Bamboo Solutions

Zscaler Engineer

SPX - Washington, DC - Full Time

We are seeking a Zscaler Engineer to support a mission-critical U.S. government agency in the National Capital Region. This hybrid position involves managing and modernizing enterprise cybersecurity platforms, with a strong focus on Zscaler technologies (ZIA, ZPA, ZDX) and broader Secure Access Service Edge (SASE) implementations within a Microsoft-based environment.
The ideal candidate has hands-on experience with Zscaler services (ZIA, ZPA, ZDX) across cloud, network, and identity domains. This role supports operations, troubleshooting, and integration of Zscaler platforms with enterprise systems, while contributing to policy management, Zero Trust initiatives, process automation, and cross-team collaboration.

This role requires on site work in Washington, D.C. at least 3 days per week with remote work the other days.

Key Responsibilities:

  • Deploy, configure, and manage Zscaler services (ZIA, ZPA, ZDX) and other security technologies such as EDR, DLP, secure web gateway, email security, IDPS, firewall, SIEM, and identity protection tools
  • Integrate security solutions with Microsoft platforms including Azure AD, Conditional Access, Intune, and Microsoft Defender
  • Configure and manage policies, SAML integrations, monitoring, and user onboarding for Zscaler platforms
  • Monitor performance, security events, and traffic flow; troubleshoot connectivity, authentication, and application access issues
  • Enforce security policies, ensure compliance, and optimize configurations to improve performance and user experience
  • Respond to ServiceNow tickets, perform health checks, and support upgrades or migrations
  • Write and maintain technical documentation (SOPs, change records) and automate routine tasks using scripting (PowerShell, Python, Bash)
  • Collaborate with engineering, operations, and compliance teams to strengthen overall security posture
Qualifications
Basic Qualifications:
  • Bachelor’s degree in Cybersecurity, IT, or related field (or 8+ years of equivalent experience)
  • Minimum 5 years of cybersecurity experience supporting a broad range of tools across cloud, endpoint, identity, and network security domains
  • 2+ years of hands-on experience administering Zscaler services (ZIA, ZPA, ZDX), including policy management, SAML integration, and performance monitoring
  • Practical experience with tools and platforms such as EDR, DLP, secure web gateway, email security, IDPS, firewalls, SIEM, and identity protection solutions
  • Proficiency in Windows and/or Linux system administration, scripting (e.g., PowerShell, Python, Bash), and integrating cloud-native security technologies
  • Strong analytical, troubleshooting, and communication skills
Preferred Qualifications:
  • Experience in federal or regulated environments
  • Familiarity with DNS-layer protection, threat analytics platforms, and Zero Trust architecture
  • Exposure to tools such as CrowdStrike, Office 365, Microsoft Defender, and Intune
  • Relevant certifications such as Zscaler Certified Administrator, Security+, CySA+, GSEC, Microsoft SC-300, CCNP Security, PCNSE, or Splunk Certified Architect
Clearance Requirement:
  • Must be eligible to obtain a U.S. Public Trust Clearance
We offer:
  • Competitive salary based on experience
  • Profit sharing distributed twice a year
  • 15 days of paid time off and 10 paid holidays per year
  • 401(k) with employer matching
  • Health and dental benefits
  • Opportunity to work with other talented technical professionals

SharePointXperts is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected Veteran status. 

SharePointXperts participates in E-Verify. Click the following links for important information about our participation in this program and your rights.
https://www.e-verify.gov/sites/default/files/everify/posters/IER_RightToWorkPoster%20Eng_Es.pdf
https://www.e-verify.gov/sites/default/files/everify/posters/EVerifyParticipationPoster.pdf

Apply: Zscaler Engineer
* Required fields
First name*
Last name*
Email address*
Location *
Phone number*
Resume*

Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or paste resume

Paste your resume here or attach resume file

Cover Letter*
Who referred you to this position? Enter their first and last name here.
College or University*
Desired salary*
Earliest start date?
In 150 characters or fewer, tell us what makes you unique. Try to be creative and say something that will catch our eye!*
References: Please enter names and contact information:
Are you willing and able to obtain a government security clearance with US Greencard or Citizenship requirement?*
Are you willing and able to work onsite in Washington, DC three days a week?*
Do you hold certifications such as Zscaler Certified Administrator, Security+, CySA+, GSEC, Microsoft SC-300, CCNP Security, PCNSE, or Splunk Certified Architect? If yes, which?*
Please rate your experience from 1 to 5 on the following skills (1 being minimal or no experience, 5 being extensive experience).

Zscaler technologies (ZIA, ZPA, ZDX) including policy management, SAML integration, and performance monitoring*
Secure Access Service Edge (SASE) implementations within a Microsoft-based environment*
Practical experience with tools and platforms such as EDR, DLP, secure web gateway, email security, IDPS, firewalls, SIEM, and identity protection solutions*
Windows and/or Linux system administration, scripting (e.g., PowerShell, Python, Bash), and integrating cloud-native security technologies*
Experience in federal or regulated environments*
DNS-layer protection, threat analytics platforms, and Zero Trust architecture*
Tools such as CrowdStrike, Office 365, Microsoft Defender, and Intune*
The following questions are entirely optional.

Invitation for Job Applicants to Self-Identify as a U.S. Veteran
  • A “disabled veteran” is one of the following:
    • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
    • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.
Veteran status
I IDENTIFY AS ONE OR MORE OF THE CLASSIFICATIONS OF PROTECTED VETERAN LISTED ABOVE
I AM NOT A PROTECTED VETERAN
I DON’T WISH TO ANSWER
Human Check*