CBTS logo

Sr. Engineer – Security Engineering (Zscaler)

CBTS

RemoteFull timeMid levelPosted today
Apply with JobAssist

About the role

CBTS serves enterprise and midmarket clients in all industries across the United States and Canada. CBTS combines deep technical expertise with a full suite of flexible technology solutions--including Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, CBTS delivers comprehensive technology solutions for its clients' transformative business initiatives. For more information, please visit www.cbts.com.

OnX is a leading technology solution provider that serves businesses, healthcare organizations, and government agencies across Canada. OnX combines deep technical expertise with a full suite of flexible technology solutions—including Generative AI, Application Modernization, Managed Hybrid Cloud, Cybersecurity, Unified Communications, and Infrastructure solutions. From developing and deploying modern applications and the secure, scalable platforms on which they run, to managing, monitoring, and optimizing their operations, OnX delivers comprehensive technology solutions for its clients’ transformative business initiatives. For more information, please visit www.onx.com .

Role Overview We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Key Responsibilities

  • Administer and maintain Zscaler Internet Access (ZIA) policies, including:

  • SSL inspection

  • Application control

  • Sandbox policies

  • URL filtering

  • CASB controls

  • Malware exceptions, blocks, and security policies

  • Manage and troubleshoot Zscaler Client Connector (ZCC) deployments, including installation, connectivity, authentication, policy enforcement, and endpoint-related issues.

  • Manage PAC file changes through a controlled, tested, peer-reviewed, and approved deployment process.

  • Monitor security alerts and operational dashboards, investigate issues, and resolve day-to-day security incidents within defined SLAs.

  • Raise, document, implement, and drive changes through formal Change Control processes, particularly where changes deviate from the approved security baseline.

  • Manage and troubleshoot VPN/remote-access solutions, such as Palo Alto GlobalProtect, addressing connectivity, authentication, performance, and user-access issues.

  • Use asset inventory and vulnerability-management tools, such as Qualys or similar platforms, to support troubleshooting, asset identification, security investigations, and vulnerability-management activities.

  • Review and assess policy, URL, application, and whitelisting requests, escalating higher-risk requests to senior security stakeholders for appropriate risk assessment and approval.

  • Apply least-privilege access principles across different user populations, including employees, contractors, privileged users, and executives.

  • Support security audits and compliance reviews by collecting, validating, and providing appropriate control evidence and supporting documentation.

  • Develop and maintain Standard Operating Procedures (SOPs), troubleshooting guides, and knowledge base articles to improve operational consistency and knowledge sharing.

Required Skills & Experience

  • Hands-on experience administering Zscaler ZIA and Zscaler Client Connector.
  • Strong understanding of web security concepts, including SSL inspection, URL filtering, application control, CASB, sandboxing, and malware protection.
  • Experience troubleshooting ZCC, PAC files, proxy connectivity, and endpoint access issues.
  • Experience with VPN technologies, preferably Palo Alto GlobalProtect.
  • Familiarity with security incident management, alert monitoring, and SLA-driven operations.
  • Understanding of Change Management and Change Control processes.
  • Experience using Qualys or similar vulnerability/asset-management platforms.
  • Strong understanding of least privilege, secure baselines, access control, and security governance.
  • Ability to assess security risks and appropriately escalate exceptions or higher-risk requests.
  • Strong documentation skills, including writing SOPs, runbooks, and knowledge articles.

Preferred Skills

  • Experience working in an enterprise Security Operations or Network Security environment.
  • Palo Alto Networks security technology experience.
  • Familiarity with vulnerability-management and security-compliance frameworks.
  • Experience supporting internal and external security audits.
  • Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.

Key Competencies

  • Strong analytical and troubleshooting skills
  • Security-focused mindset
  • Attention to detail and risk awareness
  • Effective incident and change management
  • Clear written and verbal communication
  • Ability to work within defined SLAs and operational processes
  • Strong stakeholder management and escalation skillsRole Overview

We are seeking a Zscaler & Network Security Engineer responsible for administering, monitoring, troubleshooting, and continuously improving secure internet access, endpoint connectivity, remote access, and security controls. The role will work closely with security operations, network teams, and senior security stakeholders to maintain a strong security posture while ensuring reliable user connectivity.

Preferred Skills

  • Experience working in an enterprise Security Operations or Network Security environment.
  • Palo Alto Networks security technology experience.
  • Familiarity with vulnerability-management and security-compliance frameworks.
  • Experience supporting internal and external security audits.
  • Relevant certifications such as Zscaler, Palo Alto Networks, Security+, or equivalent.

Key Competencies

  • Strong analytical and troubleshooting skills
  • Security-focused mindset
  • Attention to detail and risk awareness
  • Effective incident and change management
  • Clear written and verbal communication
  • Ability to work within defined SLAs and operational processes
  • Strong stakeholder management and escalation skills

tion.

Millions of jobs, with real people getting hired every day

20,000+
New jobs added daily
7,000,000+
Verified job listings
500,000+
Tailored applications submitted
FAQ

Questions, answered

Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.

Yes. This role at CBTS was screened before publishing – we confirmed the employer before listing it.

The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.

This position can be done from anywhere, with no in-office requirement.

Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.