Senior Principal Engineer, Insider Threat
Remote - USA
About Zscaler
Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler.
Our Engineering team built the world’s largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.
We are seeking a Senior Principal Engineer, Insider Threat to join our dynamic and fast-paced team. In this role you will play a key role in safeguarding our organization's sensitive data and reputation through designing, implementing, and optimizing a comprehensive insider threat program. You will be reporting to the VP, Corporate CISO, working as an individual contributor you will:
- Establish and maintain a comprehensive insider threat program aligned with organizational goals and regulatory requirements, while conducting risk assessments to identify and mitigate vulnerabilities and data exfiltration risks
- Implement and optimize detection procedures using technologies like DLP and UEBA to identify insider threats, while collaborating with Zscaler product teams to enhance offerings and strengthen corporate security posture
- Lead incident response for high-severity insider threats, ensuring effective containment and conducting thorough post-incident analysis to identify lessons learned and drive continuous improvement
- Establish metrics to measure program effectiveness, such as detection rates and response times, while designing and delivering training programs to educate employees on identifying and reporting insider threats
- Communicate complex cybersecurity topics to non-technical stakeholders, including executive leadership, to ensure alignment and understanding of key security initiatives
What We're Looking for (Minimum Qualifications)
- 10+ years of experience in information security, 8+ years' experience leading projects
- Experience with improving and accelerating detection of potential insider risk
- Experience coordinating with local, state, or federal law enforcement agencies to investigate incidents
- Proven experience in developing and implementing incident response plans compliant with FedRAMP and DoD IL5 standards, including familiarity with NIST 800-53, 800-61, and other relevant frameworks
- Prior law enforcement or military experience, with experience proactively sharing intelligence with Intelligence Agencies, and must have an Active U.S. Top Secret clearance
What Will Make You Stand Out (Preferred Qualifications)
- Proven expertise with top global Cloud Service Providers (CSP), SOC operations, and security analytics, paired with cybersecurity certifications like CISSP
- Experience integrating commercial solutions for corporate use and contributing to product feature development
#LI-JM1
#LI-Remote
Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.
The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.
Base Pay Range$175,000—$250,000 USDAt Zscaler, we believe that diversity drives innovation, productivity, and success. We are looking for individuals from all backgrounds and identities to join our team and contribute to our mission to make doing business seamless and secure. We are guided by these principles as we create a representative and impactful team, and a culture where everyone belongs. For more information on our commitments to Diversity, Equity, Inclusion, and Belonging, visit the Corporate Responsibility page of our website.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is proud to be an equal opportunity and affirmative action employer. We celebrate diversity and are committed to creating an inclusive environment for all of our employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status or any other characteristics protected by federal, state, or local laws.
See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules. For additional information about the federal requirements, click here.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
ApplyJob Profile
Must have active U.S. top secret clearance
Benefits/PerksBenefits program Bonus Career growth opportunities Commission Education reimbursement Equity Health plans Inclusive benefits Inclusive culture In-office perks In-office perks, and more Parental leave Parental leave options Retirement options Supportive culture Supportive environment Time off Time off plans for vacation Various health plans
Tasks- Communicate with stakeholders
- Conduct risk assessments
- Design training programs
- Drive continuous improvement
- Establish insider threat program
- Establish program metrics
- Implement detection procedures
- Lead incident response
Agile AI Analytics Applications Cloud Security Cybersecurity Cybersecurity communication Data loss prevention (DLP) Detection procedures Digital Transformation DLP DoD IL5 Engineering FedRAMP Incident Response Information security Insider threat program Law enforcement coordination Leadership Military experience NIST NIST 800-53 NIST 800-61 Organizational Project leadership Recruiting Reporting Risk Assessment SASE Security Security analytics Software Support Training Transformation User and entity behavior analytics (UEBA) Zscaler
Experience10 years
EducationBusiness Cybersecurity Engineering Information Security
Certifications TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9