Network Engineer (Hybrid)

S R INTERNATIONAL INCHarrisburg, PA
3hHybrid

About The Position

The Commonwealth of Pennsylvania is seeking a Zscaler Private Access (ZPA) Network Engineer to support its Enterprise Zero Trust Network Access (ZTNA) initiative. This hands-on, network-focused role will be responsible for designing, implementing, and supporting secure private application access using Zscaler Private Access, while modernizing legacy VPN-based connectivity into scalable, policy-driven Zero Trust models. The role works closely with enterprise network, security, identity, and application teams to ensure secure, reliable, and auditable access aligned with Commonwealth security and compliance standards.

Requirements

  • Strong background in enterprise networking (routing, firewalling, DNS, traffic flow analysis)
  • Hands-on experience with Zscaler Private Access (ZPA) or similar Zero Trust access platforms
  • In-depth understanding of Zero Trust Network Access (ZTNA) concepts and application-level segmentation
  • Experience working in regulated or compliance-driven environments
  • Ability to analyze complex, legacy network environments and design scalable access models
  • Strong documentation, communication, and collaboration skills
  • Must be able to work 2 days onsite per week in Harrisburg, PA
  • Must accept 37.5 hours per week
  • Local PA candidates only

Nice To Haves

  • Zscaler certifications (Zscaler Digital Transformation Administrator/Engineer)
  • Completion of ZPA administrator or engineer training
  • Industry certifications such as CCNP, Security+, CySA+, or equivalent
  • Experience in public sector or multi-agency enterprise environments
  • Familiarity with CJIS, NIST 800-53, or similar security frameworks
  • Experience supporting large-scale access modernization initiatives

Responsibilities

  • Design, implement, and support Zscaler Private Access (ZPA) connectivity, including App Connectors, Server Groups, Application Segments, and access policies
  • Collaborate with Enterprise ZTNA, network, security, identity, and application teams
  • Analyze legacy network and VPN-based access models and translate them into ZPA application-level access patterns
  • Support application onboarding to ZPA by validating ports, protocols, network paths, and dependencies
  • Configure and enforce least-privileged ZPA access policies with minimal operational disruption
  • Troubleshoot ZPA access, connectivity, routing, and connector health issues
  • Participate in migration activities from legacy access models to ZPA
  • Ensure configurations meet governance, compliance, and audit requirements
  • Develop and maintain technical documentation, diagrams, standards, and runbooks
  • Coordinate with vendors and Zscaler support for issue resolution and optimization
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service