Principal SASE Engineer
$142,000–$175,000 year
On-siteJohnston, Rhode Island, United States
Job Summary
Lead the design, deployment, and optimization of Netskope-based SASE services including Secure Web Gateway, CASB, ZTNA, and DLP. Serve as the primary technical owner for the enterprise Netskope platform, providing Tier III support for complex incidents and leading Zero Trust access initiatives. Engineer scalable solutions for hybrid workforces, develop security policies and access controls, and collaborate with Infrastructure, Cybersecurity, and Network teams to ensure secure integration. Mentor engineers, establish technical standards and documentation, and evaluate emerging technologies to drive continuous improvement. Participate in strategic planning, architecture reviews, and vendor evaluations.
Required Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering, or equivalent experience
- 8+ years of experience in Network Engineering, Security Engineering, Infrastructure Engineering, or related disciplines
- 5+ years of hands-on experience with SASE, SSE, Zero Trust, or cloud-delivered security platforms
- Extensive hands-on experience administering and engineering Netskope solutions within a large enterprise environment
- Strong understanding of: Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), Zero Trust Network Access (ZTNA), Data Loss Prevention (DLP), Secure Service Edge (SSE)
- Strong understanding of: Network Security and TCP/IP
- Strong understanding of: DNS, Routing, Proxy Technologies, and TLS Inspection
- Experience integrating identity providers such as Microsoft Entra ID, Okta, Ping Identity, or equivalent platforms
- Strong analytical, troubleshooting, and problem-solving skills
- Excellent communication skills with the ability to influence technical and non-technical stakeholders
- 4 Days in the office from any of our locations in Johnston RI, Dallas TX, Nashville TN, Iselin NJ, Westwood or Medford MA, or Phoenix AZ and couple other locations
- Role is not relocation eligible
Desired Qualifications
- Experience with Zscaler and Out-of-Band (OOB) Management solutions
- Experience with Netskope Private Access (NPA), Publisher, Borderless SD-WAN, and advanced policy management
- Experience with Zscaler Internet Access (ZIA) and/or Zscaler Private Access (ZPA)
- Experience supporting large-scale endpoint deployments and enterprise remote access transformations
- Experience with AWS, Azure, or multi-cloud networking and security architectures
- Experience with automation and scripting using PowerShell, Python, REST APIs, or Infrastructure as Code methodologies
- Experience with Splunk, SIEM platforms, and security monitoring technologies
- Experience designing, deploying, or supporting Out-of-Band Management solutions
- Familiarity with Opengear, Lantronix or ZPE, console servers, LTE failover technologies, and remote infrastructure recovery capabilities
- Experience supporting datacenter modernization, resiliency, and disaster recovery initiatives
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.