Jump to content

Zscaler Consultant - Cincinnati, OH | TCS Job


 Share

Job Opportunity Details

Type

Full Time

Salary

Not Telling

Work from home

No

Weekly Working Hours

Not Telling

Positions

Not Telling

Working Location

Cincinnati, OH, Cincinnati, OH, United States   [ View map ]
Must Have Technical/Functional Skills
• Hands-on experience administering Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) in large global environments.
• Experience supporting secure internet access, private application access, branch and cloud connectivity, endpoint connectivity, and digital experience monitoring.
• Experience operating Zscaler services across separated FedRAMP Moderate, Commercial, and China environments while observing regulatory and data-residency boundaries.
• Strong knowledge of ZIA URL filtering, SSL inspection, Cloud Firewall, IPS, Cloud Sandbox, DLP, inline CASB, bandwidth controls, PAC files, and Client Connector enrollment.
• Strong knowledge of ZPA application segments, segment groups, access policies, App Connectors, Connector Groups, Private Service Edge, Client Connector policies, timeout and reauthentication policies, Browser Access, and privileged-access use cases.
• Experience onboarding applications and SaaS services, validating prerequisites, coordinating identity integration, and implementing least-privilege and application-segmentation controls.
• Experience with access exceptions, policy updates, allowlist and blocklist expansion, RBAC, segregation of duties, and export-controlled access boundaries.
• Experience building and managing GRE tunnels, branch connectivity, cloud connectors, and centralized internet-egress configurations.
• Experience monitoring ZIA/ZPA availability and health, Connector and Service Edge alerts, certificate expiry, Client Connector, PAC, DNS, authentication, and application-connectivity issues.
• Experience integrating Nanolog Streaming Service (NSS) and Log Streaming Service (LSS) with SIEM platforms and supporting ServiceNow incident, request, problem, and change workflows.
• Working knowledge of SAML, SCIM, identity providers, MFA, DNS, HTTP/HTTPS, TLS certificates, networking, routing, proxy technologies, and Zero Trust principles.
• Zscaler certifications such as ZCCA-IA, ZCCA-PA, ZCCP-IA, or ZCCP-PA are preferred.

Roles & Responsibilities
• Provide end-to-end operational management of the global Zero Trust secure-connectivity platform supporting internet access, private applications, branch and cloud connectivity, endpoint connectivity, and digital experience monitoring.
• Administer ZIA and ZPA services across approved FedRAMP Moderate, Commercial, and China environments while maintaining required compliance and data-residency separation.
• Onboard and offboard private applications and SaaS services, including prerequisite validation, identity coordination, App Connector readiness, application segmentation, access-policy configuration, testing, documentation, and handover.
• Configure and maintain ZIA controls including URL filtering, SSL inspection, Cloud Firewall, IPS, Sandbox, DLP, CASB, bandwidth policies, PAC files, and Client Connector settings.
• Configure and maintain ZPA application segments, Connector Groups, access policies, Private Service Edge, Client Connector policies, timeout and reauthentication controls, and Browser Access where applicable.
• Process approved access exceptions, policy changes, allowlist/blocklist requests, application-access changes, and firewall or network dependencies through formal change controls.
• Monitor platform availability, health, connectors, service edges, certificates, logs, endpoint connectivity, application access, and digital-experience indicators; log and triage incidents in ITSM.
• Provide L2/L3 troubleshooting for ZIA, ZPA, Client Connector, PAC, SSL inspection, authentication, DNS, routing, tunnel, connector, policy, and application-access issues.
• Build, validate, monitor, and maintain GRE tunnels and related branch or centralized-egress connectivity as assigned.
• Integrate and support NSS/LSS log streaming to SIEM platforms, validate logging coverage, and coordinate alert or telemetry issues with SOC teams.
• Apply RBAC, least privilege, segregation of duties, export-control restrictions, and compliance-boundary controls to platform administration and access policies.
• Maintain SOPs, knowledge articles, configuration records, application inventories, policy evidence, ticket updates, health reports, and audit-support documentation.
• Coordinate incidents, changes, problem investigations, maintenance, upgrades, vendor cases, and service restoration with identity, endpoint, network, cloud, application, SOC, and Zscaler support teams.
• Provide scheduled-work and on-call support according to the approved coverage model, including planned maintenance and critical incident escalation.

Generic Managerial Skills, If any
Strong communication, stakeholder coordination, technical documentation, incident ownership, disciplined change execution, and ability to work with global identity, endpoint, network, cloud, application, SOC, compliance, and vendor teams.

Salary Range: $110,000 - $130,000 per year

TCS Employee Benefits Summary:
Discretionary Annual Incentive.
Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
Family Support: Maternal & Parental Leaves.
Insurance Options: Auto & Home Insurance, Identity Theft Protection.
Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
Time Off: Vacation, Time Off, Sick Leave & Holidays.
Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.

More Information

Application Details

  • Organization Details
    TCS / Tata Consultancy Services
 Share


User Feedback

Recommended Comments

There are no comments to display.

Join the conversation

You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Add a comment...

×  Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×  Your link has been automatically embedded.   Display as a link instead

×  Your previous content has been restored.   Clear editor

×  You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...