1,111,561open jobs
64,263companies
187,723added this week
Browse all
Salary
≈ $129k – $267k per year (Estimated)
Location
In office (Clarksburg)
Seniority
Staff · 10+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 2, 2026. First seen by Alion on Jun 25, 2026.

Overview
Company
Impact
Profile match
Ideal Innovations, Inc. is a service disabled veteran-owned firm specializing in biometrics, forensics and technical services, including identity management, access control, force protection, intelligence and logistics.

* Hands-on experience with Zscaler (ZIA/ZPA) or comparable cloud security / SWG / ZTNA platforms strongly preferred*

Highlights:

  • This is a rare opportunity to lead a high-impact Zero Trust transformation supporting the FBI CJIS division, driving the shift from legacy network security to a modern, cloud-first architecture powered by Zscaler. You will play a key role in implementing cutting-edge security capabilities aligned with TIC 3.0 while working alongside highly experienced engineers in a mature SAFe Agile environment. This role offers the chance to shape future-state architecture, solve complex challenges at scale, and build highly marketable expertise across both federal and commercial sectors.
  • The team consists of a collaborative mix of government personnel and contractor staff from multiple organizations, working together in a mature SAFe Agile environment. The culture emphasizes teamwork, technical excellence, and shared accountability, with a strong focus on delivering high-quality solutions to mission-critical systems.
  • This role combines hands-on engineering, architecture, and transformation leadership in a single position. It provides the opportunity to work on a large-scale Zscaler implementation and Zero Trust initiative that is directly aligned with federal modernization efforts such as TIC 3.0. The position offers exposure to complex enterprise environments and the ability to make meaningful, visible contributions to a high-profile mission.
  • The individual in this role will play a critical part in modernizing the organization’s security posture, enabling secure, cloud-first access to applications and services. Their contributions will help reduce reliance on legacy infrastructure, improve visibility and control, and enhance overall cybersecurity capabilities through the implementation of Zero Trust principles.
  • The candidate will acquire the following skills should they accept:
    • Hands-on experience with Zscaler ZIA and ZPA implementations at enterprise scale
    • Deep understanding of Zero Trust architecture and SASE frameworks
    • Experience aligning technical solutions to TIC 3.0 and federal security modernization initiatives
    • Advanced experience operating within a SAFe Agile environment in a large government organization
    • Enhanced expertise in cloud security, identity-driven access, and network transformation strategies

Typical Day:

A typical day entails operating within a SAFe Agile environment, starting with a brief daily stand-up to align on priorities, provide updates, and identify blockers. Team communication and coordination are primarily conducted through Microsoft tools and Jira, with work tracked via assigned tickets and sprint boards.

Work is executed in two-week sprint cycles, focusing on prioritized stories and features defined by leadership. In parallel, the role supports ongoing Operations & Maintenance (O&M) activities, including service ticket resolution, vulnerability management, and system sustainment to ensure operational stability.

Tasks:

  • Participate in SAFe Agile ceremonies (daily stand-ups, sprint planning, retrospectives) and deliver work within sprint cycles
  • Lead the implementation of Zscaler ZIA and ZPA to support Zero Trust and cloud-delivered security objectives
  • Develop and execute migration strategies to transition from legacy forward proxies and VPNs to Zscaler-based architectures
  • Design direct-to-cloud connectivity solutions that eliminate on-premises traffic backhaul
  • Configure and optimize Zscaler policies (URL filtering, SSL inspection, DLP, access controls) to meet security requirements
  • Integrate Zscaler with enterprise identity providers (e.g., Active Directory, Azure AD) to enforce identity-based access
  • Collaborate with cross-functional teams (network, security, cloud) to support Zero Trust and TIC 3.0-aligned architectures
  • Manage and resolve complex network security issues, including traffic flow, access, and policy enforcement troubleshooting
  • Support Operations & Maintenance (O&M) activities such as service ticket resolution, vulnerability remediation, and system sustainment
  • Develop and maintain technical documentation, including architecture diagrams, implementation plans, and operational procedures

Required Qualifications:

  • Hands-on experience with Zscaler (ZIA/ZPA) or comparable cloud security / SWG / ZTNA platforms strongly preferred
  • 10+ years of network security or cybersecurity engineering experience required
  • Education: A degree may substitute for a portion of the required experience
  • Proven experience as a technical lead / SME on enterprise network or security projects
  • Experience supporting large-scale network security migrations (e.g., proxy/VPN to cloud-based or Zero Trust architectures)
  • Experience supporting Zero Trust architecture or modern secure access solutions
  • Experience integrating with identity providers (Active Directory, Azure AD, SAML/OIDC)
  • Strong background in enterprise networking and security, including firewalls (Palo Alto, Cisco, etc.), routing, DNS, and proxy architectures
  • Experience with SIEM/logging platforms (Splunk preferred)
  • Experience troubleshooting complex network and security issues in enterprise environments

Desired Qualifications:

  • Zscaler certifications (e.g., ZDTA, ZDTE, ZCCA-IA, ZCCA-PA)
  • Experience leading or supporting a Zscaler ZIA/ZPA enterprise deployment
  • Familiarity with CISA TIC 3.0 and federal network security modernization initiatives
  • Experience replacing on-prem forward proxies and/or VPNs with cloud-delivered security solutions
  • Knowledge of Zero Trust architecture (ZTA) and SASE frameworks
  • Experience designing or implementing direct-to-cloud access architectures (avoiding traditional network backhaul)
  • Cloud experience with AWS and/or Azure, including networking and security integration
  • Security certifications (e.g., Security+, CASP/X, CISSP)
  • Cisco certifications (e.g., CCNA, CCNP)
  • Experience working in a SAFe Agile environment using Jira and Confluence

Position Type Shift Information:

  • Day Shift 8am-5pm

US Citizenship: US citizenship required

Clearance: Top Secret clearance required

Location: FBI CJIS Campus (Clarksburg, WV)

Ideal Innovations, Inc. is an Equal Opportunity Employer:

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability, or veteran status.

Ideal Innovations, Inc. is a VEVRAA Federal Contractor .

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,111,561 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Clarksburg
$80k – $90k per year • Equity • Remote (United States) • 7+ years exp • Seattle
Python
JavaScript
PowerShell
DevOps
Terraform
VMWare
CloudFormation
Nomad
AWS
Docker
Ubuntu
CentOS Stream
Amazon ECS
Linux
Windows
Cybersecurity
Crowdstrike
Nessus
CIS Benchmarks
NIST 800-171
Microsoft Entra ID
EnCase
Active Directory
SIEM
Apply
Security Engineer 1 day ago
$100k – $120k per year • Equity • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Omaha
DevOps
Windows Server
Platform Engineering
Windows
Management
Confluence
Jira
Power Automate
ITIL
Apply
≈ $152k – $316k per year (Estimated) • In office • TS/SCI • 10+ years exp • Bachelor's Degree • Saint Louis
Cybersecurity
SIEM
Apply
$140k – $151k per year • Remote (United States) • Full-Time • 4+ years exp • United States
Python
JavaScript
TypeScript
DevOps
CI/CD
AWS
Cybersecurity
OWASP Top 10
SOC 2
Threat Modeling
Management
Agile
Apply
$146k – $234k per year • Equity • In office • Full-Time • 5+ years exp • Cambridge
AI/ML
Agentic Workflows
Cybersecurity
ISO 27001
NIST CSF
Analytics
Power BI
Management
Jira
ServiceNow
SharePoint
Apply
$137k – $228k per year • In office • Top Secret • 10+ years exp • Bachelor's Degree • Alexandria
AI/ML
Machine Learning
DevOps
Azure
AWS
GitLab
HPC
Robotics
Digital Twin
Management
Confluence
Jira
Outlook
Microsoft Office
Apply
≈ $61k – $159k per year (Estimated) • In office • Cairo
Python
DevOps
Terraform
GCP
CloudFormation
Prometheus
GitLab CI
Azure
CI/CD
ArgoCD
Jenkins
AWS
Docker
Kubernetes
Grafana
Spinnaker
Apply
≈ $109k – $215k per year (Estimated) • In office • Top Secret • 7+ years exp • Master's Degree • Charleston
DevOps
Azure
AWS
Linux
Windows
Unix
Cybersecurity
NIST 800-53
PKI
SIEM
DLP
Apply
≈ $99k – $194k per year (Estimated) • In office • TS/SCI • 5+ years exp • Bachelor's Degree • Orlando
DevOps
VMWare
Kubernetes
Configuration Management
Linux
Management
Confluence
Jira
Apply
≈ $108k – $213k per year (Estimated) • In office • Secret • 7+ years exp • Bachelor's Degree • Augusta
DevOps
VMWare
Kubernetes
Configuration Management
Linux
Robotics
Digital Twin
Management
Confluence
Jira
Apply
$80k – $100k per year • In office • TS/SCI • Full-Time • 5+ years exp • Bachelor's Degree • Quantico
Apply
Network Analyst - Sr 2 months ago
≈ $93k – $203k per year (Estimated) • In office • Top Secret • Full-Time • 6+ years exp • Bachelor's Degree • Clarksburg
DevOps
Incident Management
TCP/IP
VPN
BGP
OSPF
MPLS
Management
Confluence
Jira
Agile
Scrum
Kanban
Apply
≈ $65k – $140k per year (Estimated) • In office • Secret • Full-Time • 1+ year exp • Associate's Degree • Clarksburg
SQL
PowerShell
DevOps
Linux
Windows
Unix
Cybersecurity
Active Directory
Apply
≈ $80k – $162k per year (Estimated) • In office • Secret • Full-Time • 4+ years exp • Associate's Degree • Clarksburg
PowerShell
DevOps
Windows
Cybersecurity
Active Directory
Management
Service Desk
Microsoft Office
Apply
≈ $40k – $91k per year (Estimated) • In office • Top Secret • Full-Time • Bachelor's Degree • Quantico
Apply
≈ $40k – $95k per year (Estimated) • In office • High School Diploma • Clarksburg
Apply
≈ $31k – $79k per year (Estimated) • In office • Bachelor's Degree • Clarksburg
Apply
$115k – $125k per year • In office • TS/SCI • 10+ years exp • Clarksburg
JavaScript
Frontend
Vue.js
DevOps
CI/CD
Management
Agile
Apply
$125k – $135k per year • In office • TS/SCI • 10+ years exp • Clarksburg
JavaScript
Frontend
Vue.js
DevOps
CI/CD
Management
Agile
Apply
$100k per year • In office • Full-Time • 2+ years exp • High School Diploma • Clarksburg
Apply
See all jobs
This is one of many
1,111,561 more open roles from verified company boards, updated every day.