Demo

Staff Information Security Engineer (Vulnerability Management)

Zscaler
Crystal, VA Full Time
POSTED ON 1/28/2026 CLOSED ON 3/6/2026

What are the responsibilities and job description for the Staff Information Security Engineer (Vulnerability Management) position at Zscaler?

About Zscaler

Zscaler is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and government agencies rely on Zscaler to secure users, branches, applications, data & devices, and to accelerate digital transformation initiatives. Distributed across more than 160 data centers globally, the Zscaler Zero Trust Exchange platform combined with advanced AI combats billions of cyber threats and policy violations every day and unlocks productivity gains for modern enterprises by reducing costs and complexity.

Here, impact in your role matters more than title and trust is built on results. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership and accountability.

We champion an “AI Forward, People First” philosophy to help us accelerate and innovate, empowering our people to embrace their potential. If you’re driven by purpose, thrive on solving complex challenges and want to make a positive difference on a global scale, we invite you to bring your talents to Zscaler to help shape the future of cybersecurity.

Role

We are looking for a Staff Information Security Engineer to join our Engineering team. This is a fully onsite role based in the Crystal City / Arlington, VA Area, reporting to the VP, Product Security. You will operate as a vulnerability management engineer inside the U.S. Federal IL6 (SCIF) environment. This role is critical to maintaining our multitenant architecture and global security footprint, ensuring we enable organizations worldwide to harness speed and agility while operating strictly within a U.S. SCIF and adhering to one-way diode transfer protocols.

What You’ll Do (Role Expectations)

  • Design and execute authenticated and unauthenticated network and host scanning using IL6-approved tools like Tenable.sc or Nessus Manager within air-gapped environments
  • Build Python, Go, or PowerShell automations for scan orchestration, asset onboarding, policy tuning, and diode-ready reporting formats
  • Drive collaboration with IL6 service owners to eliminate exploitable risks and manage comprehensive patch and hardening campaigns
  • Produce weekly and monthly reporting aligned to IL6 program cadence and diode data transfer policies
  • Maintain essential documentation including runbooks, SOPs, exception governance, and change control processes within the SCIF environment


Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.
  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.
  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.


What We’re Looking For (Minimum Qualifications)

U.S. citizenship and a current, active U.S. Top Secret (TS) clearance and 5 years of experience in one or more of the following

  • Vulnerability Management
  • Experience with Tenable.sc/Nessus Manager or equivalents
  • Experience with CSPM concepts and/or Web Application Scanning (WAS) methodologies with solid understanding of risk-based prioritization (CVSS, EPSS), remediation lifecycle, and SLA governance
  • Scripting skills in Python, Go, or PowerShell for automation in disconnected environments


What Will Make You Stand Out (Preferred Qualifications)

  • DoD 8570/8140 IAT Level II certification such as Security CE, GSEC, SSCP, or CySA
  • Understanding of cloud and container platforms adapted to classified environments including AWS C2S/SC2S constructs, ECS/Kubernetes, and VM hardening
  • Exposure to FedRAMP High/Moderate operations and ticketing management in isolated environments using Jira or ServiceNow


Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) benefits.

Base Pay Range

$115,500 - $165,000 USD

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Benefits

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!


Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Salary : $115,500 - $165,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Staff Information Security Engineer (Vulnerability Management)?

Sign up to receive alerts about other jobs on the Staff Information Security Engineer (Vulnerability Management) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
This job has expired.
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Zscaler

  • Zscaler San Jose, CA
  • About Zscaler Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust ... more
  • 4 Months Ago

  • Zscaler San Jose, CA
  • About Zscaler Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust ... more
  • 4 Months Ago

  • Zscaler San Jose, CA
  • About Zscaler Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust ... more
  • 4 Months Ago

  • Zscaler San Jose, CA
  • About Zscaler Zscaler is a pioneer and global leader in zero trust security. The world’s largest businesses, critical infrastructure organizations, and gov... more
  • 4 Months Ago


Not the job you're looking for? Here are some other Staff Information Security Engineer (Vulnerability Management) jobs in the Crystal, VA area that may be a better fit.

AI Assistant is available now!

Feel free to start your new journey!