Senior Staff DevSecOps Engineer (Agentic AI & CI/CD Platform)
About Zscaler
Zscaler accelerates digital transformation to ensure our customers can be more agile, efficient, resilient, and secure. As an AI-forward enterprise, we are constantly pushing the envelope, leveraging the world’s largest security data lake to power our cloud-native Zero Trust Exchange platform. This innovation protects our customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location.
Here, impact in your role matters more than title and trust is built on results. We say, impact over activity. We seek innovators who actively use AI to amplify their impact and who thrive in an environment where we leverage intelligent systems to stay ahead of evolving threats. We believe in transparency and value constructive, honest debate—we’re focused on getting to the best ideas, faster. We build high-performing teams that can make an impact quickly and with high quality. To do this, we are building a culture of execution centered on customer obsession, collaboration, ownership, and accountability.
We value high-impact, high-accountability with a sense of urgency where you’re enabled to do your best work and embrace your potential. If you’re driven by purpose, thrive on solving complex challenges, and want to be part of the team that’s helping to secure the AI age, we invite you to bring your talents to Zscaler and help shape the future of cybersecurity.
Role
We are looking for a Senior Staff DevSecOps Engineer to join our Engineering team. This is a hybrid role based in Bangalore, reporting to the Director, Software Engineering. In this role you will lead Zscaler’s Agentic AI-driven DevSecOps capabilities - building secure, enterprise-grade developer agents and automation that integrate with engineering systems. You will design and operate Model Context Protocol (MCP) servers/tools (and related agent tool frameworks) to connect AI agents to CI/CD, source control, observability, security, and operations with strong governance, auditability, and least-privilege access.
What you’ll do (Role Expectations)
- Design and maintain secure MCP-integrated infrastructure to power autonomous DevSecOps agents across CI/CD, security, and observability systems
- Standardize AI guardrails and injection mitigations while engineering privacy-first platforms with robust access controls and audit logging
- Manage self-hosted GitLab operations, ensuring high availability and performance while designing reusable CI/CD frameworks
- Scale and harden Kubernetes runner infrastructure using Terraform and GitOps (Argo CD/Flux) to ensure secure, automated deployments
- Shape the technical vision and roadmap while driving cross-functional operational efficiency through design reviews and strategic mentorship
Who You Are (Success Profile)
- You thrive in ambiguity. You are comfortable building the path as you walk it, seeing ambiguity not as a hindrance, but as the raw material to build something meaningful
- You act like an owner. Your passion for the mission fuels your bias for action, and you have the dynamic range to navigate seamlessly between high-level strategy and hands-on execution
- You are a problem-solver. You love running toward challenges because you are laser-focused on finding solutions, knowing that solving hard problems delivers the biggest impact
- You are a high-trust collaborator. You are ambitious for the team and embrace our challenge culture by giving and receiving feedback with clarity and respect
- You are a learner. You have a true growth mindset and are committed to your own development, actively seeking feedback to become a better partner and a stronger teammate
What We’re Looking for (Minimum Qualifications)
- 8+ years of expertise in DevOps or Platform Engineering with a track record of cross-org impact, specifically building Agentic AI systems with hands-on experience in MCP servers
- Proven experience with AI guardrails and Responsible AI practices, including safety controls, evaluation/monitoring, and governance-aware implementation
- Expertise in architecting high-performance CI/CD systems and managing self-hosted GitLab, including high availability, upgrades, and troubleshooting
- Proficient in Kubernetes orchestration and Helm, with hands-on expertise in Terraform and GitOps (Argo CD/Flux) for automated infrastructure management
- Strong Linux and cloud (AWS) fundamentals with proficiency in Python/Bash scripting and managing secure, scalable IAM/RBAC and networking infrastructure
What Will Make You Stand Out (Preferred Qualifications)
- Experience operating large GitLab Runner fleets with Kubernetes autoscaling and cost optimization
- Deep supply chain security expertise including signing/attestations, SBOM, SLSA-aligned practices, and policy-as-code
- Expertise in GitLab Geo for multi-site resilience, Vault/KMS for secret governance, and AWS SA-Pro or CKA/CKS certifications
#LI-SK3
#LI-HYBRID
At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.
Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:
- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!
Learn more about Zscaler’s Future of Work strategy, hybrid working model, and benefits here.
By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.
Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link.
Pay Transparency
Zscaler complies with all applicable federal, state, and local pay transparency rules.
Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.