yandex
zscaler
Страна
Индия
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
ГибридПолная занятость

Principal Vulnerability Management Engineer

Оценка ИИ

Zscaler — топовая компания в сфере кибербезопасности с сильной инженерной культурой. Позиция Principal уровня предлагает отличные возможности для влияния на продукт мирового масштаба и работу с передовыми технологиями (AI, Zero Trust).


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Высокая сложность обусловлена требованием к огромному опыту (12+ лет) и необходимости глубоких знаний широкого стека инструментов сканирования и облачной безопасности. Роль подразумевает лидерство в распределенной команде и высокий уровень ответственности за архитектуру управления уязвимостями.

Анализ зарплаты

Медиана85 000 $
Рынок65 000 $ – 110 000 $
Оценка ИИ

Зарплата для позиции Principal Engineer в Бангалоре в международных продуктовых компаниях обычно находится в верхнем сегменте рынка. Указанные оценки отражают уровень компенсации для специалистов с опытом более 12 лет в сфере кибербезопасности.

Сопроводительное письмо

I am writing to express my strong interest in the Principal Vulnerability Management Engineer position at Zscaler. With over 12 years of experience in information security and a deep specialization in vulnerability management across network, web, and endpoint layers, I am confident in my ability to lead your team in Bangalore. My background aligns perfectly with your requirement for hands-on expertise with tools like Tenable, Qualys, and Wiz, as well as my proven track record of collaborating with DevOps teams to integrate security into CI/CD pipelines.

Throughout my career, I have focused on not just identifying risks, but building automated systems for remediation tracking and risk assessment. I am particularly drawn to Zscaler’s 'impact over activity' philosophy and your AI-forward approach to cybersecurity. I am eager to bring my experience in securing multi-cloud environments (AWS/Azure/GCP) and my passion for automation using Python and Tines to help Zscaler stay ahead of evolving threats and protect your global customer base.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в zscaler уже сейчас

Присоединяйтесь к лидеру в области Zero Trust и станьте ключевым звеном в защите крупнейшего в мире облака безопасности!

Описание вакансии

About Zscaler

Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability.

We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.

Role

We are looking for a Principal Vulnerability Management Engineer to join our Product Security team in a hybrid capacity, based out of our Bangalore office three days a week. In this role, you will report to the Senior Manager, Information Security Engineering. You will bring your vision and passion to a team of cloud architects and security experts who have built the world’s largest cloud security platform from the ground up. You will play a critical role in enhancing our services and enabling organizations worldwide to harness speed and agility through a secure, cloud-first strategy.

What you’ll do (Role Expectations)

  • Lead the Vulnerability Management team in conducting regular vulnerability assessments and scans using industry-leading tools
  • Analyze and interpret scan results to identify vulnerabilities and assess their risk while providing detailed remediation guidance
  • Collaborate with IT, DevOps, and development teams to remediate identified vulnerabilities and ensure secure deployment practices
  • Develop and maintain automated processes for vulnerability scanning, reporting, and remediation tracking

Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful
  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution
  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact
  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust
  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose

What We’re Looking for (Minimum Qualifications)

  • 12+ years of experience with at least 7 years focused on hands-on vulnerability management and platform operation for network, web, and endpoint detection
  • Proficiency with vulnerability scanners including Tenable, Qualys, Wiz, Crowdstrike, Burp Suite, and OWASP ZAP
  • Deep understanding of security principles, attack vectors, and monitoring to ensure timely and effective risk management
  • Proven experience working effectively with geographically distributed teams

What Will Make You Stand Out (Preferred Qualifications)

  • Proficiency in scripting and automation using Python or PowerShell, along with experience in automation tools like Tines and ticketing systems such as Avalor UVM or Nucleus
  • Familiarity with CI/CD systems and DevSecOps practices within a fast-paced environment
  • Expertise in securing cloud environments across AWS, Azure, and Google Cloud using cloud-native security methodologies

#LI-Hybrid #LI-RM6

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegallink.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Vulnerability Management
  • Tenable
  • Qualys
  • Wiz
  • CrowdStrike
  • Burp Suite
  • OWASP ZAP
  • Python
  • PowerShell
  • AWS
  • Azure
  • Google Cloud Platform
  • CI/CD
  • DevSecOps
  • Tines

Возможные вопросы на собеседовании

Проверка опыта управления приоритетами в условиях большого количества алертов.

Как вы расставляете приоритеты при обнаружении критических уязвимостей в крупномасштабной облачной инфраструктуре, когда ресурсы на исправление ограничены?

Оценка навыков автоматизации и использования современных инструментов.

Опишите ваш опыт использования Python или инструментов типа Tines для автоматизации жизненного цикла управления уязвимостями.

Проверка умения взаимодействовать с техническими командами.

Как вы выстраиваете процесс взаимодействия с DevOps и разработчиками, чтобы обеспечить своевременное исправление уязвимостей без ущерба для скорости выпуска продукта?

Оценка знаний специфики облачных сред.

В чем заключаются основные различия в подходе к управлению уязвимостями в традиционной инфраструктуре и в публичных облаках (AWS/Azure/GCP)?

Проверка лидерских качеств и работы в распределенной среде.

Расскажите о случае, когда вам приходилось внедрять значительные изменения в процессы безопасности в географически распределенной команде. С какими трудностями вы столкнулись?

Похожие вакансии

SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
Operation Zero
450 000 ₽ – 900 000 ₽

Исследователь безопасности Android

УдалённоРоссия
Android · Reverse Engineering · Exploit Development · Kernel Research · C++ · ARM Assembly · Java · Ghidra · IDA Pro · Linux Kernel · Kotlin · JavaScript
+12 навыков
NDA
250 000 ₽ – 450 000 ₽

Эксперт по защите периметра (WAF)

УдалённоРоссия
WAF · Wallarm · Positive Technologies Application Firewall · NGFW · IPS · Vulnerability Assessment · Network Security
+7 навыков
Квазар
до 350 000 ₽

DevOps-инженер/ИБ (devops engineer, information security)

УдалённоРоссия
TCP/IP · DNS · DHCP · HTTPS · SMTP · BGP · OSPF · VLAN · NAT · Zero Trust · RBAC · SIEM · Zabbix · ELK · Wazuh · Grafana · Bash · PowerShell · Python · VMware · Proxmox · Hyper-V · KVM · SoC
+24 навыков
Атом Безопасность
200 000 ₽ – 400 000 ₽

Application Security Еngineer (AppSec)

УдалённоРоссия
C++ · Rust · JavaScript · Python · TypeScript · SAST · DAST · SCA · ASOC · CI/CD · GitLab CI · Docker · Fuzzing · Threat Modeling
+14 навыков
ХАКСКИ КОНСАЛТИНГ
280 000 ₽ – 350 000 ₽

Инженер по сетевой безопасности

УдалённоРоссия
NGFW · UTM · Proxy · IDS · IPS · VPN · ACL · iptables · Routing · Switching · Network Security · IP
+12 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

zscaler
Страна
Индия