
Zscaler Network Security-Principal engineer- Associate director
Ernst and Young5 days ago
Bengaluru, IndiaStaff+
Responsibilities
- Lead engineering, deployment, integration, optimization, and continuous improvement of EY’s global Zscaler and Zero Trust platforms.
- Engineer Zscaler capabilities including ZIA, ZPA, Zscaler Client Connector, App Connectors, Private Service Edges, Workload Communications, Microsegmentation, Zscaler AI Firewall, and AI Guard.
- Integrate Zscaler with Azure secure networking, hybrid cloud, VMware data centers, enterprise applications, AI platforms, and infrastructure services.
- Migrate applications from traditional VPN and internet-facing architectures to Zero Trust access models using ZPA.
- Implement identity-aware access controls, application and workload segmentation, and secure hybrid and multi-cloud connectivity.
- Build automation for deployment, configuration validation, policy management, scalability, and platform optimization.
- Lead troubleshooting of networking, routing, DNS, TLS, authentication, and connectivity issues.
- Serve as the highest-level engineering escalation point, participate in architecture reviews and governance, and mentor Network Security Technology engineers.
- Develop security engineering roadmaps, reference configurations, reusable patterns, and deployment standards.
Requirements
- Bachelor’s degree in computer science, information technology, engineering, or equivalent experience.
- 15–20 years of network security and security engineering experience.
- 12–15 years of experience engineering, deploying, or integrating cloud security and Zscaler technologies.
- 8–10 years leading engineering teams or large engineering initiatives.
- Expert-level experience with Zscaler technologies, including ZIA and ZPA, and experience supporting enterprise-scale Zscaler environments.
- Experience implementing Zero Trust solutions, onboarding cloud-hosted and on-premises applications into ZPA, and engineering secure access architectures.
- Experience supporting Azure secure networking and deploying security solutions in VMware-based data centers.
- Strong knowledge of TCP/IP, DNS, TLS, routing, BGP, PKI, and enterprise networking concepts.
- Experience with Python, Terraform, PowerShell, REST APIs, and Infrastructure-as-Code approaches.
- Preferred experience includes Azure Virtual WAN, ExpressRoute, Azure Firewall Premium, Application Gateway, Front Door, Private Link, AKS, Microsoft Entra ID, Conditional Access, SASE, SSE, Zscaler Workload Communications, workload segmentation, AI Firewall, and AI Guard.
- Preferred certifications include Zscaler certifications, Azure Network Engineer Associate, Azure Security Engineer, CISSP, CCSP, CCNP, or equivalent credentials.
- Strong English written and verbal communication skills and experience working across global, multidisciplinary teams.
Benefits
- Competitive remuneration and a comprehensive Total Rewards package.
- Flexible working arrangements and flexibility to manage the role in a way that supports personal and professional priorities.
- Support, coaching, and feedback from colleagues.
- Career development and opportunities to develop new skills and progress.
- Exposure to large-scale global technology and cybersecurity transformation programs.
- Inclusive employer committed to considering flexible working arrangements.
About Ernst and Young
Ernst & Young (EY) provides audit/assurance, tax, consulting, strategy and transactions services to enterprises, financial institutions, and public‑sector clients. Structured as a global network of partner‑owned member firms, it sells professional services on a fee basis, including a dedicated Financial Services Organization for banking, insurance, and capital markets. Headquartered in London, EY was formed in 1989 from the merger of Ernst & Whinney and Arthur Young, and operates in 150+ countries.