Information Security Engineer (Data Security)
Quick Summary
About Zscaler Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise ,
About Zscaler
Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability.
We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.
We are looking for an Information Security Engineer (Data Security) to join our team. This is a Hybrid role (onsite three days a week in San Jose, CA or another Zscaler office; remote can be considered for exceptional candidates), reporting to the Director, Information Security Compliance in the Information Security Compliance department.
The Information Security Engineer (Data Security) will be the technical owner of Zscaler's shift-left data security program, responsible for building and maintaining continuous visibility into how sensitive data moves across products, services, and third parties. You will anchor data classification governance, DSPM operations, and audit control evidence; serving as the connective tissue between Product Security, Engineering, Privacy, and Compliance. As AI workloads expand, you will become the critical data risk layer ensuring PII and sensitive data is governed across AI systems, fine-tuning workstreams, and third-party egress.
Responsibilities
~1 min read- →Own and evolve the end-to-end data security program architecture — including administration, configuration, and ongoing maintenance of data flow mapping and code-level scanning tools (e.g., Relyance.ai, BigID, Securiti.ai, OneTrust, or equivalent), data element mapping, and source code scanning pipelines and delivering continuous sensitive data visibility across Zscaler's product and service landscape
- →Build and maintain the authoritative PII and sensitive data inventory covering service data flows and third-party egress; define and enforce data classification standards that engineering teams adopt during design and development, partnering with Privacy and Legal on regulatory alignment
- →Lead POCs and technical evaluations for emerging data security capabilities — including DSPM controls, AI data governance tooling and privacy-enhancing technologies — translating findings into actionable build-vs-buy recommendations for leadership
- →Drive shift-left adoption across product engineering teams by embedding data security reviews into the SDLC, running enablement sessions, and serving as the subject matter expert for teams building features that handle sensitive or regulated data including AI and LLM workloads processing PII
- →Own data security control evidence for SOC 2, FedRAMP, and ISO audit cycles; maintain data flow documentation and third-party data sharing records that satisfy auditor requirements and support enterprise customer security reviews
- You thrive in ambiguity and feel comfortable building the path as you walk it, viewing a dynamic environment as an opportunity to create meaningful impact.
- You act like an owner with a strong bias for action and a deep care for outcomes, seamlessly navigating between high-level strategy and hands-on execution.
- You are a natural problem-solver who is energized by tackling complex challenges and finding solutions that deliver the highest level of impact.
- You are a dedicated learner with a true growth mindset, actively seeking feedback to continuously develop yourself and become a stronger teammate.
- You are resilient and adaptable, remaining composed under pressure and viewing organizational changes or setbacks as temporary opportunities to guide the team forward.
Requirements
~3 min read- Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
- Demonstrated curiosity and active exploration of tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving
- 5+ years in data security, privacy engineering, or a closely related discipline with hands-on experience owning a data security or data governance program, not just contributing to one
- Production experience administering and operating data flow mapping or data discovery tooling (e.g., Relyance.ai, BigID, Securiti.ai, OneTrust, Varonis, or equivalent) — including configuration, data element mapping, and ongoing platform maintenance
- Strong working knowledge of data classification frameworks, PII taxonomy, and sensitive data handling requirements across at least one major regulatory regime (GDPR, CCPA, HIPAA, or equivalent)
- Demonstrated ability to drive cross-functional adoption — experience partnering with engineering teams to embed data security practices into the SDLC, including running enablement sessions or defining data handling standards that developers actually follow
- Hands-on experience governing data flows in AI and LLM workloads — including PII exposure risk in RAG pipelines, training data classification, or sensitive data controls for fine-tuning workstreams — with the ability to define a data governance model for agentic and AI-driven product features
- Experience operating a DSPM program end-to-end — including policy design, tuning, incident triage, and metrics reporting — across cloud-native or SaaS environments at scale
#LI-KM9 #LI-Hybrid
Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.
The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.
At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
Learn more about Zscaler's hybrid working model and benefits here.
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
Location & Eligibility
Listing Details
- Posted
- July 2, 2026
- First seen
- July 2, 2026
- Last seen
- July 2, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 87%
- Scored at
- July 2, 2026
Signal breakdown
Please let Zscaler know you found this job on Jobera.
3 other jobs at Zscaler
View all →Explore open roles at Zscaler.
Similar Information Security Engineer jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.
