Koniag Government Services

Zscaler Integration Engineer - Mid

Koniag Government Services$95K — $115K *
Education, Government & Non-Profit
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, IT, Cybersecurity, or related field; equivalent experience considered.
  • 3-5 years of experience in network security engineering, cloud security, or similar.
  • 2-3 years of hands-on experience with Zscaler ZIA and/or ZPA platforms.
  • Experience in configuring ZIA security policies like URL filtering and SSL inspection.
  • Familiarity with enterprise identity provider integrations such as SAML and SCIM.
  • Active security clearance or ability to obtain one.

Responsibilities

  • Assist in engineering and implementing Zscaler Internet Access (ZIA) security policies.
  • Configure ZIA traffic forwarding and maintain reliable internet-bound traffic management.
  • Support ZIA Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) configurations.
  • Monitor ZIA platform health and escalate issues to senior engineers.
  • Support engineering and implementation of Zero Trust private application access with ZPA.
  • Assist in deployment and maintenance of ZPA App Connectors across environments.
  • Help monitor Zscaler Digital Experience (ZDX) for application performance and user experience.

Benefits

  • Collaborative work environment with senior engineers.
  • Opportunity for professional growth and increased technical responsibility.
  • Access to advanced Zscaler platforms and technologies.
  • Contributions to federal cybersecurity initiatives.
  • Combination of onsite and remote work flexibility.
Full Job Description
Koniag Data Solutions, a Koniag Government Services company, is seeking an experienced Zscaler Integration Engineer (Mid) to support enterprise network security operations and IT administrative and operational support services for a federal government client. This position requires an active security clearance or the ability to obtain and maintain a government background investigation and all requisite IT access authorizations prior to performing work. Specific clearance requirements will be confirmed at time of offer. Primary work will be performed at the client site and approved remote/telework locations.

This role serves as an important technical function responsible for the engineering, implementation, administration, and operational support of enterprise Zscaler security platform capabilities across a complex, geographically distributed federal IT environment spanning on-premises infrastructure, cloud platforms, and hybrid network environments.

The ideal candidate is a technically proficient and security-focused cloud security engineer with solid, hands-on experience across key Zscaler platforms-including Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)-combined with a strong understanding of Secure Access Service Edge (SASE) architecture, Zero Trust Network Access (ZTNA) principles, enterprise networking concepts, and Federal cybersecurity compliance requirements. This individual must possess the technical depth, operational discipline, and collaborative mindset required to contribute meaningfully to the engineering and sustained operation of enterprise-grade Zscaler security capabilities under the guidance of senior engineers while demonstrating the initiative and growing expertise needed to take on increasing technical responsibility over time.

The Zscaler Integration Engineer (Mid) will serve as a contributing technical engineer within the program's network security team, supporting the engineering, implementation, administration, and continuous improvement of enterprise Zscaler security infrastructure under the technical leadership of the Senior Zscaler Integration Engineer. This individual works closely with network engineers, security engineers, cloud operations teams, identity and access management specialists, and Government stakeholders to ensure Zscaler platforms are properly configured, reliably operated, and continuously improved in alignment with enterprise security requirements, Federal cybersecurity frameworks, and Zero Trust Architecture objectives.

Principal responsibilities will include but are not limited to:

Zscaler Internet Access (ZIA) Engineering & Administration
  • Assist in and independently execute the engineering, implementation, and administration of ZIA internet security policies and configurations under the technical guidance of the Senior Zscaler Integration Engineer, including URL filtering policies, application control rules, SSL/TLS inspection policies, and advanced threat protection configurations.
  • Configure and maintain ZIA traffic forwarding configurations, including Zscaler Client Connector forwarding profiles, GRE and IPsec tunnel maintenance, and PAC file management, ensuring reliable and consistent forwarding of internet-bound traffic to ZIA for policy enforcement.
  • Assist in the implementation and maintenance of ZIA Data Loss Prevention (DLP) policies and Cloud Access Security Broker (CASB) configurations, supporting the protection of sensitive data across internet and cloud application access scenarios.
  • Monitor ZIA platform health, traffic processing performance, and policy enforcement effectiveness, identifying and escalating platform issues, policy gaps, and emerging threat patterns to senior engineers.
  • Assist in ZIA SSL/TLS inspection policy management, including certificate trust configuration, bypass exception management, and performance impact assessment under the guidance of the Senior Zscaler Integration Engineer.
  • Support ZIA policy lifecycle management activities, including regular policy review cycles, rule optimization, exception management, and policy documentation updates.
  • Generate and analyze ZIA traffic logs, threat prevention reports, and URL filtering activity reports to support security monitoring, incident investigation, and operational performance analysis.
  • Troubleshoot ZIA connectivity, policy enforcement, and performance issues, conducting root cause analysis and implementing corrective actions within defined SLA requirements under the guidance of senior engineers.

Zscaler Private Access (ZPA) Engineering & Administration
  • Assist in and support the engineering, implementation, and administration of ZPA Zero Trust private application access configurations, including application segment definition, access policy development, and App Connector management under senior engineer guidance.
  • Configure and maintain ZPA application segments and server groups, defining granular, application-specific access scopes that enforce least-privilege access principles across all protected private applications.
  • Support the deployment and maintenance of ZPA App Connectors across on-premises and cloud environments, assisting in connector installation, configuration, health monitoring, and troubleshooting activities.
  • Assist in the implementation and maintenance of ZPA access policies, including identity-based policy configurations, device posture conditions, and MFA enforcement requirements, ensuring access controls continuously evaluate user and device trust.
  • Support the integration and maintenance of ZPA with enterprise identity providers, including Microsoft Entra ID and Okta, assisting in SAML and SCIM configuration and troubleshooting activities under senior engineer guidance.
  • Monitor ZPA platform health, App Connector availability, and user access session data, identifying and escalating connectivity issues, policy enforcement gaps, and performance problems to senior engineers for resolution.
  • Troubleshoot ZPA user access issues, App Connector connectivity failures, and policy enforcement problems, gathering relevant log data and diagnostic information to support root cause analysis and resolution activities.
  • Generate and analyze ZPA access logs and policy enforcement reports, supporting security monitoring, compliance reporting, and access pattern analysis activities.

Zscaler Client Connector Administration
  • Support the administration and maintenance of the Zscaler Client Connector agent across managed enterprise endpoints, assisting in agent deployment, configuration management, and health monitoring activities under senior engineer guidance.
  • Monitor Zscaler Client Connector deployment coverage and agent health across the managed endpoint population, identifying and escalating deployment gaps, agent connectivity failures, and configuration drift issues for remediation.
  • Assist in the configuration and maintenance of Zscaler Client Connector forwarding profiles, app profiles, and policy configurations, ensuring consistent ZIA, ZPA, and ZDX service delivery across all managed endpoint platforms.
  • Support the integration of Zscaler Client Connector with enterprise endpoint management platforms, assisting in deployment package development, configuration profile management, and agent health reporting activities.
  • Troubleshoot Zscaler Client Connector connectivity and functionality issues, analyzing client logs and platform diagnostic data to identify root causes and implement corrective actions under senior engineer guidance.

Zscaler Digital Experience (ZDX) Support
  • Assist in the administration and monitoring of the Zscaler Digital Experience (ZDX) platform, supporting the monitoring of user digital experience quality, application performance, and network path health across the enterprise environment.
  • Monitor ZDX dashboards and alerting outputs, identifying user experience degradation, application performance issues, and network path problems requiring escalation to senior engineers and relevant infrastructure or network teams.
  • Assist in the development and maintenance of ZDX monitoring configurations, including application performance probe setup and user experience alerting threshold configuration under senior engineer guidance.
  • Support the generation and distribution of ZDX performance reports, providing program leadership and Government stakeholders with accurate visibility into digital experience trends and identified performance issues.

Identity & Access Management Integration Support
  • Support the implementation and maintenance of Zscaler platform integrations with enterprise identity and access management platforms, assisting senior engineers in configuring and troubleshooting SAML, OIDC, and SCIM-based authentication and directory synchronization integrations.
  • Assist in the configuration and maintenance of identity provider integrations between Zscaler ZIA and ZPA platforms and enterprise IdPs, including Microsoft Entra ID and Okta, ensuring seamless and secure user authentication to Zscaler services.
  • Monitor identity provider integration health and SCIM directory synchronization status, identifying and escalating authentication failures, synchronization errors, and policy enforcement inconsistencies to senior engineers for resolution.
  • Support MFA enforcement configuration and maintenance across Zscaler platform access scenarios, assisting in the implementation and troubleshooting of strong authentication requirements in coordination with identity platform teams.

Security Operations & Threat Intelligence Support
  • Monitor Zscaler platform security event logs, threat prevention alerts, and DLP policy violation reports, triaging alerts and escalating confirmed or suspected security events to senior analysts and the incident response team in accordance with defined monitoring procedures and escalation thresholds.
  • Assist in the development and maintenance of Zscaler-specific SIEM detection content, supporting senior engineers in developing correlation rules and alerting configurations that leverage Zscaler telemetry for threat detection.
  • Support the integration and maintenance of threat intelligence configurations within Zscaler platforms, assisting in the management of custom URL categories, IP reputation blocking, and threat intelligence-driven policy rules.
  • Support incident response activities involving Zscaler platforms, providing platform-level log analysis and configuration support to senior engineers during investigation, containment, and remediation efforts.
  • Assist in the analysis of Zscaler platform security event data, identifying emerging threat patterns, false positive alert sources, and policy tuning opportunities under the guidance of senior engineers.

Change Management & Documentation
  • Prepare and submit Zscaler change requests for Change Advisory Board (CAB) review, developing implementation plans, technical impact assessments, rollback procedures, and test plans for assigned platform changes under senior engineer guidance.
  • Coordinate with the change management process to ensure all assigned Zscaler platform changes are properly reviewed, approved, scheduled, and implemented without degradation to security posture or service availability.
  • Conduct post-implementation reviews for assigned platform changes, documenting outcomes and lessons learned to support continuous improvement of change execution practices.
  • Develop and maintain Zscaler operational documentation, including configuration runbooks, troubleshooting guides, policy documentation, and standard operating procedures, ensuring documentation is current and accurately reflects platform configurations.
  • Maintain accurate and current Zscaler platform configuration records, change logs, and operational documentation in the program's knowledge management and documentation repositories.

Compliance & ATO Support
  • Ensure Zscaler platforms are configured and maintained in compliance with applicable Federal cybersecurity frameworks and requirements, including NIST SP 800-53, FISMA, FedRAMP, NIST SP 800-207 Zero Trust Architecture, OMB M-22-09, and client-specific cybersecurity policies.
  • Assist in ATO activities for Zscaler platforms, including security control implementation documentation, system security plan (SSP) contribution, continuous monitoring evidence collection, and audit artifact preparation under senior engineer guidance.
  • Support regular Zscaler platform configuration compliance assessments, assisting in the identification and remediation of configuration deviations from applicable security baselines and Federal compliance requirements.
  • Support vulnerability management activities for Zscaler platforms, tracking platform vulnerabilities identified through vendor advisories and assisting in coordinating remediation activities under senior engineer guidance.


Education and Experience:

Required:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Network Engineering, or a related field from an accredited college or university. Equivalent combination of education and directly relevant experience may be considered.
  • Minimum of 3-5 years of hands-on experience in network security engineering, cloud security, or a closely related discipline, with at least 2-3 years of demonstrated hands-on experience engineering and administering Zscaler ZIA and/or ZPA platforms in an enterprise environment.
  • Demonstrated hands-on experience configuring and administering Zscaler ZIA security policies, including URL filtering, SSL inspection, application control, and threat prevention configurations.
  • Demonstrated experience supporting ZPA application access configuration, including application segment definition, App Connector management, and access policy development.
  • Familiarity with enterprise identity provider integration concepts, including SAML, OIDC, and SCIM, as applied to Zscaler platform authentication and directory synchronization.
  • Active security clearance or the ability to obtain and maintain a government

About Koniag Government Services

Koniag Government Services Careers

Join the dynamic team at Koniag Government Services, a leader in providing innovative solutions to government clients. This esteemed company offers a plethora of job opportunities that pave the way for professional growth and career advancement in a diverse and inclusive environment.

Explore Career Opportunities

Koniag Government Services is actively hiring and offers a range of positions that cater to various skills and experiences. Whether you're a seasoned professional or a recent graduate, Koniag Government Services provides a platform to enhance your career through meaningful work in a supportive culture.

Innovation and Leadership

At the forefront of innovation, Koniag Government Services encourages its team to lead with creativity and strategic thinking. The company is committed to leadership development and diversity training, ensuring that all team members have the opportunity to excel and contribute to industry-leading projects.

Professional Growth and Development

Koniag Government Services is dedicated to the professional development of its employees. With comprehensive benefits, competitive employment packages, and opportunities for advancement, the company supports its team in achieving their career goals. Networking within the company and industry is encouraged, fostering a community of learning and mutual growth.

Internship Programs

For those starting their career journey, Koniag Government Services offers internship programs that provide real-world experience and a pathway to full-time employment. Interns gain valuable industry knowledge and develop essential skills under the guidance of experienced mentors.

Commitment to Diversity and Inclusion

Diversity is at the core of Koniag Government Services' values. The company is committed to creating an inclusive environment where diverse voices are heard and valued. Diversity training is integral, equipping the team with the tools to thrive in a multicultural setting.

Applying for a Position

To apply for a position at Koniag Government Services, candidates should prepare a resume that highlights relevant experience and skills. The interview process is designed to assess fit both for the role and the company culture, ensuring alignment with the team’s values and objectives.

Stay Connected with Koniag Government Services Careers

Explore the various job opportunities and embark on a path of professional growth and innovation. Koniag Government Services is not just a workplace but a community where careers flourish in an environment of respect, integrity, and continuous learning.

Search Koniag Government Services Jobs

Discover the exciting career opportunities available at Koniag Government Services. Search for open positions that match your skills and interests, and join a team that values curiosity, creativity, and collaboration.

Keep Up to Date

Stay informed with the latest career tips, industry insights, and company updates directly from Koniag Government Services. Engage with content that can transform your professional journey and lead to rewarding opportunities.

Job Alert Emails

Personalize your subscription to receive job alerts and insider tips tailored to your preferences from Koniag Government Services. See what exciting and rewarding opportunities await in the field of government services.
Learn more about Koniag Government Services
Size
501 employees
Industry

Similar Jobs

More Jobs at Koniag Government Services

More Education, Government & Non-Profit Jobs

  • Deputy Building Official
    $80K — $150K + gloucester county government offers an excellent benefit package *
    Gloucester County
    Gloucester, VA 23061 (Gloucester County)
  • Deputy Assessor
    $80K — $150K + gloucester county government offers an excellent benefit package *
    Gloucester County
    Gloucester, VA 23061 (Gloucester County)
  • Civil Engineer II
    $80K — $150K + gloucester county government offers an excellent benefit package *
    Gloucester County
    Gloucester, VA 23061 (Gloucester County)
  • Accounting Manager
    $80K — $100K + gloucester county government offers an excellent benefit package *
    Gloucester County
    Gloucester, VA 23061 (Gloucester County)
  • Manager, Clinical Business Development
    $115K — $120K *
    Columbia University Irving Medical Center
    New York, NY 10032 (New York County)

Find similar Zscaler Integration Engineer - Mid jobs: