Principal Vulnerability Management Engineer
Zscaler
Principal Vulnerability Management Engineer
Bangalore, IND
Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world's largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we're focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability.
We value high-impact, high-accountability with a sense of urgency where you're enabled to do your best work and embrace your potential. If you're driven by purpose, thrive on solving complex challenges, and want to be part of the team that's helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.
Role
We are looking for a Principal Engineer, Vulnerability & Exposure Management to help modernize how we discover, prioritize, and reduce security exposure across infrastructure, cloud, applications, APIs, endpoints, containers, and internet-facing assets. This is a remote role based in India, reporting to the Senior Manager, Information Security Engineering.
This is an individual contributor role for someone who can operate strategically and technically: define the operating model, build scalable workflows, influence engineering teams, and still go deep into findings, coverage gaps, scanner limitations, and remediation paths. The right candidate will bring a builder mindset. We are not looking for someone who only runs scans, exports reports, and follows up on tickets. We are looking for someone who can improve the system itself.
What You'll Do (Role Expectations)
- Lead comprehensive vulnerability and exposure management initiatives across infrastructure, cloud, APIs, and containers, evolving the function from a traditional reporting role into a high-leverage product security engineering capability.
- Define advanced, risk-based prioritization models that go beyond standard CVSS by integrating threat intelligence and business context, drastically reducing noise and duplicate findings for engineering teams.
- Design and deploy automated data pipelines, scripting, and workflow orchestration to streamline the entire lifecycle of asset discovery, authenticated scanning, triage, routing, and validation.
- Drive external attack surface management (EASM) to map internet-facing assets while aggressively identifying program gaps, including unauthenticated scans, stale asset ownership, and untracked exceptions.
- Collaborate directly with DevOps, IT, and Engineering teams to translate complex vulnerability data into practical technical guidance, durable infrastructure improvements, and leadership-ready performance metrics.
Who You Are (Success Profile)
- You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful.
- You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution.
- You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact.
- You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust.
- You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose.
What We're Looking for (Minimum Qualifications)
- 12+ years of experience in security engineering or product security, including 7+ years of hands-on experience driving and scaling vulnerability and exposure management programs within complex environments.
- Deep understanding of scanner mechanics (including authenticated/unauthenticated scanning, coverage gaps, and asset correlation) paired with proficiency in platforms like Tenable, Qualys, Wiz, CrowdStrike, or Burp Suite.
- Practical experience implementing risk-based frameworks that leverage modern exploitability signals, threat intelligence, KEV, EPSS, and asset criticality to prioritize threats effectively.
- Hands-on automation capabilities using Python, PowerShell, APIs, data pipelines, or workflow orchestration platforms to eliminate manual operational overhead.
- Proven ability to partner collaboratively with engineering teams to drive remediation (without relying on heavy escalation) and translate complex technical data into clear insights for senior leadership.
What Will Make You Stand Out (Preferred Qualifications)
- Extensive experience securing multi-cloud environments (AWS, Azure, GCP) and containerized architecture (Kubernetes), including image scanning, runtime security, and embedding security guardrails into CI/CD and DevSecOps pipelines.
- Proven track record in advanced vulnerability prioritization strategies (EASM, CTEM, and attack-path analysis) paired with the ability to integrate vulnerability data seamlessly into CMDBs, asset inventories, and ownership tracking systems.
- Deep familiarity with orchestration and ticketing platforms (Avalor, Nucleus, Tines, Jira, ServiceNow) to build AI-assisted, self-service triage, remediation, and reporting workflows that drive operational efficiency for engineering teams.
At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
- ...Clearance. 2HB Incorporated is seeking a Principal Systems Engineer in order to support its government... ...and followed. Assists with the management of security aspects of the information... ...classified information. Performs vulnerability/risk assessment analysis to support...PrincipalFull time
- ...Senior Vulnerability Management Engineer Santa Clara, CA Senior Vulnerability Management Engineer --$65/hr--No profiles Here.—3-6 Months Additional Information: Manager Feedback: Qualys is an absolute must have for this role. Ideally 5+ years/expert level Vulnerability...SuggestedLocal area
$80k - $120k
...years of experience in information security, technology risk management or related field. Demonstrated ability configuring and... ...risk mitigation strategies. Experience with vulnerability and configuration compliance scanning tools such as Symantec,...Suggested$147k - $237.5k
Palo Alto Networks, Inc. is seeking a Principal Vulnerability Management Engineer in Santa Clara, CA, to enhance vulnerability management practices. This role requires 3+ years of experience in DevSecOps and vulnerability management. You will coordinate between security...Principal- ...Senior Vulnerability Management Engineer Location: Springfield, MA/Boston MA/New York NY Duration: 6+ months Skills Vulnerability Management Platforms: Deep hands-on experience managing and optimizing enterprise tools (e.g., Qualys, Wiz, Nessus, Rapid7), including...Suggested
- ...Job Title: Senior Vulnerability Management Engineer Location: Onsite-Irvine / Remote Experience: 8-12+ years in Cybersecurity, with strong hands on Vulnerability Management experience Role Overview We are seeking a Senior Vulnerability Management Engineer...Remote work
- 100 Salesforce, Inc. is looking for a Senior Software Engineer specializing in Vulnerability Management. The role involves building and maintaining systems to detect and remediate security vulnerabilities and working closely with various teams to automate and scale processes...
$136.85k - $185.15k
...and is looking for an experienced Radar Seeker System Engineer, Senior, Lead or Principal, to support these efforts at the Boeing Jetplex facility... ...algorithm performance with a focus on survivability, vulnerability, and susceptibility to identify necessary modifications...PrincipalPermanent employmentWork experience placementRelocationVisa sponsorshipWork visaRelocation packageMonday to ThursdayFlexible hoursShift workDay shift- A cybersecurity company in Montvale, New Jersey, is seeking a skilled individual with expertise in Vulnerability Management and Application Security. The ideal candidate will have between 5 to 7 years of experience and be familiar with various commercial application scanning...
- ...operate. By joining our team, you'll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams...Work experience placementWork at officeRemote work
$112k - $140k
...Alkami Technology, Inc. is seeking a Senior Security Engineer specializing in Vulnerability Management. The role involves owning and advancing the enterprise vulnerability management program to safeguard Alkami and its customers through proactive risk reduction. This position...Remote work- Nightwing Intelligence Solutions, LLC in Kentucky seeks a qualified engineer to engage in vulnerability research and reverse engineering. Candidates will work closely within a diverse team tackling complex technical challenges. The position requires a strong background...Flexible hours
- ...organization in Washington, D.C. is seeking a remote Lead Sr. Vulnerability Engineer - Tenable for an exciting opportunity in the Federal... ...maintaining, and optimizing enterprise vulnerability and exposure management platforms using Tenable One, Nessus, and Tenable WAS...Remote work
- ...and the planet. The Role: Celonis, a leader in Process Mining technology, is looking for an experienced Senior Vulnerability Management Engineer to join our elite Security Engineering Team. This crucial role involves protecting Celonis' cloud-native and on-...Full timeWork at officeLocal areaImmediate startRemote workWorldwideFlexible hours
$240k - $330k
...opportunity to work with world-class ML engineers, whose mission is to make self-driving... ...behavior of other agents such as vehicles and vulnerable road users. We are looking for proven... ...complex traffic scenarios * Lead, manage and grow a team of engineers * Design...Principal- 慨正橡扯 is seeking a qualified engineer for its CODEX division, focusing on vulnerability research and reverse engineering. The role requires expertise such as TS/SCI clearance, advanced knowledge in relevant areas, and proficiency in C/C++/Python. Benefits include competitive...Flexible hours
$10k
...Columbia Technology Partners is hiring a Principal Systems Engineer to lead the engineering and... ..., security hardening, and lifecycle management. Coordinate with engineering, operations... ..., security risk management, vulnerability assessments, and mobile security implementation...PrincipalTemporary workFor contractorsLocal area- Vanguard is seeking a Senior Vulnerability Management Analyst in Dallas, Texas, to manage vulnerabilities across its hybrid infrastructure. This vital role requires a cybersecurity professional with strong analytical capabilities, a passion for problem-solving, and experience...
- Vanguard is seeking a Senior Vulnerability Management Analyst to support its attack surface management initiatives. In this role, you will manage vulnerabilities across a hybrid infrastructure and ensure security standards are met. Strong analytical and communication skills...
$184k - $230k
...Principal Engineer, Identity and Access Management At Early Warning, we've powered and protected the U.S. financial system for over thirty years with... ...security patches and technology upgrades in support of vulnerability management, emerging threats and lifecycle...PrincipalHourly payFor contractorsWork experience placementWork at officeImmediate startVisa sponsorshipWork visaFlexible hours- ...Senior Technical Consultant (Principal Network Systems Engineer) Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean... ...engineering, and workstation and server vulnerability remediation and patch management. Helps prepare...PrincipalWork at officeLocal areaImmediate start3 days per week
$161k - $189k
...Care to join us? Overview As a leading player in Process Mining technology, Celonis is seeking an experienced Senior Vulnerability Management Engineer to be an integral part of our world‑class Security Engineering Team. This role is pivotal in safeguarding Celonis’ cloud...Full timeWork experience placementWorldwide- ...Keeper Security is seeking a Senior Vulnerability Engineer to design and manage vulnerability management capabilities across cloud and application environments. This remote position allows for a hybrid schedule in certain locations such as El Dorado Hills, CA or Chicago...Remote work
$154.05k - $278.48k
...new and exciting opportunity for a Principal Network Systems Engineer in our Intelligence Sector's... ...(SIGINT), and Cryptographic Key Management. At Leidos , we offer competitive... ...provide assessments of impact and vulnerabilities to enable access opportunities....PrincipalLocal areaImmediate startFlexible hours$220k - $303k
...A leading micromobility company is looking for an experienced Principal Systems Engineer to design and build core technology for connected vehicles. This remote role requires 10+ years of experience in software/hardware development. You will lead teams, solve crucial...PrincipalRemote work- A leading geotechnical engineering firm in Portland, Oregon, seeks an Associate to Principal-level Pavement Engineer. This role involves providing technical leadership... ...overseeing pavement engineering projects, and managing client relationships. Candidates should possess...Principal
$139.9k - $274.8k
...Microsoft Red Team Intelligence team is looking for a Principal Software Engineering Manager for our intelligence analytics team. The CISO Org... ...demonstrating risk to proactively identify and mitigate vulnerabilities. The Microsoft Red Team Intelligence Team is a...PrincipalOngoing contractLocal area- Prattwhitney is seeking a Senior Principal Structural Engineer in Tucson, AZ to perform detailed structural analyses and generate test plans. The candidate will work on complex problems and lead technical peer reviews. Qualifications include a degree in STEM and extensive...PrincipalFlexible hours
$132.4k - $251.6k
Raytheon is seeking a technical leader in Tucson, AZ to develop and deliver on complex hardware solutions for military defense systems. The position requires a STEM background and significant experience in technical leadership across the product lifecycle, focusing on missile...PrincipalFlexible hours- A leading engineering firm in Dallas, TX, is seeking an Associate Mechanical Principal to lead complex projects and represent the Engineering team. The ideal candidate... ...experience, with strong leadership and project management skills. Responsibilities include business...Principal
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Vulnerability Management Engineer. Be the first to apply!
- chief marine engineer United States
- principal devops engineer United States
- principal reliability engineer United States
- chief design engineer United States
- principal infrastructure engineer United States
- civil engineer project manager United States
- principal controls engineer United States
- chief building engineer United States
- principal security engineer United States
- principal data engineer United States

