ZPA Network Engineer (Zero Trust / Zscaler) - 26-01308


IT - PA - Harrisburg, PA
Harrisburg, Pennsylvania
Locations: Harrisburg, Allentown, Erie, Philadelphia
Posted On: February 06, 2026
Last Day to Apply: February 20, 2026
Pay: $65.00 to $72.00 per hour

Job Title: ZPA Network Engineer (Zero Trust / Zscaler)

Location: Harrisburg, PA (Hybrid – 2 Days Onsite Required)
Schedule: Full-Time – 37.5 Hours per Week
Employment Type: Contract
Local Candidates Only


Position Overview

"Navitas Partners, LLC" is seeking an experienced ZPA Network Engineer to support the deployment and operationalization of Zscaler Private Access (ZPA) as part of an enterprise-wide Zero Trust Network Access (ZTNA) strategy.

This hands-on, network-focused role is responsible for designing, implementing, and supporting secure access to private applications using ZPA. The engineer will help transition legacy VPN-based access models into scalable, policy-driven Zero Trust architectures while ensuring secure, auditable, and operationally sustainable solutions.

The position works closely with enterprise network, security, identity, and application teams to deliver modern, secure access solutions aligned with Zero Trust principles.


Key Responsibilities

  • Design, implement, and maintain Zscaler Private Access (ZPA) components including:

    • App Connectors

    • Server Groups

    • Application Segments

    • Access policies

  • Collaborate with network, security, identity, and application teams to enable secure ZPA-based application access.

  • Analyze legacy VPN and traditional network access models and translate them into Zero Trust access patterns.

  • Support onboarding of applications to ZPA, validating:

    • Network paths

    • Ports and protocols

    • Application dependencies

  • Configure and enforce least-privileged access policies.

  • Troubleshoot ZPA-related connectivity and access issues, including:

    • User access failures

    • Application reachability issues

    • Connector health and routing concerns

  • Participate in migration initiatives from legacy access models to ZPA.

  • Ensure configurations are documented, auditable, and aligned with security and governance requirements.

  • Develop technical documentation including standards, procedures, diagrams, and operational runbooks.

  • Engage with vendors and platform support teams to resolve complex technical issues.


Required Qualifications

  • 8+ years of enterprise networking experience including:

    • Routing

    • Firewall administration

    • DNS

    • Traffic flow analysis

  • Hands-on experience implementing and supporting Zscaler Private Access (ZPA) or similar Zero Trust access platforms.

  • Strong understanding of Zero Trust Network Access (ZTNA) principles and application-level segmentation.

  • Experience analyzing complex, legacy network environments and designing scalable access solutions.

  • Experience working in regulated or compliance-driven environments.

  • Strong documentation, communication, and cross-functional collaboration skills.


Highly Desired Qualifications

  • Zscaler certifications such as:

    • Zscaler Digital Transformation Administrator

    • Zscaler Digital Transformation Engineer

  • Completion of Zscaler administrator or engineer training courses relevant to ZPA.

  • Industry certifications such as:

    • CCNP

    • Security+

    • CySA+

  • Experience supporting large enterprise or public-sector environments.

  • Familiarity with regulatory frameworks such as:

    • CJIS

    • NIST 800-53

  • Experience supporting access modernization initiatives within complex enterprise infrastructures.

For more details reach at resumes@navitassols.com

About Navitas Partners, LLC: It is a certified WBENC and one of the fastest-growing Technical / IT staffing firms in the US providing services to numerous clients. We offer the most competitive pay for every position. We understand this is a partnership. You will not be blindsided and your salary will be discussed upfront.

Skip to the main content