Security Engineer – Zscaler
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) mission is to lead the national effort to protect and enhance the resilience of the nation's physical and cyber infrastructure. CISA includes six divisions such as the Cybersecurity Division, Emergency Communications Division, Integrated Operations Division, Infrastructure Security Division, Stakeholder Engagement Division, and the National Risk Management Center.
CISA’s IT landscape has historically produced networks and systems that were individually managed within each division. In this role you will work with an enterprise network architecture and engineering team to provide Zscaler Engineering support. You will design, test, and implement the Zscaler solution to manage connections between CISA users and cloud environments, enforce IT Security Governance policies to prevent data exposure, ensure compliance across SaaS applications, and drive innovation for management, functionality, and reporting across mission and IT groups.
Primary Responsibilities
- Support the development of the Technical Requirements Document and a Detailed Design Document (DDD) for the network architecture, consistent with the associated Functional Requirements Document and DDD, before transitioning to operations.
- Develop and maintain monitoring processes and procedures for a 24/7/365 Network Operations Center (NOC).
- Update documentation when there is a change in the network design or technologies and collaborate with stakeholders to test all related systems and application migration processes, verifying that the systems meet requirements and can host applications with no degradation to performance or security.
- Prepare test reports and implementation plans for each change impacting the network environment.
- Implement the Zscaler solution across the enterprise.
- Implement Data Loss Prevention (DLP) practices and policies.
- Manage user access controls in cloud environments.
- Serve as a subject‑matter expert in advanced CASB, DLP, API, SD‑WAN, and location implementation and best practices.
- Provide internal consulting, technical guidance, information and support to application developers, computer operations, company management, and departmental clients and assist in internal training programs.
- Work independently with minimal supervision and exhibit excellent written and verbal communication skills.
Minimum Qualifications
Bachelor’s degree AND 5 years of experience OR 9 years of experience in lieu of a degree.
- Hands‑on experience in network design, network engineering, network operational support, and cloud engineering in medium‑to‑large enterprise environments.
- Experience implementing the Zscaler CASB solution in an enterprise.
- Experience with Zscaler or related DLP practices and policies.
- Experience managing user access controls in cloud environments.
- Experience with ServiceNow, Jira, VMware vCenter, and cloud computing concepts.
- Experience with cloud reporting preparation for internal and executive stakeholders.
- Experience migrating from legacy on‑prem networking to cloud networking.
- Experience with traditional on‑premises proxies and cloud‑based proxy concepts.
- Experience with Cloud Identity and Access Management.
- Experience deploying and managing virtual servers on‑premises and in the cloud.
- Experience with concepts and operations of cloud‑based physical load balancers.
- Experience implementing and exporting audit trails.
- Experience with cloud‑based monitoring solutions.
Must be eligible to obtain a Department of Homeland Security EOD clearance (Requirements: U.S. citizenship and favorable background investigation).
Other Duties
This job description is not a comprehensive listing of all duties. Additional responsibilities may be assigned at any time with or without notice.
Desired Qualifications
Clearance Preference
- DHS EOD – first priority.
- Any DHS badge + DoD Top Secret or Secret – second choice.
- DoD Secret or Top Secret with willingness to obtain EOD clearance – third choice (clearance may take 45 days).
About Entarian
Entarian was formed through the strategic union of Sev1Tech and ERT, and is a premier provider of mission‑critical engineering and technology solutions. Founded in 1993, the company delivers secure, mission‑aligned digital solutions that drive national resilience and operational effectiveness.
Join the Mission and Start Your Career Journey: apply directly via our careers portal. For referrals or inquiries, email the team at .
Entarian is an Equal Opportunity and affirmative action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
#J-18808-Ljbffr