Job Description
About Zscaler
Zscaler accelerates digital transformation to ensure our customers can be more agile efficient resilient and secure. As an AI-forward enterprise we are constantly pushing the envelope leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users devices and applications in any location.
Here impact in your role matters more than title and trust is built on results. We say impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive honest debate—we’re focused on getting to the best ideas faster. We build high-performing teams that can make an impact quickly and with high quality. To do this we are building a culture of execution centered on customer obsession collaboration ownership and accountability.
We value high-impact high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose thrive on solving complex challenges and want to be part of the team that’s helping to secure the AI age we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.
Role
We are looking for an ACAS Lead / Staff Vulnerability Engineer to join our Engineering team. This is a fully onsite role based near Crystal City VA reporting to the VP of Product Security. You will operate as the founding vulnerability management engineer inside a brand-new U.S. Federal IL6 (SCIF) environment.
This role is critical to maintaining our multitenant architecture and global security footprint. This is a rare "Zero-to-One" opportunity to build the vulnerability management engine engineer the offline infrastructure and establish the governance playbook from the ground up free from legacy technical debt. You will define the end-to-end vulnerability management architecture including platform selection sizing and security control implementation strategy for the new air-gapped IL6 environment. You will ensure we enable organizations worldwide to harness speed and agility while operating strictly within a U.S. SCIF and adhering to one-way diode transfer protocols.
What You’ll Do (Role Expectations)- Design and execute authenticated and unauthenticated network and host scanning using IL6-approved tools (Tenable.sc Nessus Manager or ACAS)
- Advance the continuous security monitoring controls in the environment as autonomous and innovative systems
- Oversee patch and system hardening campaigns (aligning with DISA STIGs and IAVM directives) in collaboration with IL6 service owners
- Develop and deliver high-impact reports integrating POA&M tracking and remediation status
- Maintain essential documentation including runbooks SOPs exception governance and change control processes within the SCIF environment
- You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment seeing ambiguity not as a hindrance but as the raw material to build something meaningful.
- You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
- You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution knowing that solving the hard problems delivers the biggest impact.
- You are a high-trust collaborator. You are ambitious for the team not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
- You are a learner. You have a true growth mindset and are obsessed with your own development actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.
- U.S. Citizenship with an active U.S. Secret clearance
- Experience in End-to-End Vulnerability Management specifically building and administering Tenable.sc Nessus Manager or ACAS in disconnected/air-gapped environments
- Solid understanding of risk-based prioritization (CVSS EPSS) remediation lifecycle and SLA governance
- DoD 8570/8140 IAT Level II certification (e.g. Security+ CE GSEC SSCP or CySA+)
- Experience with modern scanning methodologies including CSPM (Cloud Security Posture Management) concepts Web Application Scanning (WAS) and Container Security
- Scripting skills for automation in disconnected environments
- Understanding of government cloud and container operations including classified environments (AWS C2S/SC2S ECS/Kubernetes VM hardening) and exposure to FedRAMP High/Moderate isolated ticketing workflows (Jira or ServiceNow)
#LI-KM9 #LI-Onsite
Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors including job-related skills experience and relevant education or training.
The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.
At Zscaler we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks and more!
Learn more about Zscaler’s Future of Work strategy hybrid working model and benefits here.
By applying for this role you adhere to applicable laws regulations and Zscaler policies including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race color religion sex (including pregnancy or related medical conditions) age national origin sexual orientation gender identity or expression genetic information disability status protected veteran status or any other characteristic protected by federal state or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal state and local pay transparency rules.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled have long term conditions mental health conditions or sincerely held religious beliefs or who are neurodivergent or require pregnancy-related support.
Top Skills
What the Team is Saying
What We Do
Zscaler accelerates digital transformation so our customers can be more agile efficient resilient and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users devices and applications in any location.
Why Work With Us
Our impact comes from how we work—every day in every decision as one team. Our values and leadership principles are more than words; they're our operating system. They fuel a culture of execution where trust transparency and accountability help us deliver meaningful results for our customers colleagues and our company. www.zscaler.com/culture
Gallery
Zscaler Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
Similar Jobs
Zscaler
Staff Vulnerability Engineer / ACAS Lead (Air-Gapped IL6)
Zscaler
Manager Professional Services
Zscaler
Director Professional Services
Zscaler
Insider Risk Analyst - SkillBridge Intern
Explore More
Date Posted
04/09/2026
Views
0
Similar Jobs
Senior Applied Researcher & Lead - 3D Reconstruction & Deep Learning -
Views in the last 30 days - 0
View Details