Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Staff Information Security Engineer - Zscaler image - Rise Careers
Job details

Staff Information Security Engineer - Zscaler

Company Description

It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.

Job Description

The ServiceNow Security Organization delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact. 

Team

This position reports to the Director, Security Engineering. The Enterprise Security Engineering team targets building state-of-the-art technology that will help reduce the risk surrounding the sensitive assets of the company with the least impact possible on operations, acts as guidance and facilitator to the security operations teams and helps shifting Security perception from blocker to enabler by building a relationship of trust with the other teams.

Role

The Staff Information Security Engineer will be part of the endpoint security team and will be responsible for ensuring the integrity and security of the organization's information systems by managing and enhancing endpoint and network security measures.

What you get to do in this role:

  • Implement and maintain advanced security measures for endpoints, networks, and SaaS. applications, ensuring robust protection against unauthorized access, cyber threats, and data breaches.
  • Develop, enforce, and monitor network access control policies to regulate who and what devices can access the organization's systems and applications.
  • Conduct continuous and detailed inspection of network and SaaS traffic to identify and mitigate potential security threats, anomalies, and vulnerabilities.
  • Design and enforce security protocols, conduct regular security audits, and ensure compliance with industry standards and regulatory requirements for both on-premise and cloud-based SaaS environments.
  • Implement and manage security solutions to enhance the organization’s overall security posture, ensuring secure and efficient remote access, internet security, and SaaS application protection.
  • Monitor user activities across networks and SaaS platforms, enforce security policies, and prevent data leakage to ensure compliance with organizational security standards.

Qualifications

To be successful in this role you have:

  • Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI's potential impact on the function or industry.
  • Master’s degree in computer science; engineering, or information technology or equivalent industry experience.
  • 6+ years of relevant hands-on engineering experience.
  • In-depth knowledge of operating systems (Linux, UNIX, and Windows).
  • In-depth knowledge of networking (routing, switching, load-balancing, intrusion detection systems and firewalls).
  • Ability to develop security automation scripts using Python, PowerShell, Bash, or Ansible for process efficiency and consistency.
  • Experience in securing remote access (BYOD).
  • Experience with implementing and managing NAC solutions to control device and user access to the network.
  • Experience with deep packet inspection and network traffic analysis.

Desirable Skills:

  • Proficiency in configuring, managing, and optimizing Zscaler services for secure internet access, including ZIA (Zscaler Internet Access) and ZPA (Zscaler Private Access).
  • Experience in implementing Zero Trust Network Architecture (ZTNA) and Secure Access Service Edge (SASE) frameworks.
  • Experience with implementing SaaS security controls like SSPM and CASB.
  • Experience in working with web and database services (REST APIs, JSON, XML, SQL).
  • Experience in working with Splunk and SPL (or other SIEM/Log management systems).
  • Experience in implementing zero-trust security models and micro-segmentation strategies.
  • Familiarity with regulatory and industry certifications (FedRAMP, NIST 800-53, NIST CSF, SOC 2, SOX and GDPR).

#SecurityJobs 

Not sure if you meet every qualification? We still encourage you to apply! We value inclusivity, welcoming candidates from diverse backgrounds, including non-traditional paths. Unique experiences enrich our team, and the willingness to dream big makes you an exceptional candidate!

Additional Information

Work Personas

We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work. Learn more here.

Equal Opportunity Employer

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. 

Accommodations

We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact [email protected] for assistance. 

Export Control Regulations

For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. 

From Fortune. ©2024 Fortune Media IP Limited. All rights reserved. Used under license. 

ServiceNow Glassdoor Company Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
ServiceNow DE&I Review
4.6 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of ServiceNow
ServiceNow CEO photo
Bill McDermott
Approve of CEO

Average salary estimate

$145000 / YEARLY (est.)
min
max
$130000K
$160000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Staff Information Security Engineer - Zscaler, ServiceNow

Are you ready to elevate your career as a Staff Information Security Engineer at Zscaler? Located in the heart of Atlanta, Georgia, this exciting role places you at the forefront of cybersecurity within a company that's redefining how organizations protect their sensitive data. You'll join a team that's committed to building state-of-the-art technology to minimize risks while enhancing operational efficiency. As a Staff Information Security Engineer, you'll implement advanced security measures for endpoints and networks, ensuring a robust defense against cyber threats and unauthorized access. You will also have the opportunity to develop and enforce network access control policies, conduct traffic inspections to identify potential security issues, and design security protocols that align with industry standards. Your expertise will play a crucial role in monitoring user activities, preventing data leakage, and maintaining compliance across both on-premise and cloud-based environments. What’s more, Zscaler fosters a culture of innovation where your input will be valued, and your contributions can make a real impact. With your experience in leveraging AI to enhance security processes and your Master’s degree in computer science or related fields, you’ll thrive in this role, bringing your critical thinking and engineering skills to the forefront. Join Zscaler and be part of a mission to keep the digital world secure for everyone!

Frequently Asked Questions (FAQs) for Staff Information Security Engineer - Zscaler Role at ServiceNow
What are the primary responsibilities of the Staff Information Security Engineer at Zscaler?

As a Staff Information Security Engineer at Zscaler, you will implement and maintain advanced security measures for endpoints, networks, and SaaS applications. Your primary responsibilities include developing and enforcing network access control policies, conducting detailed inspections of network traffic to identify security threats, and designing security protocols that comply with industry standards. You will also monitor user activities across networks and enforce security policies to prevent data compromises.

Join Rise to see the full answer
What qualifications are required for the Staff Information Security Engineer position at Zscaler?

To qualify for the Staff Information Security Engineer position at Zscaler, you typically need a Master’s degree in computer science, engineering, or information technology, along with over six years of hands-on engineering experience. Proficiency in operating systems such as Linux and Windows, as well as network knowledge, including routing and firewall management, is also important. Experience with Zscaler products and a strong understanding of security automation will greatly enhance your application.

Join Rise to see the full answer
How does Zscaler approach endpoint security in the Staff Information Security Engineer role?

In the role of Staff Information Security Engineer at Zscaler, endpoint security is approached by implementing and managing advanced measures to safeguard sensitive information systems from cyber threats. This includes conducting regular security audits, ensuring compliance with regulatory requirements, and utilizing security solutions that bolster the organization's overall security posture. The team focuses on proactive monitoring and the implementation of zero-trust security models.

Join Rise to see the full answer
What type of work environment can the Staff Information Security Engineer expect at Zscaler?

At Zscaler, the Staff Information Security Engineer can expect a flexible and inclusive work environment that encourages collaboration and innovation. The company promotes various work personas, which allow you to work in a manner that suits your lifestyle while contributing to important cybersecurity projects. Zscaler values diverse team inputs, ensuring that every employee's voice is heard and respected.

Join Rise to see the full answer
What skills are essential for success as a Staff Information Security Engineer at Zscaler?

Essential skills for the Staff Information Security Engineer position at Zscaler include a deep understanding of network structures and security protocols, proficiency in programming languages for automation, and experience with anti-intrusion systems. The ability to think critically about incorporating AI into security practices, along with experience in configuring Zscaler services, will set you up for success in this role.

Join Rise to see the full answer
Common Interview Questions for Staff Information Security Engineer - Zscaler
Can you explain how you would implement security measures for endpoints as a Staff Information Security Engineer?

When implementing security measures for endpoints, I would start by conducting a thorough risk assessment to identify any potential vulnerabilities. Based on this analysis, I would then deploy antivirus solutions, configure firewalls, and ensure operating systems are kept updated. Additionally, I would implement policies for secure remote access and utilize tools that enforce encryption and authentication protocols to strengthen security.

Join Rise to see the full answer
How do you keep up with the ever-changing cybersecurity landscape?

I keep up with the cybersecurity landscape by regularly engaging with industry publications, participating in webinars, and following influential thought leaders on social media platforms. Additionally, I attend relevant conferences and networking events to share knowledge and gain insights from my peers. Continuous education through online courses and certifications is also a priority for me.

Join Rise to see the full answer
What strategies do you use to identify and mitigate security threats?

To identify and mitigate security threats, I employ a combination of proactive monitoring tools, threat analysis, and user behavior analytics. I use deep packet inspection for real-time traffic analysis, along with automated security solutions to expedite the detection of anomalies. Additionally, regular security audits and user training help minimize risks by educating employees about safe practices.

Join Rise to see the full answer
Describe a challenging security issue you faced and how you handled it.

In a previous role, I encountered a situation where a malware infection was detected within the network. I quickly organized a response team, conducted a thorough assessment to contain the infection, and started an extensive scrub of affected systems. Simultaneously, I communicated with stakeholders and ensured that protocols were updated to prevent a recurrence of the issue.

Join Rise to see the full answer
How would you apply AI in your role as a Staff Information Security Engineer?

In my role as a Staff Information Security Engineer, I would leverage AI for predictive analysis, using machine learning algorithms to analyze patterns within network traffic. This can enhance threat detection and response speed. Additionally, I would employ AI-powered tools for automating security incident responses, allowing for more efficient workflow management and resource allocation.

Join Rise to see the full answer
What experience do you have with Zero Trust Network Architecture?

I have extensive experience with Zero Trust Network Architecture (ZTNA), having implemented it in previous roles to limit access strictly to what is needed for individuals and devices. By enforcing strict identity verification for every person and device attempting to access resources, I've successfully minimized the attack surface and enhanced overall security.

Join Rise to see the full answer
How do you ensure compliance with industry regulations in your security practices?

To ensure compliance with industry regulations, I stay abreast of existing laws and align organizational policies accordingly. I conduct regular audits and assessments of our security practices against standards such as NIST and GDPR. This practice, along with continuous training for employees regarding compliance requirements, helps maintain our adherence to regulations.

Join Rise to see the full answer
What tools do you prefer for network traffic analysis?

For network traffic analysis, I prefer using tools such as Splunk for real-time monitoring and security information and event management. Additionally, I utilize deep packet inspection tools and firewall monitoring systems to oversee data flow and analyze logs for unusual activities that may indicate security threats.

Join Rise to see the full answer
Can you discuss your experience with implementing NAC solutions?

I have successfully implemented Network Access Control (NAC) solutions in previous roles to manage device and user access to the network. This has involved establishing policies to auto-detect compliant devices, controlling guest access, and ensuring that endpoints adhere to security posture requirements before being allowed network access.

Join Rise to see the full answer
What steps would you take to prevent data leakage in your security role?

To prevent data leakage, I would establish and enforce robust access control policies, implement data loss prevention (DLP) solutions, and educate employees about the risks of data sharing. Regular audits and monitoring activities would also be conducted to identify unauthorized access attempts, and I would use encryption to protect sensitive data at rest and in transit.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
ServiceNow Remote Remote, Raleigh, North Carolina, United States
Posted 6 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
Photo of the Rise User
ServiceNow Remote Hoekenrode 3, Amsterdam, Netherlands
Posted 5 days ago
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
Posted 2 days ago
Photo of the Rise User
Picus Remote No location specified
Posted 14 days ago
Kasada Remote No location specified
Posted 10 days ago
Photo of the Rise User
Rackspace Hybrid United States - Richardson
Posted 2 days ago
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Posted 23 hours ago
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Customer-Centric
Social Impact Driven
Passion for Exploration
Family Medical Leave
Maternity Leave
Paternity Leave
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)

We're on a mission to become the defining enterprise software company of the 21st century.

1637 jobs
MATCH
Calculating your matching score...
CULTURE VALUES
Inclusive & Diverse
Mission Driven
Rise from Within
Diversity of Opinions
Work/Life Harmony
Empathetic
Feedback Forward
Take Risks
Collaboration over Competition
BENEFITS & PERKS
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Conferences Stipend
Paid Time-Off
Maternity Leave
Equity
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 9, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
8 people applied to Excel Developer at Valcre
Photo of the Rise User
Someone from OH, Mason just viewed Marketing & Communications Intern at Per Scholas
Photo of the Rise User
Someone from OH, Lakewood just viewed Recruiter (Talent Sourcing), 6 month contract at Jerry
Photo of the Rise User
Someone from OH, Westerville just viewed Director Change Management at Discover
Photo of the Rise User
Someone from OH, Dublin just viewed Applied AI Engineer – Computer Vision at Kodiak
Photo of the Rise User
Someone from OH, Dublin just viewed Computer Vision Engineer at Near Space Labs
Photo of the Rise User
Someone from OH, Cleveland just viewed Accounting Co-Op (Part-Time) at Avery Dennison
Photo of the Rise User
Someone from OH, Euclid just viewed Lighting Intern, DreamWorks, Summer 2025 at NBCUniversal
Photo of the Rise User
Someone from OH, Cincinnati just viewed Saw Operator I at Eriez
Photo of the Rise User
Someone from OH, Burton just viewed Creative Director at Webster University
Photo of the Rise User
Someone from OH, Lewis Center just viewed Risk Analytics Manager at Jobber
Photo of the Rise User
Someone from OH, Lewis Center just viewed Risk Analyst II at GoFundMe
Photo of the Rise User
Someone from OH, Lewis Center just viewed Senior Risk Analyst at GoFundMe
Photo of the Rise User
Someone from OH, Lewis Center just viewed Manager, Fraud Operations at Twilio
Y
Someone from OH, Lewis Center just viewed Fraud Manager at Yellow Social Interactive
Photo of the Rise User
Someone from OH, Lewis Center just viewed Senior Associate, Fraud Strategy and Analytics at Wealthsimple