Conglomerateit

Senior Zero Trust Engineer Zscaler ZPA/ZIA (Principal Consultant)

Atlanta, GA • Posted Today
Remote Full Time General

Job Title: Senior Zero Trust Engineer Zscaler ZPA/ZIA (Principal Consultant)

Location: Atlanta, GA · Hybrid (onsite Tuesday Thursday)

The Opportunity
We're looking for a Principal Consultant to own enterprise Zero Trust initiatives end to end from strategic architecture through hands-on engineering, rollout, and ongoing operations anchored on Zscaler Private Access (ZPA). You'll set the technical direction while staying deep in the build: deployment, integration, policy tuning, and production support.
The right person has lived and breathed Zero Trust Network Access (ZTNA), Secure Service Edge (SSE), and Secure Access Service Edge (SASE), and has repeatedly taken enterprises off legacy VPN and perimeter-based models onto cloud-delivered Zero Trust. This is an Atlanta-based role with three onsite days each week (Tuesday Thursday).
What You Bring (Must-Have)
A Bachelor's in Computer Science, Information Security, Engineering, or a comparable technical field or equivalent real-world experience.
8 12+ years across network security, secure access, Zero Trust architecture, or enterprise security engineering.
Deep, hands-on command of Zscaler Private Access (ZPA) and Zscaler Internet Access (ZIA).
A solid grasp of Zero Trust Architecture (ZTA), ZTNA, SSE, and SASE.
A track record designing enterprise-scale Zero Trust architectures and the migration paths to reach them.
Sharp troubleshooting instincts and structured problem-solving.
Comfort running design sessions and architecture reviews, and explaining complex decisions to both engineers and executives.
The ability to juggle competing priorities without losing momentum.
Core technical areas:
Zero Trust & Security: Zscaler ZPA, Zscaler ZIA, Zero Trust Architecture, ZTNA, SSE/SASE, secure remote access, VPN migration, security policy design, application segmentation
Networking: TCP/IP, DNS, TLS/SSL, routing & switching, proxy architectures, firewall policy management, traffic-flow analysis, packet capture & troubleshooting
Identity & Access: Microsoft Entra ID (Azure AD), Active Directory, Multi-Factor Authentication (MFA), certificate management
Cloud: integrating Zero Trust with Microsoft Azure and Amazon Web Services (AWS)
Network Security Platforms: Palo Alto Networks Firewalls, Cisco Umbrella, SD-WAN, enterprise firewalls
Operating Systems: Windows, Linux, macOS
What You'll Do
Architecture & Strategy
Drive the architecture, design, engineering, and rollout of enterprise Zero Trust built on Zscaler ZPA and ZIA.
Build Zero Trust designs that scale to secure users, applications, and cloud workloads.
Map out how large organizations move off traditional VPN and legacy remote access onto ZTNA.
Create reusable architecture patterns, engineering standards, deployment playbooks, and operational guardrails.
Design application segmentation that shrinks the attack surface and hardens posture.
Engineering & Operations
Configure, tune, and troubleshoot ZPA/ZIA policies, connectors, service edges, forwarding profiles, authentication, and traffic paths.
Run advanced diagnostics spanning networking, identity, authentication, and endpoints.
Provide technical leadership through enterprise deployments, migrations, and production support.
Support environments with thousands of users, applications, and distributed sites.
Leadership & Collaboration
Partner with infrastructure, networking, cloud, identity, and security teams to ship integrated solutions.
Lead technical conversations with engineers, architects, stakeholders, and leadership.
Track emerging Zero Trust technology and recommend architectural moves that keep pace with best practice.
Mentor junior engineers and act as the go-to subject-matter expert on Zero Trust.
Nice-to-Have (Bonus Points)
Having led enterprise-wide Zero Trust transformation programs.
Experience taking large organizations from traditional VPN to ZTNA.
A background securing hybrid and multi-cloud estates.
Deployments involving thousands of users and applications under your belt.
Fluency with security architecture frameworks and enterprise networking fundamentals.
Strong documentation habits architectures, standards, and implementation guides.
Automation chops with PowerShell, Python, REST APIs, and infrastructure automation.
Certifications We Like to See
One or more of: Zscaler Certified Architect (ZCA), Zscaler Certified Deployment Specialist (ZCDS), Zscaler Certified Administrator (ZCCA), CISSP, CCSP, or CCNP Security.
What Success Looks Like
You'll design Zero Trust architectures that hold up at enterprise scale, lead ZPA implementations from first design to production, and modernize secure remote access by retiring legacy VPNs. You'll leave behind reusable standards and engineering practices, wire Zero Trust into identity providers, cloud platforms, and the wider security stack, and stay hands-on solving tough networking and security problems all while steering technical direction.

Back to Job Search