About Zscaler

Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. 

Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler. 

You will join our Zscaler Data Security Posture Management (DSPM) team, as a Senior Cloud threat researcher, you will be part of the wider cloud threat research team predominantly focused on cloud threat detection research. Your daily responsibility would be to research cloud services across AWS, Azure, GCP and OCI to understand the security risks associated with each of these services. You will be reporting to Principal Product Manager, to the Product Management team at Bangalore Location.

You will be responsible for:

  • Research how multiple cloud services might be adopted and potential exploitation tactics that can be used by threat actors, establish a threat model for each of these services.
  • You will build detection use cases, document each use case define data sources such as CSP metadata properties or event patterns.
  • Build a CTI backend which covers intelligence collection, enrichment tagging and dispersion of data across ip, domains, file hashes etc.
  • As a senior member of the team, you are expected to be an SME and help the engineering teams create the correct data collection & detection content. You are also expected to ensure QA of the detection content and ensure low false positives.

What We're Looking for (Minimum Qualifications)

  • Experience with GCP, AWS and Azure with grasp of at least GCP and AWS preferred.
  • Experience with Cloud IAM, Networking, Databases, Data lakes and general cloud architecture – Relevant CSP certifications.
  • Experience with MITRE ATT&CK Enterprise Matrix and how it applies to cloud environments, understanding data sources and TTP's for detections.
  • Experience with cyber risk, risk prioritization methodologies and security frameworks.
  • Security Operations experience in Threat Hunting, Intelligence gathering, red teaming.
  • Working with security data lakes like SIEM's, Bigdata platforms like Snowflake or Databricks.
  • Previous knowledge of Cloud Security Posture Management (CSPM), Kubernetes Security Posture Management (KSPM), DevSecOps and Infrastructure as Code (IaC)
  • Programming skills in Python, Go, Snowflake, SQL, Logica, API's, JSON, YAML

What Will Make You Stand Out (Preferred Qualifications)

  • 3+ years of experience with vulnerability research, application security research such as OWASP Top 10
  • Previous experience in writing security publications, blogs analysis of attack campaigns
  • General DevOps & Agile skillset – Git, JIRA, CI/CD etc

At Zscaler, we believe that diversity drives innovation, productivity, and success. We are looking for individuals from all backgrounds and identities to join our team and contribute to our mission to make doing business seamless and secure. We are guided by these principles as we create a representative and impactful team, and a culture where everyone belongs. For more information on our commitments to DEIB, visit the Corporate Responsibility page of our website. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Multiple health plans
  • A flexible time off policy
  • Hybrid Working Model
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

#LI-Hybrid

#LI-RG

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is proud to be an equal opportunity and affirmative action employer. We celebrate diversity and are committed to creating an inclusive environment for all of our employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status or any other characteristics protected by federal, state, or local laws.

See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules. For additional information about the federal requirements, click here.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Apply for this Job

* Required
resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)
When autocomplete results are available use up and down arrows to review
+ Add another education


Voluntary Self Identification

At Zscaler, we value diversity, equity, inclusion and belonging. We invite you to voluntarily respond to the question(s) below to help us measure the effectiveness of our outreach and recruitment. Responding is entirely voluntary and will not impact your application process. All responses will be kept confidential and handled in accordance with applicable privacy laws. Thank you for helping us create a more inclusive workplace.

Sex (Select one) *




Enter the verification code sent to to confirm you are not a robot, then submit your application.

This application was flagged as potential bot traffic. To resubmit your application, turn off any VPNs, clear the browser's cache and cookies, or try another browser. If you still can't submit it, contact our support team through the help center.