Senior Cloud Security Engineer - Zscaler & Palo Alto Prisma Access
Location: Houston, TX (hybrid 3 days onsite/week)
Job Type: Full-Time
Employment Type: Direct Hire
About the Opportunity
We are hiring on behalf of a leading engineering client that is driving large-scale enterprise security transformation initiatives. This role is ideal for a highly skilled Cloud Security Engineer with deep hands-on expertise in Zscaler and Palo Alto Prisma Access technologies, Zero Trust architecture, and Secure Access Service Edge (SASE) solutions.
The ideal candidate will have experience designing, implementing, and optimizing cloud-native security platforms in complex enterprise environments. This is not a traditional network engineering role. We are specifically seeking professionals with proven expertise in cloud security, secure access, identity-driven security controls, and Zero Trust networking.
Key Responsibilities
- Design, deploy, and support enterprise-scale Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) solutions.
- Implement and manage Palo Alto Prisma Access and related cloud security services.
- Lead Zero Trust and SASE transformation initiatives across global enterprise environments.
- Develop and maintain security policies, SSL inspection policies, URL filtering, DLP controls, CASB integrations, and threat prevention capabilities.
- Integrate security solutions with identity providers such as Microsoft Entra ID (Azure AD) and Okta.
- Collaborate with architecture, infrastructure, cloud, and security teams to enhance enterprise security posture.
- Perform security assessments, policy reviews, troubleshooting, and optimization of cloud security platforms.
- Support secure remote access, application segmentation, and access control initiatives.
- Participate in incident response, threat analysis, and security improvement programs.
- Create technical documentation, standards, and operational procedures.
Required Qualifications
- Bachelor's degree in Computer Science, Information Security, Engineering, or a related field.
- 5+ years of experience in Network Security, Cloud Security, or Security Engineering.
- 3+ years of hands-on experience with Zscaler ZIA and ZPA.
- 3+ years of experience with Palo Alto Prisma Access and Palo Alto security technologies.
- Strong understanding of:
- Zero Trust Architecture
- SASE / SSE
- Secure Web Gateway (SWG)
- CASB
- DLP
- SSL Decryption
- Identity and Access Management
- Cloud Security Best Practices
- Experience integrating security platforms with Entra ID, Okta, or other modern identity solutions.
- Strong troubleshooting and implementation skills in enterprise-scale environments.
Preferred Qualifications
- Experience with ZDX, Cloud Firewall, or advanced Zscaler services.
- Palo Alto certifications (PCNSA, PCNSE).
- Zscaler certifications (ZCCA, ZCCA-IA, ZCCP, or related).
- Experience securing Azure, AWS, or Google Cloud environments.
- Experience with automation tools and Infrastructure as Code.
Desired Skills
- Zscaler ZIA
- Zscaler ZPA
- ZDX
- Palo Alto Prisma Access
- PAN-OS
- GlobalProtect
- SASE
- SSE
- Zero Trust
- CASB
- DLP
- Entra ID
- Okta
- Cloud Security
- Identity Security
- Secure Access
Important Note
Candidates must have hands-on implementation experience with Zscaler and Palo Alto Prisma Access in enterprise production environments. Candidates whose experience is primarily focused on routing, switching, network operations, desktop support, or traditional network administration without cloud security expertise will not be considered.
Why Join?
This is an opportunity to work with a leading engineering organization that is investing heavily in modern security architecture, cloud transformation, and Zero Trust initiatives. You'll have the chance to work on high-impact enterprise security projects while collaborating with top-tier architecture and cybersecurity teams.
Apply today if you have proven expertise in Zscaler, Palo Alto Prisma Access, and enterprise cloud security transformation.