Security Review and Approval Zia

Ework GroupWarsawnofluffjobspublished 09/21/2026
Must-have:CloudSecurity

For our Client we are looking for Security Review and Approval ZIA 🔹

The person in this role will review and assess requests relating to Zscaler Internet Access (ZIA), which provides security controls for internet and cloud-service access. The proposed access should have a valid business justification, follow least-privilege principles and meet the organization’s security requirements. The person will approve requests within delegated authority, reject requests that present unacceptable risk and escalate exceptions requests conflicting security mandate.

Daily tasks

  • ✔️ ZIA Security Review and Approval
  • Review requests affecting URL filtering, cloud application controls, cloud firewall rules, data loss prevention (DLP) and threat-protection policies, where these capabilities are deployed. Assess the requested destinations, affected users, permitted activities and potential exposure of organizational data.
  • Evaluate website allowlisting and internet-access exceptions against documented business needs, destination reputation, data sensitivity and existing security policies. Require requests to identify the relevant domains, URLs, destination addresses, ports and protocols, as applicable, rather than accepting unnecessarily broad access.
  • ✔️ Risk Assessment and Governance
  • Assess each request for unauthorized access, data exposure, weakening of security controls and potential service disruption. Record the decision as approved, approved with conditions, rejected or escalated with a clear explanation and any required safeguards.
  • Ensure approved requests include a defined implementation scope, testing evidence(logs), rollback procedure and authorization and ownership. High-risk exceptions must be referred to the designated security authority and business risk owner
  • ✔️ Monitoring, Evidence and Periodic Review
  • Use relevant policy, activity and administrator audit records to verify that implemented changes match their approvals and to support investigations. ZIA records administrator and API actions.
  • Maintain an approval and exception register containing the request reference, business justification, affected resources, risk assessment, approver, conditions and review or expiry date. Coordinate periodic reviews to identify unused access, expired exceptions and policies that no longer meet business needs. Work with Zscaler operations, identity and access management, application owners and the security operations team to resolve issues.

Requirements

✔️ Required Skills and Experience: Zscaler knowledge: Hands-on experience reviewing or administering ZIA policies, application access and security exceptions.   Technical knowledge: Understanding of networking, DNS, HTTP/HTTPS, TLS, proxy and firewall controls, identity-provider integration, single sign-on, multifactor authentication and device posture.   Security assessment: Ability to evaluate least-privilege access, data-protection requirements, policy conflicts and compensating controls.   Governance and communication: Experience with change management, approval records, audit evidence and clear communication of security decisions to technical and business stakeholders.   A relevant degree or equivalent practical experience is desirable. Zscaler training or certification, security certification and experience with enterprise service-management tools are preferred.

Must have: DNS, HTTP, TLS, Proxy, Zscaler, Firewall, Zscaler Internet Access (ZIA)