Job Details
JPC - 1677 – Zscaler ZPA Network Engineer 
Posted 4 months agoPrimary Skills
Job Description
Client: Commonwealth of Pennsylvania
Role: Zscaler ZPA Network Engineer -- up to Middle level
Location: Harrisburg, PA (Hybrid – 2–3 days onsite per week)
Duration: 12 Months Contract
Visa: UC/GC/H4EAD/GC EAD/H1b
it is available both in C2C & W2
Both c2c/ W2 on $50/hr.
Role Summary:
We are seeking a highly skilled Zscaler Private Access (ZPA) Network Engineer to support the implementation and operations of a Zero Trust Network Access (ZTNA) strategy. This role focuses on designing, deploying, and managing secure access to internal applications using ZPA, replacing legacy VPN-based architectures with scalable, policy-driven access models.
The ideal candidate will have strong networking fundamentals, deep expertise in ZPA/ZIA architecture, and the ability to troubleshoot and resolve issues quickly in a high-impact environment.
Key Responsibilities:
- Design and implement Zscaler Private Access (ZPA) solutions for secure application access
- Configure and manage:
- App Connectors
- Server Groups
- Application Segments
- Access Policies
- Translate legacy VPN and network access models into Zero Trust-based access patterns
- Collaborate with network, security, identity, and application teams
- Validate application onboarding requirements (ports, protocols, dependencies)
- Troubleshoot:
- User access issues
- Application connectivity problems
- Connector health and routing issues
- Support migration from traditional VPN to ZTNA (ZPA)
- Ensure configurations are secure, auditable, and compliant
- Develop technical documentation (runbooks, diagrams, SOPs)
- Work with Zscaler support for advanced issue resolution
Mandatory Skills (Must-Have):
- Strong hands-on experience with Zscaler Private Access (ZPA)
- Solid understanding of Zscaler Internet Access (ZIA) architecture and traffic flow
- Deep knowledge of Zero Trust Network Access (ZTNA) concepts
- Strong networking fundamentals:
- Routing (BGP, OSPF – basic understanding)
- DNS
- Firewalls
- TCP/IP & traffic flow analysis
- Experience with:
- Application segmentation
- Secure remote access solutions
- Proven troubleshooting skills in network/security environments
- Experience migrating from VPN to Zero Trust architectures
- Ability to analyze legacy environments and design scalable solutions
Preferred / Good-to-Have Skills:
- Experience in regulated environments (government, healthcare, finance)
- Knowledge of identity providers (Azure AD, Okta, SAML, MFA)
- Familiarity with cloud platforms (AWS, Azure, GCP)
- Experience with other ZTNA tools (Prisma Access, Netskope, etc.)
- Scripting knowledge (Python, PowerShell)
Soft Skills
- Strong communication and stakeholder management
- Ability to work in cross-functional teams
- Fast problem-solving mindset (quick resolution focus)
- Documentation and reporting skills
Position Characteristics:
- High-impact role supporting enterprise-wide access
- Requires balancing security with usability
- Focus on scalable, reliable, and secure application access
- Direct collaboration with enterprise security and network teams

