Principal Vulnerability Management Engineer

Reposted 23 Days Ago
Easy Apply
Be an Early Applicant
Bangalore, Bengaluru, Karnataka, IND
Hybrid
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Secure, simplify, and transform your enterprise with zero trust.
The Role
Lead the Vulnerability Management team to conduct assessments and scans, analyze results, collaborate with teams for remediation, and maintain automated processes for tracking vulnerabilities.
Summary Generated by Built In

Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.

We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.

Role

We are looking for a Principal Engineer, Vulnerability & Exposure Management to join our team. This is a hybrid role, reporting to the Senior Manager, Information Security Engineering in the Product Security department. This critical role helps modernize how we discover, prioritize, and reduce security exposure across infrastructure, cloud, applications, APIs, endpoints, containers, and internet-facing assets. As an individual contributor, you will operate both strategically and technically to define the operating model, build scalable workflows, influence engineering teams, and dive deep into findings, coverage gaps, scanner limitations, and remediation paths with a strong builder mindset.

What you’ll do (Role Expectations)

  • Lead comprehensive vulnerability and exposure management initiatives across infrastructure, cloud, APIs, and containers, evolving the function from a traditional reporting role into a high-leverage product security engineering capability

  • Define advanced, risk-based prioritization models that go beyond standard CVSS by integrating threat intelligence and business context, drastically reducing noise and duplicate findings for engineering teams

  • Design and deploy automated data pipelines, scripting, and workflow orchestration to streamline the entire lifecycle of asset discovery, authenticated scanning, triage, routing, and validation

  • Drive external attack surface management (EASM) to map internet-facing assets while aggressively identifying program gaps, including unauthenticated scans, stale asset ownership, and untracked exceptions

  • Collaborate directly with DevOps, IT, and Engineering teams to translate complex vulnerability data into practical technical guidance, durable infrastructure improvements, and leadership-ready performance metrics

Who You Are (Success Profile)

  • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.

  • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.

  • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.

  • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.

  • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.

What We’re Looking for (Minimum Qualifications)

  • Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain

  • 12+ years of experience in security engineering or product security, including 7+ years of hands-on experience driving and scaling vulnerability and exposure management programs within complex environments

  • Deep understanding of scanner mechanics (including authenticated/unauthenticated scanning, coverage gaps, and asset correlation) paired with proficiency in platforms like Tenable, Qualys, Wiz, CrowdStrike, or Burp Suite

  • Practical experience implementing risk-based frameworks that leverage modern exploitability signals, threat intelligence, KEV, EPSS, and asset criticality to prioritize threats effectively

  • Hands-on automation capabilities using Python, PowerShell, APIs, data pipelines, or workflow orchestration platforms to eliminate manual operational overhead, combined with a proven ability to partner collaboratively with engineering teams to drive remediation and translate complex technical data into clear insights for senior leadership

What Will Make You Stand Out (Preferred Qualifications)

  • Experience leveraging AI/ML technologies and advanced orchestration platforms to design intelligent, self-service triage, automated remediation routing, and predictive exposure analysis workflows

  • Extensive experience securing multi-cloud environments (AWS, Azure, GCP) and containerized architecture (Kubernetes), including image scanning, runtime security, and embedding security guardrails into CI/CD and DevSecOps pipelines

  • Proven track record in advanced vulnerability prioritization strategies (EASM, CTEM, and attack-path analysis) paired with the ability to integrate vulnerability data seamlessly into CMDBs, asset inventories, and ownership tracking systems

#LI-Hybrid #LI-PM5

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler's hybrid working model and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Skills Required

  • 12+ years of experience in vulnerability management security
  • Minimum of 7 years hands-on experience with vulnerability scanning platforms
  • Proficiency with vulnerability scanners including Tenable and Qualys
  • Strong understanding of security principles and attack vectors
  • Experience working with geographically distributed teams

What the Team is Saying

Zscaler Compensation & Benefits Highlights

  • Healthcare Strength Coverage is described as comprehensive across medical, dental, and vision, with mental‑health access and targeted programs for complex and chronic needs. Inclusive options span fertility, gender‑affirming care, and specialized support such as menopause and cancer‑care navigation.
  • Parental & Family Support Paid parental leave is outlined for all parents, with additional disability time for birthing parents and a ramp‑back period at full pay. Family‑building benefits and adoption assistance are also highlighted.
  • Equity Value & Accessibility Equity grants (RSUs) and a discounted stock purchase plan are positioned as meaningful components of total rewards. Feedback suggests these programs enhance overall compensation, particularly in eligible roles.

Zscaler Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Jose, CA
8,697 Employees
Year Founded: 2007

What We Do

Zscaler accelerates digital transformation so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust Exchange platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.

Why Work With Us

Our impact comes from how we work—every day, in every decision, as one team. Our values and leadership principles are more than words; they're our operating system. They fuel a culture of execution where trust, transparency, and accountability help us deliver meaningful results for our customers, colleagues, and our company. www.zscaler.com/culture

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Zscaler Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: 3 days a week
HQSan Jose Headquarters
JP
Alpharetta, GA
Amsterdam, NL
Bellevue, WA
Bengaluru, IN
Boston, MA
Burnaby, BC
Frankfurt am Main, DE
Gurugram, Haryana
Hyderabad, Telangana
London, GB
Madrid, Madrid
Melbourne, VIC
Milan, IT
Mohali, Punjab
Mumbai, Maharashtra
München, DE
New York, NY
Paris, FR
Plano, TX
Pune, Maharashtra
Ramat Gan, IL
San Rafael, San Rafael de Escazú
Singapore, SG
Stockholm, SE
Sydney, Sydney
Tokyo, JP
Valencia, ES
Wien, AT
Wrocław, PL
Zürich, CH
Learn more

Similar Jobs

Zscaler Logo Zscaler

Services Sales Specialist

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
Bangalore, Bengaluru, Karnataka, IND
8697 Employees

Zscaler Logo Zscaler

Operations Associate

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
2 Locations
8697 Employees

Zscaler Logo Zscaler

Development Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Hybrid
Bangalore, Bengaluru, Karnataka, IND
8697 Employees

Zscaler Logo Zscaler

Senior LMS Administrator

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Hybrid
2 Locations
8697 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account