Network Security Engineer SME

Ideal Innovations

Clarksburg (WV)

On-site

USD 95,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ideal Innovations in Clarksburg, WV is looking for a cybersecurity engineer to lead a high-impact Zero Trust transformation for the FBI CJIS division. You will manage the implementation of Zscaler solutions, enhancing security posture and reducing reliance on legacy systems.

With responsibilities spanning hands-on engineering and architecture design, you will be an integral part of a collaborative team focused on delivering mission-critical security solutions. Top Secret clearance is required.

Qualifications

  • Hands-on experience with Zscaler (ZIA/ZPA) or comparable cloud security platforms.
  • 10+ years of network security or cybersecurity engineering experience.
  • Experience as a technical lead on enterprise projects.

Responsibilities

  • Lead implementation of Zscaler solutions for Zero Trust objectives.
  • Participate in SAFe Agile ceremonies and deliver work within sprints.
  • Develop and execute migration strategies to Zscaler-based architectures.

Skills

Network security expertise
Cloud security knowledge
Hands-on experience with Zscaler
Agile methodologies

Education

10+ years of experience in cybersecurity or network security

Tools

Microsoft tools
Jira
Splunk

Job description

Hands-on experience with Zscaler (ZIA/ZPA) or comparable cloud security / SWG / ZTNA platforms strongly preferred.

Highlights
  • This is a rare opportunity to lead a high-impact Zero Trust transformation supporting the FBI CJIS division, driving the shift from legacy network security to a modern, cloud-first architecture powered by Zscaler. You will play a key role in implementing cutting-edge security capabilities aligned with TIC 3.0 while working alongside highly experienced engineers in a mature SAFe Agile environment. This role offers the chance to shape future‑state architecture, solve complex challenges at scale, and build highly marketable expertise across both federal and commercial sectors.
  • The team consists of a collaborative mix of government personnel and contractor staff from multiple organizations, working together in a mature SAFe Agile environment. The culture emphasizes teamwork, technical excellence, and shared accountability, with a strong focus on delivering high-quality solutions to mission‑critical systems.
  • This role combines hands‑on engineering, architecture, and transformation leadership in a single position. It provides the opportunity to work on a large-scale Zscaler implementation and Zero Trust initiative that is directly aligned with federal modernization efforts such as TIC 3.0. The position offers exposure to complex enterprise environments and the ability to make meaningful, visible contributions to a high‑profile mission.
  • The individual in this role will play a critical part in modernizing the organization’s security posture, enabling secure, cloud‑first access to applications and services. Their contributions will help reduce reliance on legacy infrastructure, improve visibility and control, and enhance overall cybersecurity capabilities through the implementation of Zero Trust principles.
  • The candidate will acquire the following skills should they accept:
    • Hands‑on experience with Zscaler ZIA and ZPA implementations at enterprise scale
    • Deep understanding of Zero Trust architecture and SASE frameworks
    • Experience aligning technical solutions to TIC 3.0 and federal security modernization initiatives
    • Advanced experience operating within a SAFe Agile environment in a large government organization
    • Enhanced expertise in cloud security, identity‑driven access, and network transformation strategies
Typical Day

A typical day entails operating within a SAFe Agile environment, starting with a brief daily stand‑up to align on priorities, provide updates, and identify blockers. Team communication and coordination are primarily conducted through Microsoft tools and Jira, with work tracked via assigned tickets and sprint boards.

Work is executed in two-week sprint cycles, focusing on prioritized stories and features defined by leadership. In parallel, the role supports ongoing Operations & Maintenance (O&M) activities, including service ticket resolution, vulnerability management, and system sustainment to ensure operational stability.

Tasks
  • Participate in SAFe Agile ceremonies (daily stand‑ups, sprint planning, retrospectives) and deliver work within sprint cycles
  • Lead the implementation of Zscaler ZIA and ZPA to support Zero Trust and cloud-delivered security objectives
  • Develop and execute migration strategies to transition from legacy forward proxies and VPNs to Zscaler‑based architectures
  • Design direct‑to‑cloud connectivity solutions that eliminate on‑premises traffic backhaul
  • Configure and optimize Zscaler policies (URL filtering, SSL inspection, DLP, access controls) to meet security requirements
  • Integrate Zscaler with enterprise identity providers (e.g., Active Directory, Azure AD) to enforce identity-based access
  • Collaborate with cross-functional teams (network, security, cloud) to support Zero Trust and TIC 3.0-aligned architectures
  • Manage and resolve complex network security issues, including traffic flow, access, and policy enforcement troubleshooting
  • Support Operations & Maintenance (O&M) activities such as service ticket resolution, vulnerability remediation, and system sustainment
  • Develop and maintain technical documentation, including architecture diagrams, implementation plans, and operational procedures
Required Qualifications
  • Hands‑on experience with Zscaler (ZIA/ZPA) or comparable cloud security / SWG / ZTNA platforms strongly preferred.
  • 10+ years of network security or cybersecurity engineering experience.
  • A degree may substitute for a portion of the required experience.
  • Proven experience as a technical lead / SME on enterprise network or security projects.
  • Experience supporting large-scale network security migrations (e.g., proxy/VPN to cloud-based or Zero Trust architectures).
  • Experience supporting Zero Trust architecture or modern secure access solutions.
  • Experience integrating with identity providers (Active Directory, Azure AD, SAML/OIDC).
  • Strong background in enterprise networking and security, including firewalls (Palo Alto, Cisco, etc.), routing, DNS, and proxy architectures.
  • Experience with SIEM/logging platforms (Splunk preferred).
  • Experience troubleshooting complex network and security issues in enterprise environments.
Desired Qualifications
  • Zscaler certifications (e.g., ZDTA, ZDTE, ZCCA‑IA, ZCCA‑PA).
  • Experience leading or supporting a Zscaler ZIA/ZPA enterprise deployment.
  • Familiarity with CISA TIC 3.0 and federal network security modernization initiatives.
  • Experience replacing on‑prem forward proxies and/or VPNs with cloud-delivered security solutions.
  • Knowledge of Zero Trust architecture (ZTA) and SASE frameworks.
  • Experience designing or implementing direct‑to‑cloud access architectures (avoiding traditional network backhaul).
  • Cloud experience with AWS and/or Azure, including networking and security integration.
  • Security certifications (e.g., Security+, CASP/X, CISSP).
  • Cisco certifications (e.g., CCNA, CCNP).
  • Experience working in a SAFe Agile environment using Jira and Confluence.
Position Type Shift Information
  • Day Shift 8am‑5pm
Clearance

Top Secret clearance required.

Location

FBI CJIS Campus (Clarksburg, WV).

EEO Statement

Ideal Innovations, Inc. is an Equal Opportunity Employer: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or veteran status. Ideal Innovations, Inc. is a VEVRAA Federal Contractor.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Engineer SME
Network Security Engineer SME

Ideal Innovations Incorporated • Clarksburg (WV)

On-site
USD 100,000 - 130,000
Federal Security Operations - SkillBridge Intern
Federal Security Operations - SkillBridge Intern

Zscaler, Inc. • San Jose (CA)

Remote
Time off plans for vacation and sick time
Parental leave options
Retirement options
+1
Network Security Engineer (Zscaler)
Network Security Engineer (Zscaler)

Uvcyber • Arlington (VA)

On-site
USD 140,000 - 165,000
401(k) employer match
Medical, Dental, and Vision Insurance
Discretionary Time Off (DTO)
Senior Sales Engineer - Federal
Senior Sales Engineer - Federal

Remote Jobs • United States

Hybrid
USD 155,000 - 210,000
Hybrid work model
Principal Security Engineer | Zscaler SME
Principal Security Engineer | Zscaler SME

Uvcyber • Arlington (VA)

Hybrid
USD 160,000 - 210,000
401(k) with employer match
Medical, Dental, and Vision Insurance
Paid Holidays
Federal Security Operations - SkillBridge Intern
Federal Security Operations - SkillBridge Intern

Zscaler • United States

On-site
USD 45,000 - 65,000
Various health plans
Time off for vacation and sick time
Parental leave options
+2
Senior IT Security Operations Engineer
Senior IT Security Operations Engineer

Zscaler • San Jose (CA)

Hybrid
USD 134,000 - 168,000
Health plans
Vacation & sick time
Parental leave
+3
Zero Trust Network Security Engineer — Zscaler Lead
Zero Trust Network Security Engineer — Zscaler Lead

Ideal Innovations Incorporated • Clarksburg (WV)

On-site
USD 100,000 - 130,000
Senior Sales Engineer - Federal
Senior Sales Engineer - Federal

Socket.dev • Maryland

Hybrid
USD 155,000 - 210,000
Health plans
Paid time off
Parental leave
+3
Zero Trust Cybersecurity Engineer (Pipeline)
Zero Trust Cybersecurity Engineer (Pipeline)

electro soft • Belleville (IL)

On-site
USD 90,000 - 120,000
Team-building activities
Growth opportunities
Work-life balance