← Signal

Zscaler

Staff Information Security Engineer - Thick Client Application , VAPT

Bangalore, India Posted 2026-04-13
Apply on company site → View on Signal →
About this role
About Zscaler Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise , we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate —we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession , collaboration, ownership, and accountability. We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity. Role We are looking for a Staff Information Security Engineer to join our Cyber and Data Security team. This is a Bangalore based role, reporting to the Director, Information Security Engineering. You will lead pentesting efforts across our applications and infrastructure while conducting deep security architecture reviews. By prioritizing vulnerabilities and driving security automation, you will serve as a critical partner to our engineering and operations teams in safeguarding our global ecosystem. What you’ll do (Role Expectations) • Perform advanced pen-testing on applications and infrastructure to identify and mitigate risks • Conduct security architecture reviews and provide strategic recommendations for complex systems • Partner with engineering and operations teams to prioritise vulnerabilities for remediation • Design and implement security automation to streamline repetitive tasks and improve efficiency • Lead security assessments across web applications, thick clients, and APIs Who You Are (Success Profile) • You thrive in ambiguity. You're comfortable building the path as you walk it. You thrive in a dynamic environment, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful. • You act like an owner. Your passion for the mission fuels your bias for action. You operate with integrity because you genuinely care about the outcome. True ownership involves leveraging dynamic range: the ability to navigate seamlessly between high-level strategy and hands-on execution. • You are a problem-solver. You love running towards the challenges because you are laser-focused on finding the solution, knowing that solving the hard problems delivers the biggest impact. • You are a high-trust collaborator. You are ambitious for the team, not just yourself. You embrace our challenge culture by giving and receiving ongoing feedback—knowing that candor delivered with clarity and respect is the truest form of teamwork and the fastest way to earn trust. • You are a learner. You have a true growth mindset and are obsessed with your own development, actively seeking feedback to become a better partner and a stronger teammate. You love what you do and you do it with purpose. What We’re Looking for (Minimum Qualifications) • 5+ years of experience in manual security assessments using industry-leading tools for web applications, thick clients, and APIs • Expertise in thick client penetration testing across Windows, Mac, Linux, Android, and iOS platforms • Proven experience conducting security architecture reviews in network security and complex application environments • Strong fundamental knowledge of security concepts, cryptography, Unix architecture, and networking • Ability to read and debug programming languages such as C/C++, Java, or Javascript to identify security weaknesses What Will Make You Stand Out (Preferred Qualifications) • Proven ability to validate findings and perform thorough root cause analysis • Advanced scripting knowledge used to automate repetitive security tasks and research • Experience or interest in emerging security research areas including Container, AI/ML, or Cloud security #LI-Hybrid #LI-PM5 At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we…
Tech stack
JavaC++
About Zscaler

Zscaler is hiring for the staff information security engineer - thick client application , vapt role. Signal aggregates active openings directly from Zscaler's applicant tracking system, so this listing is current.