Skip to content

Open nowPosted 18 hours agoWe saw it 19 min after it went up

Principal Threat Researcher

Zscaler374 open roles

Pay
$171,500 – $245,000 a year
Where
Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowPrincipal Threat ResearcherZscaler · Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Zscaler's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market. Zscaler postings stay open a median of 31 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.3%3 days
  3. 7.7%7 days
  4. 14.0%14 days
  5. 33.7%30 days
This job: posted 18 hours ago

Zscaler median: 31 days open

The posting

Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.

We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.

Role

We are looking for a Principal Threat Researcher to join our team. This is a remote role, reporting to the Manager Threat Research in the Threat Research Team. As our Principal Threat Researcher, you will serve as the definitive subject matter expert on adversary behavior across Endpoint and Cloud environments. You will dissect, replicate, and outmaneuver sophisticated cyber attack techniques to understand exactly how they operate and how to defeat them. By translating complex threat research into concrete, scalable detection recommendations, you will act as the innovation driver for our defensive capabilities. In this pivotal role, your insights won't just live in a whitepaper—they will directly prioritize our engineering efforts, shape product strategy, influence vendor telemetry, and ensure robust, industry-leading protection for our entire customer base.

What you’ll do (Role Expectations)

  • Scope and continuously refine research initiatives, applying an adversarial mindset to analyze emerging attack techniques, customer impact, and detection data sources across at least one operating system (Windows, macOS, Linux) and major Cloud/SaaS providers like AWS, Microsoft 365, and Okta
  • Dive deep into the technical components and detection optics underlying specific threats to fully comprehend how adversaries control and manipulate variations of a given technique
  • Leverage your endpoint and cloud expertise to engineer automated attack code, write test code to validate threat coverage, and develop proofs of concept for new detections.
  • Collaborate across Zscaler to develop new detection methodologies and engineering recommendations, working closely with detection engineers, intelligence analysts, and threat hunters to prioritize and refine deliverables
  • Document and present your research findings and operational deliverables in an accessible, actionable manner to internal and external audiences, while serving as a technical mentor for more junior team members and colleagues pursuing research

Who You Are (Success Profile)

  • You thrive in ambiguity, comfortably building the path forward in dynamic environments and leveraging uncertainty as raw material to create meaningful security solutions.
  • You act like an owner, bringing passion for the mission and seamlessly navigating between high-level threat strategy and hands-on technical execution.
  • You are an energized problem-solver who actively seeks out complex security challenges, knowing that tackling tough technical problems yields the greatest impact.
  • You are a high-trust collaborator who thrives in a challenge culture, using transparent feedback and clarity to elevate team performance and build mutual trust.
  • You are a continuous learner with a growth mindset who actively seeks feedback, develops new expertise, and approaches work with genuine purpose.

What We’re Looking for (Minimum Qualifications)

  • Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain
  • 12+ years of experience conducting security research with actionable outcomes
  • Extensive security expertise in at least one operating system alongside experience working with commercial Endpoint Detection & Response (EDR) platforms
  • Security experience in at least one cloud service provider (e.g., AWS, GCP, Azure), Cloud architectures, and Cloud-based detection platforms
  • Software development experience in at least one scripting language (e.g., PowerShell, Python) and one compiled/assembled language (e.g., C, C++, Rust, Go)
  • Experience managing code with version control systems like git/GitHub

What Will Make You Stand Out (Preferred Qualifications)

  • Proven ability to leverage AI technologies and workflows to drive measurable operational efficiency
  • An established record of public community engagement, such as conference talks, technical blog posts, or webinars
  • Prior experience developing relationships with security vendors to drive product enhancements or building attack technique automation frameworks

#LI-KM9 #LI-Remote

Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.

Base Pay Range

$171,500—$245,000 USD

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

  • Various health plans
  • Time off plans for vacation and sick time
  • Parental leave options
  • Retirement options
  • Education reimbursement
  • In-office perks, and more!

Learn more about Zscaler's hybrid working model and benefits here.

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Zscaler's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Zscaler's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Zscaler's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.