Talent.com
Staff Information Security Engineer (Vulnerability Management)

Staff Information Security Engineer (Vulnerability Management)

ZscalerWashington, DC, United States
7 hours ago
Job type
  • Full-time
Job description

About Zscaler

Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate -we're focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability.

We value high-impact, high-accountability with a sense of urgency where you're enabled to do your best work and embrace your potential. If you're driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.

Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.

We are looking for a Staff Information Security Engineer who will operate as a vulnerability management engineer inside the U.S. Federal IL6 (SCIF) environment. This fully onsite role is based in, or near, the Arlington, VA area / Washington, D.C. Metro Area and operates strictly within a U.S. SCIF, with no access to external networks or corporate systems, and adhering to one-way diode transfer protocols. Reporting to the Senior Manager of Information Security Engineering, you will be responsible for :

Designing and running authenticated / unauthenticated network and host scanning using IL6-approved tools in air-gapped environments (e.g., Tenable.sc / Nessus Manager or similar)

Building Python / Go / PowerShell automations for scan orchestration, asset onboarding, policy tuning, and diode-ready reporting formats

Driving collaboration with IL6 service owners to eliminate exploitable risks and manage patch / hardening campaigns

Producing weekly and monthly reporting aligned to IL6 program cadence and diode data transfer policies

Maintaining documentation, including runbooks, SOPs, exception governance, and change control processes within the SCIF

Minimum Qualifications

U.S. citizenship and active U.S. Top Secret (TS) clearance (must be maintained)

5+ years in Vulnerability Management, or Security Engineering within restricted / SCIF environments, including air-gapped scanning (Tenable.sc / Nessus Manager or equivalents) and offline plugin lifecycle

Experience with CSPM concepts and Web Application Scanning (WAS) methodologies, plus strong scripting skills in Python, Go, or PowerShell for automation in disconnected environments

Solid understanding of risk-based prioritization (CVSS, EPSS), remediation lifecycle, and SLA governance

What Will Make You Stand Out (Preferred Qualifications)

DoD 8570 / 8140 IAT Level II certification (e.g., Security+ CE, GSEC, SSCP, CySA+)

Understanding of cloud and container platforms adapted to classified environments (e.g., AWS C2S / SC2S constructs, ECS / Kubernetes, VM hardening), and external attack surface concepts within constrained perimeters

Exposure to FedRAMP High / Moderate operations, including monthly monitoring programs (scanning, evaluation, patching, reporting) and familiarity with Jira / ServiceNow for ticketing and exception management in isolated environments

#LI-Onsite

#LI-KM9

Zscaler's salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission / bonus / equity (if applicable) + benefits.

Base Pay Range

$115,500-$165,000 USD

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including :

Various health plans

Time off plans for vacation and sick time

Parental leave options

Retirement options

Education reimbursement

In-office perks, and more!

Learn more about Zscaler's Future of Work strategy, hybrid working model, and benefits here () .

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights : Workplace Discrimination is Illegal () link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Create a job alert for this search

Information Security Engineer • Washington, DC, United States

Related jobs
  • Promoted
Information Security Engineer

Information Security Engineer

ISACAWashington, DC, United States
Full-time
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show moreLast updated: 28 days ago
  • Promoted
Senior Information Security Engineer / Vulnerability Manager

Senior Information Security Engineer / Vulnerability Manager

C2 Labs, Inc.Washington, DC, United States
Full-time
Senior Information Security Engineer / Vulnerability Manager.C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Enterprise - Information Systems Security Engineer - RMF, STIG

Enterprise - Information Systems Security Engineer - RMF, STIG

Erias VenturesColumbia, MD, United States
Full-time
Erias Ventures was founded to serve its customers with an entrepreneurial mindset.Our staff includes technical experts working across multiple disciplines, bringing diverse perspectives to every pr...Show moreLast updated: 9 hours ago
  • Promoted
Information Security Engineer

Information Security Engineer

Arnold & Porter LlpWashington, DC, United States
Full-time
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show moreLast updated: 15 days ago
  • Promoted
Security Engineer (ISSE) Columbia, MD

Security Engineer (ISSE) Columbia, MD

Polaris Consulting GroupColumbia, MD, United States
Full-time
Polaris is looking for an Information Systems Security Engineer (ISSE).Candidate will perform system or network designs that encompass multiple enclaves, to include those with differing data protec...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Enterprise - Information Systems Security Engineer - Vulnerability, POAM, Agile

Enterprise - Information Systems Security Engineer - Vulnerability, POAM, Agile

Erias VenturesChantilly, VA, United States
Full-time
Erias Ventures was founded to serve its customers with an entrepreneurial mindset.Our staff includes technical experts working across multiple disciplines, bringing diverse perspectives to every pr...Show moreLast updated: 7 hours ago
  • Promoted
Sr. Information Systems Security Engineer III (5790)

Sr. Information Systems Security Engineer III (5790)

MetroStar CorporationReston, VA, United States
Full-time
You will work collaboratively with cross-functional teams to identify vulnerabilities, develop solutions, and ensure compliance with security protocols and industry standards.Staying informed about...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Engineer

Information Security Engineer

Palantir TechnologiesWashington, DC, United States
Full-time
Palantir builds the world's leading software for data-driven decisions and operations.By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving ...Show moreLast updated: 30+ days ago
  • Promoted
Information System Security Engineer (ISSE)-Intermediate

Information System Security Engineer (ISSE)-Intermediate

Quantech ServicesFort Meade, MD, United States
Full-time
Information System Security Engineer (ISSE)-Intermediate.Information Security Associate.Contract position State Location. Quantech Services is seeking an experienced Information System Security Engi...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Information Systems Security Engineer (ISSE), Level 3 (FORECASTED)

Information Systems Security Engineer (ISSE), Level 3 (FORECASTED)

Independent SoftwareFort Meade, MD, United States
Full-time
At Independent Software, we believe national security and innovation go hand in hand.As a Level 3 Information Systems Security Engineer, you will be a senior technical leader on security engineerin...Show moreLast updated: 9 hours ago
  • Promoted
LEAD INFORMATION SECURITY ENGINEER

LEAD INFORMATION SECURITY ENGINEER

Lumen TechnologiesHerndon, VA, United States
Full-time
We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Lead Information Security Engineer- Certificate Management Services

Lead Information Security Engineer- Certificate Management Services

Wells FargoMcLean, VA, United States
Full-time
Wells Fargo is seeking a Lead Information Security Engineer in Technology as part of the Chief Technology Office (CTO).Learn more about the career areas and lines of business at wellsfargojobs.The ...Show moreLast updated: 9 hours ago
  • Promoted
Information Security Engineer

Information Security Engineer

International Legal Technology AssociationWashington, DC, United States
Full-time
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Information Systems Security Engineer I

Information Systems Security Engineer I

VibrintHanover, MD, United States
Full-time
Vibrint is a trusted provider of mission-critical systems and analysis that transform our customers' capacity and capability in harvesting and harnessing data. Working alongside many of the most tal...Show moreLast updated: 7 hours ago
  • Promoted
Information Assurance Engineer / Security Manager

Information Assurance Engineer / Security Manager

C2 Labs, Inc.Washington, DC, United States
Full-time
Information Assurance Engineer / Security Manager.C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-automation / ...Show moreLast updated: 28 days ago
  • Promoted
Sr. Information Systems Security Engineer (ISSE), (Vulnerability Management)

Sr. Information Systems Security Engineer (ISSE), (Vulnerability Management)

Illuminate Mission SolutionsSterling, VA, United States
Full-time
The Information Systems Security Officer (ISSO) manages all aspects of an organization's information security system, for classified and unclassified systems, including researching, testing, traini...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Information Systems Security Engineer (ISSE)

Information Systems Security Engineer (ISSE)

The Swift GroupReston, VA, United States
Full-time
Our capabilities include Software Development, Engineering & IT, Data Science, Cyber Enablement, Logistics, and Training. Founded in 2019, Swift supports Civilian, Defense, and Intelligence Communit...Show moreLast updated: 9 hours ago
  • Promoted
Staff Information Security Engineer (Vulnerability Management)

Staff Information Security Engineer (Vulnerability Management)

ZscalerMcLean, Maryland, USA
Full-time
Zscaler accelerates digital transformation so our customers can be more agile efficient resilient and secure.Our cloud native Zero Trust Exchange platform protects thousands of customers from cyber...Show moreLast updated: 1 day ago