Principal Software Development Engineer (Java/API/Infrastructure Security)
About Zscaler
Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler.
Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy.
We are looking for an experienced Principal Software Engineer to join our Product Security Team. Reporting to the Director, Software Engineering, you’ll be responsible for:
- Designing and implementing an enterprise-wide secrets and key management strategy
- Integrating systems like CI/CD, cloud, Kubernetes, databases, and secrets engines
- Implementing secure, scalable integrations with HashiCorp Vault for seamless platform connectivity and automation
- Establishing and enforcing security best practices for secrets management, ensuring compliance with industry standards, and driving IaC adoption for consistent and repeatable deployments
What We’re Looking for (Minimum Qualifications)
- 10+ years in engineering/security or Infrastructure roles, with 3+ years in secrets, key, certificate management, PKI, and encryption
- Proficiency in at least one programming language (e.g., Java, Python, Go)
- Experience with identity and access management systems, authentication protocols (OIDC, SAML, etc.), and API security best practices
- Demonstrated experience with cloud computing platforms (AWS, Azure, GCP) and containerization technologies (Docker, Kubernetes)
- Experience in API design standards and best practices (OpenAPI, REST, etc) for integrating secret management systems
What Will Make You Stand Out (Preferred Qualifications)
- Proficiency in public cloud security models (e.g., AWS KMS, Azure Key Vault, Google Cloud KMS), infrastructure-as-code tools (e.g., Terraform, CloudFormation, Ansible), and security automation workflows
- Experience implementing HashiCorp Vault or similar secrets management platforms at enterprise scale
- Expertise in cloud-native security, particularly around secrets management in Kubernetes environments
#LI-Onsite
#LI-SK3
At Zscaler, we believe in innovation, productivity, and success. We are looking for individuals from all backgrounds and identities to join our team and contribute to our mission to make doing business seamless and secure. We are guided by these principles as we create a representative and impactful team, and a culture where everyone belongs.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws.
See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules. For additional information about the federal requirements, click here.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
Apply for this job
*
indicates a required field