内部风险安全工程师
Insider Risk Security Engineer
Zscaler(NASDAQ: ZS)加速数字化转型,使客户能够更加敏捷、高效、有韧性且安全。Zscaler Zero Trust Exchange™ 平台通过在任何位置安全连接用户、设备和应用程序,保护数千家客户免受网络攻击和数据丢失。该基于 SASE 的 Zero Trust Exchange 分布在全球 160 多个公共交换点以及边缘的数千个私有交换点,是全球最大的在线云安全平台。
我们相信未来的工作是“人类 + AI”,正在构建一个以 AI 为核心的企业,通过机器智能放大人类潜力,解决世界上最困难的安全挑战。我们以深入的客户需求为导向,致力于使命、成果以及彼此之间。我们通过三种核心行为将这些承诺付诸实践:以结果和影响建立信任,拥有并协作,以及具有持续反馈的挑战文化。准备好在引领 AI 时代安全变革的公司中产生影响吗?加入我们,成为 Zscaler 的一员。
职位
我们正在寻找一名内部风险安全工程师加入我们的团队。这是一个远程(美国)职位,向企业安全部高级架构师汇报。作为企业安全部内部风险项目中的高级贡献者,你将从内部风险团队主管处获得运营指导,同时以高度的责任感精炼操作手册,领导检测工程,指导初级分析师,并代表团队与人力资源、法律及高管利益相关者进行沟通。
你将负责什么(职位期望)
- 通过优化规则来提升内部风险项目的检测能力,减少误报,填补覆盖空白,并在适当时间内呈现高精度警报
- 使用 EDR/XDR、UEBA 和 SIEM 工具执行终端和用户活动调查,全程管理案件并创建事实时间线
- 推动内部风险调查操作手册的开发和迭代,将案件模式和经验教训转化为可扩展、可辩护的流程
- 作为人力资源、法律、业务负责人和其他利益相关者在调查中的关键联系人,准备清晰的证据案例文档
你是什么样的人(成功画像)
- 你在模糊环境中表现出色,能够在动态环境中构建前进路径,将复杂性视为提供有意义解决方案的机会。
- 你以主人翁精神行事,对解决问题充满热情。
查看英文原文
Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.
We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.
Role
We are looking for an Insider Risk Security Engineer to join our team. This is a Remote (United States) role, reporting to the Senior Architect in the Enterprise Security Dept department. Serving as a senior contributor on the Insider Risk program within Enterprise Security, you will take operational direction from the Insider Risk Team Lead while operating with high ownership to refine playbooks, lead detection engineering, mentor junior analysts, and represent the team with HR, Legal, and executive stakeholders.
What you’ll do (Role Expectations)
- Sharpen the Insider Risk Program’s detection capabilities by refining rules to reduce noise, close coverage gaps, and surface high-fidelity alerts in adequate time
- Perform endpoint and user activity investigations using EDR/XDR, UEBA, and SIEM tools, managing cases end-to-end to create factual timelines
- Drive the development and iteration of insider Risk investigation playbooks, translating case patterns and lessons learned into scalable, defensible processes
- Serve as a key contact for HR, Legal, business leaders and other stakeholders on active investigations, preparing clear evidentiary case documentation
Who You Are (Success Profile)
- You thrive in ambiguity and are comfortable building the path forward in dynamic environments, treating complexity as an opportunity to deliver meaningful solutions.
- You act like an owner with a passion for the mission, navigating seamlessly between strategic thinking and hands-on execution while operating with uncompromised integrity.
- You are a positive force who approaches complex challenges with constructive energy, inspiring teammates to stay focused on shared solutions.
- You operate with urgency, balancing speed and quality to execute relentlessly and achieve high-impact outcomes.
- You are resilient and adaptable, maintaining composure in high-pressure situations and guiding the team through change with a steady, positive approach.
What We’re Looking for (Minimum Qualifications)
- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
- U.S. Citizenship required
- Minimum 6+ years of experience in insider risk, data protection, fraud investigation, or security operations, with a proven track record in senior investigative roles, process ownership, and the design of detection frameworks and playbooks
- Experience managing and dispositioning alerts within a SIEM or SOAR
- Strong communication skills with proven ability to engage cross-functionally with HR, Legal, business leaders, and other stakeholders while maintaining discretion and sound judgment
- Proficiency in Python or JavaScript with experience applying automation to investigative workflows
What Will Make You Stand Out (Preferred Qualifications)
- Hands-on experience with Zscaler's product portfolio (CyberRisk Protection, Data Protection, Zero Trust Networking) in a large-scale enterprise environment
- Experience working with product development teams to implement security use cases
- Relevant certifications (e.g., GCFA, GCFE) or equivalent forensics credentials; familiarity with industry frameworks (CERT, NIST, NSA)
#AJ-1 #LI-Remote
Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.
The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.
Base Pay Range
$134,000—$167,500 USD
At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
Learn more about Zscaler's hybrid working model and benefits here.
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.