Loading open roles
Loading open roles
Loading role

Connect Pro Management Consultants · posted 5 months ago
Security Operations Engineer (Zscaler Specialist)
Role Summary - The Network Security Engineer/Analyst will be part of a global
infrastructure
organization responsible for designing, implementing, and delivering
enterprise-grade secure access
solution using cloud-delivered security, particularly Zscaler platform.
This role will be instrumental in designing, implementing, and managing secure
access solutions that
protect enterprise users, applications, and data in a modern, cloud &
on-prem environment. The
engineer will work closely with architecture, security, operations, and
vendors to ensure high-
quality, scalable, and secure access.
This position is based in Wichita/Guadalajara (Mexico)/Bengaluru (India) and
supports global
business units across regions.
Our Team - The KOCH Technologies Infrastructure team provides reliable,
flexible, and secure
connectivity solutions that enable business solutions and perpetual
transformation. We manage
network and network security infrastructure, including wide area networking,
local area networking,
wireless, firewalls, datacentre networking, load balancing, endpoint security,
and proxies. We
provide enterprise infrastructure monitoring for IT components across the
enterprise. We are
currently focused on the following transformation strategies: talent,
proactive management, process
optimization and automation, security by design, and adopting a service
focused organization.
Key Responsibilities
Design, implement, and manage Zscaler Internet Access (ZIA), Zscaler Private
Access (ZPA),
and Zscaler Digital Experience (ZDX) solutions in alignment with Zero Trust
Architecture
(ZTA) principles.
Define and enforce Zero Trust policies based on user identity, device
posture, application
context, and risk signals.
Architect least-privileged access models ensuring users are granted access
only to specific
applications—not entire networks.
Implement and optimize application segmentation and user-to-app access
policies using
ZPA.
Continuously evaluate and improve trust evaluation mechanisms, including
device
compliance, user behavior, and session context.
Deploy and optimize SSL/TLS inspection, secure web gateway policies, CASB
controls, and
DLP frameworks within ZIA as part of Zero Trust data protection strategy.
Monitor user experience and performance using ZDX and troubleshoot
connectivity or
latency issues.
Collaborate with network, security, and vendor teams to ensure seamless and
secure
connectivity.
Perform log analysis, incident response, and threat mitigation using Zscaler
logs and SIEM
tools.
Ensure compliance with security standards and best practices.
Stay updated with evolving Zero Trust frameworks and industry best
practices.
Document architecture, configurations, and operational procedures.
Automation & Quality Improvement
Contribute to automation and standardization efforts (Ansible, Terraform,
APIs).
Identify inefficiencies and drive process, quality, and documentation
improvements.
Participate in design reviews, quality checks, and peer mentoring.
Stakeholder & Vendor Engagement
Work directly with internal customers, project managers, and global
stakeholders.
Coordinate with OEMs, and system integrators for implementation and issue
resolution.
Provide clear communication on project status, risks, and dependencies.
Required Qualifications
4+ years of experience in enterprise network security field.
Hands-on experience with:
Zscaler ZIA, ZPA, and ZDX
Proxy technologies, VPN alternatives, and secure remote access
Strong understanding of:
Zero Trust Network Access (ZTNA)
TCP/IP, DNS, HTTP/HTTPS, SSL/TLS inspection
Firewall and routing concepts
Traffic forwarding methods (GRE/IPSec tunnels, PAC files, Client Connector)
Exposure to cloud platforms such as AWS, Microsoft Azure, or Google Cloud
Platform
(GCP)
Understanding of cloud security principles and secure workload access.
Experience integrating Zscaler with PingID, Azure AD, or similar IdPs.
Familiarity with SIEM/Observability tools (e.g., Splunk, Grafana,
LogicMonitor).
Familiarity with APIs for integrating and automating Zscaler workflows.
Soft Skills
Strong problem-solving and troubleshooting abilities
Excellent communication and stakeholder management
Ability to work in a fast-paced, collaborative environment
Proactive mindset with focus on continuous improvement
What Will Put You Ahead (Nice to Have – Not Mandatory)
Zscaler certifications (e.g., ZCCA, ZCCP, ZCSP).
Exposure to network automation (Python, Ansible, DevNet concepts).
Experience with Branch/Cloud Connector deployments.
Experience with other security platforms (CASB, SWG, EDR/XDR).
Knowledge of cloud platforms such as AWS, Azure, or GCP.
An open-minded individual who embraces challenges positively, KOCH Fit.
Experience working in global delivery or follow-the-sun models.
Work & Support Expectations
Participation in on-call rotations as part of a global team.
Availability for planned weekend or off-hours work during major
implementations or
migrations.
Strong documentation discipline to support global operations handover.