Greenhouse ·
full-timePrincipal Threat Researcher
Zscaler · Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA
Zscaler is a cloud security company that provides a Zero Trust Exchange platform designed to protect organizations from cyberattacks and data loss. As a Principal Threat Researcher, you will operate as a subject matter expert focused on analyzing and neutralizing adversary behaviors within endpoint and cloud environments. Your daily responsibilities will involve dissecting sophisticated attack techniques, replicating them to understand their mechanics, and translating these insights into scalable detection recommendations. You will be expected to engineer automated attack code, develop proofs of concept, and collaborate with detection engineers and threat hunters to improve security coverage. This role requires a candidate who can navigate technical ambiguity and bridge the gap between high-level threat strategy and hands-on execution. It is well-suited for an experienced security professional who possesses deep expertise in operating systems like Windows, macOS, or Linux, as well as major cloud platforms. You should be comfortable mentoring junior team members, documenting complex research findings for diverse audiences, and working in a dynamic, feedback-oriented environment to drive product strategy and defensive innovation.
Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform. We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler. Role We are looking for a Principal Threat Researcher to join our team. This is a remote role, reporting to the Manager Threat Research in the Threat Research Team. As our Principal Threat Researcher, you will serve as the definitive subject matter expert on adversary behavior across Endpoint and Cloud environments. You will dissect, replicate, and outmaneuver sophisticated cyber attack techniques to understand exactly how they operate and how to defeat them. By translating complex threat research into concrete, scalable detection recommendations, you will act as the innovation driver for our defensive capabilities. In this pivotal role, your insights won't just live in a whitepaper—they will directly prioritize our engineering efforts, shape product strategy, influence vendor telemetry, and ensure robust, industry-leading protection for our entire customer base. What you’ll do (Role Expectations) Scope and continuously refine research initiatives, applying an adversarial mindset to analyze emerging attack techniques, customer impact, and detection data sources across at least one operating system (Windows, macOS, Linux) and major Cloud/SaaS providers like AWS, Microsoft 365, and Okta Dive deep into the technical components and detection optics underlying specific threats to fully comprehend how adversaries control and manipulate variations of a given technique Leverage your endpoint and cloud expertise to engineer automated attack code, write test code to validate threat coverage, and develop proofs of concept for new detections. Collaborate across Zscaler to develop new detection methodologies and engineering recommendations, working closely with detection engineers, intelligence analysts, and threat hunters to prioritize and refine deliverables Document and present your research findings and operational deliverables in an accessible, actionable manner to internal and external audiences, while serving as a technical mentor for more junior team members and colleagues pursuing research Who You Are (Success Profile) You thrive in ambiguity, comfortably building the path forward in dynamic environments and leveraging uncertainty as raw material to create meaningful security solutions. You act like an owner, bringing passion for the mission and seamlessly navigating between high-level threat strategy and hands-on technical execution. You are an energized problem-solver who actively seeks out complex security challenges, knowing that tackling tough technical problems yields the greatest impact. You are a high-trust collaborator who thrives in a challenge culture, using transparent feedback and clarity to elevate team performance and build mutual trust. You are a continuous learner with a growth mindset who actively seeks feedback, develops new expertise, and approaches work with genuine purpose. What We’re Looking for (Minimum Qualifications) Foundational understanding of AI/ML technologies and experience leveraging, securing, or positioning AI-driven solutions to optimize outcomes within your functional domain 12+ years of experience conducting security research with actionable outcomes Extensive security expertise in at least one operating system alongside experience working with commercial Endpoint Detection & Response (EDR) platforms Security experience in at least one cloud service provider (e.g., AWS, GCP, Azure), Cloud architectures, and Cloud-based detection platforms Software development experience in at least one scripting language (e.g., PowerShell, Python) and one compiled/assembled language (e.g., C, C++, Rust, Go) Experience managing code with version control systems like git/GitHub What Will Make You Stand Out (Preferred Qualifications) Proven ability to leverage AI technologies and workflows to drive measurable operational efficiency An established record of public community engagement, such as conference talks, technical blog posts, or webinars Prio
| Role | Principal Threat Researcher |
|---|---|
| Company | Zscaler |
| Location | Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA |
| Compensation | Not disclosed |
| Posted | 2026-09-30 |
| Deadline | Rolling |
Typical process for this type of role
A general guide — the exact steps for this specific listing may vary; check the original posting for details.
- 1ApplicationSubmit your resume through the apply link.
- 2ScreeningRecruiter reviews your background against the role.
- 3AssessmentA technical test, assignment, or coding round, depending on the role.
- 4Interview(s)One or more rounds with the hiring team.
- 5OfferOffer letter with compensation and start date.
Before you apply
0/4Principal Threat Researcher at Zscaler: frequently asked questions
- What is the salary for this role?
- Zscaler has not stated compensation in the listing. Check the original posting or ask during the application process.
- Is the Principal Threat Researcher position remote, hybrid or onsite?
- The listing marks this role as remote, with Bellevue, Washington, USA; Remote - USA; San Jose, California, USA; Santa Clara, California, USA as the location.
- What is the application deadline?
- Zscaler has not listed a fixed deadline, so apply early in case the opening is filled.
- How do I apply for the Principal Threat Researcher role?
- Use the Apply button on this page. It opens the original listing on job-boards.greenhouse.io, where you submit your application with the company.
More at Zscaler
Other jobs at Zscaler
- Sr. Staff Site Reliability Engineer-federal, Security Clearance · Crystal City, Virginia, USA
- Staff Software Development Engineer (backend - Python/go/rust) · Bangalore, IND
- Senior Sales Recruiter — Americas · Remote - California, USA; Santa Clara, California, USA
- Regional Director, Major UK · City of London Corporation, GBR
- Senior Recruiter · Germany - Update Location
Explore Related Placements
// similar opportunities
You might also like
Staff Threat Researcher
Zscaler
Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ plat...
Staff / Principal Applied AI Researcher (agentic Search)
Nebius
About Nebius: Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports develo...
Principal Presales Engineer
Twilio
Who we are At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of...
Principal Product Manager
Twilio
Who we are At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of...
Director, Threat Research Engagement
Zscaler
Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ plat...
Principal, R&D Strategy & Operations
Twilio
Who we are At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of...