Sr. Engineer – Security Engineering (Zscaler) in Chennai, Tennessee at CBTS
Explore Related Opportunities
Job Description
CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.
OnX is a leading technology solution provider that serves businesses, healthcare organizations, and government agencies across Canada. OnX combines deep technical expertise with a full suite of flexible technology solutions—including Generative AI, Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, OnX delivers comprehensive technology solutions for its clients’ transformative business initiatives. For more information, please visit www.onx.com.
Role Overview
We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.
Key Responsibilities
Administer and maintain Zscaler Internet Access (ZIA) policies, including:SSL inspectionApplication controlSandbox policiesURL filteringCASB controlsMalware exceptions, blocks, and security policiesManage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.Required Skills & Experience
Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.Experience with VPN technologies, preferably Palo Alto GlobalProtect.Familiarity with security incident management, alert monitoring, and SLA-driven operations.Understanding of Change Management and Change Control processes.Experience using Qualys or similar vulnerability/asset-management platforms.Strong understanding of least privilege, secure baselines, access control, and security governance.Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.Preferred Skills
Experience working in an enterprise Security Operations or Network Security environment.Palo Alto Networks security technology experience.Familiarity with vulnerability-management and security-compliance frameworks.Experience supporting internal and external security audits.Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.Key Competencies
Strong analytical and troubleshooting skillsSecurity-focused mindsetAttention to detail and risk awarenessEffective incident and change managementClear written and verbal communicationAbility to work within defined SLAs and operational processesStrong stakeholder management and escalation skillsRole OverviewWe are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.
Key Responsibilities
Administer and maintain Zscaler Internet Access (ZIA) policies, including:SSL inspectionApplication controlSandbox policiesURL filteringCASB controlsMalware exceptions, blocks, and security policiesManage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.Required Skills & Experience
Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.Experience with VPN technologies, preferably Palo Alto GlobalProtect.Familiarity with security incident management, alert monitoring, and SLA-driven operations.Understanding of Change Management and Change Control processes.Experience using Qualys or similar vulnerability/asset-management platforms.Strong understanding of least privilege, secure baselines, access control, and security governance.Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.Preferred Skills
Experience working in an enterprise Security Operations or Network Security environment.Palo Alto Networks security technology experience.Familiarity with vulnerability-management and security-compliance frameworks.Experience supporting internal and external security audits.Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.Key Competencies
Strong analytical and troubleshooting skillsSecurity-focused mindsetAttention to detail and risk awarenessEffective incident and change managementClear written and verbal communicationAbility to work within defined SLAs and operational processesStrong stakeholder management and escalation skillstion.