Principal Information Security Engineer (Identity)
<div class="content-intro"><p>About <strong>Zscaler</strong></p> <p>Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an <strong>AI-forward enterprise</strong>, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.</p> <p>Here, <strong>impact in your role matters more than title</strong> and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value <strong>constructive, honest debate</strong>—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on <strong>customer obsession</strong>, collaboration, ownership, and accountability.</p> <p>We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.</p></div><p><strong>Role</strong></p> <p>We are looking for a Principal Information Security Engineer (Identity) to join our team. This is a Hybrid (onsite three days a week in San Jose, CA) role, reporting to the Director, Information Security Compliance in the Information Security Compliance department. The Principal Information Security Engineer (Identity) will own the architectural backbone of how Zscaler's internal service authentication and authorization operate at scale. In this role, you will design and drive adoption of the credential model, establishing a cryptographic trust foundation while setting identity patterns and standards for engineering teams across the company to consume.</p> <p><strong>What you’ll do (Role Expectations)</strong></p> <ul> <li>Own the end-to-end architectural design of the Machine Identity service</li> <li>Lead Proof of Concepts (PoCs) for critical architectural components including SPIFFE/SPIRE workload attestation, Non-Human Identity (NHI) governance workflows, and system design validation</li> <li>Drive cross-team implementation by owning delivery accountability across partner teams, running design reviews, unblocking technical challenges, and managing timelines</li> <li>Champion engineering adoption by building SDKs and defining seamless migration pathways from human identity to Non-Human Identity (NHI)</li> <li>Design the identity and authorization model for LLM workloads and AI agents operating within the organization</li> </ul> <p><strong>Who You Are (Success Profile)</strong></p> <ul> <li>You thrive in ambiguity and dynamic environments, comfortably building the path forward and viewing complex challenges as raw material to construct meaningful solutions.</li> <li>You act like an owner with a strong bias for action, navigating seamlessly between high-level strategy and hands-on execution while remaining deeply committed to mission outcomes.</li> <li>You operate with urgency and a relentless focus on execution, delivering high-quality, high-impact results rapidly within a fast-growing environment.</li> <li>You are driven by innovation and technical curiosity, constantly seeking superior, secure, and scalable ways to leverage technology to accelerate organizational transformation.</li> <li>You are resilient and adaptable, maintaining composure under pressure, treating setbacks as temporary, and guiding teams through complex technical landscapes with a steady hand.</li> </ul> <p><strong>What We’re Looking for (Minimum Qualifications)</strong></p> <ul> <li>Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain</li> <li>8+ years of experience in security or security architecture, with at least 3 years explicitly focused on Machine Identity</li> <li>Production-level deployment experience, including hands-on support and operations</li> <li>Demonstrated experience driving cross-team technical programs to delivery, including owning design reviews, resolving cross-functional blockers, and producing clear architectural guidance</li> <li>Working experience with Kubernetes, Virtual Machines (VMs), and bare-metal workloads, along with a strong understanding of their provisioning</li> </ul> <p><strong>What Will Make You Stand Out (Preferred Qualifications)</strong></p> <ul> <li>Production deployment experience with SPIFFE/SPIRE, specifically designing and operating deployments for cross-environment workloads and applications</li> <li>Dedicated experience managing identity and security architectures for agentic and AI workloads</li> <li>Proven track record with large-scale authentication and authorization migration programs</li> </ul> <p>#LI-KM9 #LI-Hybrid</p><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p>Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.</p> <p>The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.</p></div><div class="title">Base Pay Range</div><div class="pay-range"><span>$171,500</span><span class="divider">—</span><span>$245,000 USD</span></div></div></div><div class="content-conclusion"><p data-pm-slice="1 3 []">At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.</p> <p>Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:</p> <div class="has-nudge" data-nudge-id="5eb9419b-6a4d-4451-bfa6-e2eb96084be0"> <ul> <li>Various health plans</li> <li>Time off plans for vacation and sick time</li> <li>Parental leave options</li> <li>Retirement options</li> <li>Education reimbursement</li> <li>In-office perks, and more!</li> </ul> <div class="has-nudge" data-nudge-id="5eb9419b-6a4d-4451-bfa6-e2eb96084be0"> <p data-pm-slice="1 1 []">Learn more about Zscaler's hybrid working model and benefits <a href="https://www.zscaler.com/candidate-resource-hub" target="_blank">here</a>.</p> </div> </div> <p>By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.</p> <p class="p1">Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. <em>See more information by clicking on the </em><a href="https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf"><em>Know Your Rights: Workplace Discrimination is Illegal </em></a><em>link.</em></p> <p>Pay Transparency</p> <p>Zscaler complies with all applicable federal, state, and local pay transparency rules.</p> <p>Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.</p></div>