Talent.com
Staff Information Security Engineer (Vulnerability Management)
Staff Information Security Engineer (Vulnerability Management)Zscaler • McLean, Maryland, USA
Staff Information Security Engineer (Vulnerability Management)

Staff Information Security Engineer (Vulnerability Management)

Zscaler • McLean, Maryland, USA
1 day ago
Job type
  • Full-time
Job description

About Zscaler

Zscaler accelerates digital transformation so our customers can be more agile efficient resilient and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users devices and applications in any location.

Here impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive honest debate were focused on getting to the best ideas faster. We build high-performing teams that can make an impact quickly and with high quality. To do this we are building a culture of execution centered on customer obsession collaboration ownership and accountability.

We value high-impact high-accountability with a sense of urgency where youre enabled to do your best work and embrace your potential. If youre driven by purpose thrive on solving complex challenges and want to make a positive difference on a global scale we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.

Our Engineering team built the worlds largest cloud security platform from the ground up and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint the team has made us and our multitenant architecture todays cloud security leader with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects software engineers security experts and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.

We are looking for a Staff Information Security Engineer who will operate as a vulnerability management engineer inside the U.S. Federal IL6 (SCIF) environment. This fully onsite role is based in or near the Arlington VA area / Washington D.C. Metro Area and operates strictly within a U.S. SCIF with no access to external networks or corporate systems and adhering to one-way diode transfer protocols. Reporting to the Senior Manager of Information Security Engineering you will be responsible for :

  • Designing and running authenticated / unauthenticated network and host scanning using IL6-approved tools in air-gapped environments (e.g. / Nessus Manager or similar)
  • Building Python / Go / PowerShell automations for scan orchestration asset onboarding policy tuning and diode-ready reporting formats
  • Driving collaboration with IL6 service owners to eliminate exploitable risks and manage patch / hardening campaigns
  • Producing weekly and monthly reporting aligned to IL6 program cadence and diode data transfer policies
  • Maintaining documentation including runbooks SOPs exception governance and change control processes within the SCIF

Minimum Qualifications

  • U.S. citizenship and active U.S. Top Secret (TS) clearance (must be maintained)
  • 5 years in Vulnerability Management or Security Engineering within restricted / SCIF environments including air-gapped scanning ( Manager or equivalents) and offline plugin lifecycle
  • Experience with CSPM concepts and Web Application Scanning (WAS) methodologies plus strong scripting skills in Python Go or PowerShell for automation in disconnected environments
  • Solid understanding of risk-based prioritization (CVSS EPSS) remediation lifecycle and SLA governance
  • What Will Make You Stand Out (Preferred Qualifications)

  • DoD 8570 / 8140 IAT Level II certification (e.g. Security CE GSEC SSCP CySA)
  • Understanding of cloud and container platforms adapted to classified environments (e.g. AWS C2S / SC2S constructs ECS / Kubernetes VM hardening) and external attack surface concepts within constrained perimeters
  • Exposure to FedRAMP High / Moderate operations including monthly monitoring programs (scanning evaluation patching reporting) and familiarity with Jira / ServiceNow for ticketing and exception management in isolated environments
  • #LI-Onsite

    #LI-KM9

    Zscalers salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors including job-related skills experience and relevant education or training.

    The base salary range listed for this full-time position excludes commission / bonus / equity (if applicable) benefits.

    Base Pay Range

    $115500 - $165000 USD

    At Zscaler we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

    Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages including :

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks and more!
  • Learn more about Zscalers Future of Work strategy hybrid working model and benefits here.

    By applying for this role you adhere to applicable laws regulations and Zscaler policies including those related to security and privacy standards and guidelines.

    Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race color religion sex (including pregnancy or related medical conditions) age national origin sexual orientation gender identity or expression genetic information disability status protected veteran status or any other characteristic protected by federal state or local laws. See more information by clicking on the Know Your Rights : Workplace Discrimination is Illegal link.

    Pay Transparency

    Zscaler complies with all applicable federal state and local pay transparency rules.

    Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled have long term conditions mental health conditions or sincerely held religious beliefs or who are neurodivergent or require pregnancy-related support.

    Required Experience :

    Staff IC

    Key Skills

    International Development,Access Control System,Finance Control,Informatica,Information Technology Sales,Asp.Net MVC

    Employment Type : Full-Time

    Experience : years

    Vacancy : 1

    Monthly Salary Salary : 115500 - 165000

    Create a job alert for this search

    Information Security Engineer • McLean, Maryland, USA

    Related jobs
    Information Assurance Security Engineer

    Information Assurance Security Engineer

    Flex Staffing Resources • Washington, DC, US
    Part-time +1
    Quick Apply
    Information Assurance Security Engineer.Employment Type : FTE Temp to Perm.Join a high-impact project modernizing a major federal disclosure and data management platform. You will be instrumental in ...Show more
    Last updated: 14 days ago • Promoted
    Information Security Engineer

    Information Security Engineer

    ISACA • Washington, DC, United States
    Full-time
    The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show more
    Last updated: 28 days ago • Promoted
    Senior Information Security Engineer / Vulnerability Manager

    Senior Information Security Engineer / Vulnerability Manager

    C2 Labs, Inc. • Washington, DC, United States
    Full-time
    Senior Information Security Engineer / Vulnerability Manager.C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-...Show more
    Last updated: 30+ days ago • Promoted
    Staff Information Security Engineer (Vulnerability Management)

    Staff Information Security Engineer (Vulnerability Management)

    Zscaler • Washington, DC, United States
    Full-time
    Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure.Our cloud native Zero Trust Exchange platform protects thousands of customers from cy...Show more
    Last updated: 16 hours ago • Promoted • New!
    Information Security Engineer

    Information Security Engineer

    Arnold & Porter Llp • Washington, DC, United States
    Full-time
    The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show more
    Last updated: 15 days ago • Promoted
    Security Engineer (ISSE) Columbia, MD

    Security Engineer (ISSE) Columbia, MD

    Polaris Consulting Group • Columbia, MD, United States
    Full-time
    Polaris is looking for an Information Systems Security Engineer (ISSE).Candidate will perform system or network designs that encompass multiple enclaves, to include those with differing data protec...Show more
    Last updated: 30+ days ago • Promoted
    Information Systems Security Engineer Lead

    Information Systems Security Engineer Lead

    PCI Government Services • Quantico, VA, United States
    Full-time
    Please note that this position is contingent upon contract award.This position may be located in.Support all phases of an ISSE program with Information Systems Security Engineering professional (IS...Show more
    Last updated: 16 hours ago • Promoted • New!
    Enterprise - Information Systems Security Engineer - Vulnerability, POAM, Agile

    Enterprise - Information Systems Security Engineer - Vulnerability, POAM, Agile

    Erias Ventures • Chantilly, VA, United States
    Full-time
    Erias Ventures was founded to serve its customers with an entrepreneurial mindset.Our staff includes technical experts working across multiple disciplines, bringing diverse perspectives to every pr...Show more
    Last updated: 16 hours ago • Promoted • New!
    Sr. Information Systems Security Engineer III (5790)

    Sr. Information Systems Security Engineer III (5790)

    MetroStar Corporation • Reston, VA, United States
    Full-time
    You will work collaboratively with cross-functional teams to identify vulnerabilities, develop solutions, and ensure compliance with security protocols and industry standards.Staying informed about...Show more
    Last updated: 30+ days ago • Promoted
    Senior Information Systems Security Engineer (SME)

    Senior Information Systems Security Engineer (SME)

    Govcio LLC • Alexandria, VA, United States
    Full-time
    Information Systems Security Engineer.This position will be located in Alexandria, VA area and will be a hybrid remote position. This position focuses on maintaining support of cybersecurity, risk m...Show more
    Last updated: 18 hours ago • Promoted • New!
    Information Security Engineer

    Information Security Engineer

    Palantir Technologies • Washington, DC, United States
    Full-time
    Palantir builds the world's leading software for data-driven decisions and operations.By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving ...Show more
    Last updated: 30+ days ago • Promoted
    LEAD INFORMATION SECURITY ENGINEER

    LEAD INFORMATION SECURITY ENGINEER

    Lumen Technologies • Herndon, VA, United States
    Full-time
    We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show more
    Last updated: 30+ days ago • Promoted
    Lead Information Security Engineer- Certificate Management Services

    Lead Information Security Engineer- Certificate Management Services

    Wells Fargo • McLean, VA, United States
    Full-time
    Wells Fargo is seeking a Lead Information Security Engineer in Technology as part of the Chief Technology Office (CTO).Learn more about the career areas and lines of business at wellsfargojobs.The ...Show more
    Last updated: 18 hours ago • Promoted • New!
    Information Security Engineer

    Information Security Engineer

    International Legal Technology Association • Washington, DC, United States
    Full-time
    The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show more
    Last updated: 30+ days ago • Promoted
    Information Assurance Engineer / Security Manager

    Information Assurance Engineer / Security Manager

    C2 Labs, Inc. • Washington, DC, United States
    Full-time
    Information Assurance Engineer / Security Manager.C2 Labs partners with clients on their IT transformation journey via our industry-leading capabilities in full stack development, hyper-automation / ...Show more
    Last updated: 28 days ago • Promoted
    Compliance and Security Engineer

    Compliance and Security Engineer

    ExecutivePlacements.com • Washington, DC, United States
    Full-time
    At TCG, we aim to prove that businesses can be good to their employees and responsible to their community while being profitable. We're an award-winning IT solutions provider to the Federal governme...Show more
    Last updated: 3 hours ago • Promoted • New!
    Sr. Information Systems Security Engineer (ISSE), (Vulnerability Management)

    Sr. Information Systems Security Engineer (ISSE), (Vulnerability Management)

    Illuminate Mission Solutions • Sterling, VA, United States
    Full-time
    The Information Systems Security Officer (ISSO) manages all aspects of an organization's information security system, for classified and unclassified systems, including researching, testing, traini...Show more
    Last updated: 30+ days ago • Promoted
    Information Systems Security Engineer (ISSE)

    Information Systems Security Engineer (ISSE)

    The Swift Group • Reston, VA, United States
    Full-time
    Our capabilities include Software Development, Engineering & IT, Data Science, Cyber Enablement, Logistics, and Training. Founded in 2019, Swift supports Civilian, Defense, and Intelligence Communit...Show more
    Last updated: 18 hours ago • Promoted • New!