,000
Information Systems Engineer
Information Systems Engineer

Visa Hunt • Bengaluru

Hybrid
INR 1,800,000 - 3,000,000
Health plans
Vacation & sick time
Parental leave
+3
Network Security Engineer
Network Security Engineer

Persistent • Pune District

On-site
INR 2,500,000 - 4,000,000
Competitive salary
Education support
Flexible hours
+3