Technical Project Manager (Zscaler) Seeking a contract Technical Project Manager to lead the end-to-end rollout, configuration, and optimization of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) across the organization. This role requires hands-on technical depth in both platforms — not just PM oversight — since the consultant will be expected to make and validate configuration decisions, not only track them. This position reports to the Director of IT Engineering. We're looking for someone to join us immediately.
Must Haves 5+ years of TPM experience in enterprise security/network transformation projects
Deep hands-on expertise in both ZIA and ZPA — architecture, policy configuration, troubleshooting
Experience with SSL inspection deployment, DLP policy design, and Zero Trust access models
Zscaler certification(s) preferred (ZDTA, ZDTP, or equivalent)
Responsibilities: Own the project plan for ZIA/ZPA rollout: phasing, milestones, risk log, and stakeholder reporting
Help in design and configuration of ZIA policies (URL filtering, SSL inspection, DLP, cloud app control) and ZPA app segments, policies, and connector architecture
Partner with IT Security, Network, and Identity teams (Okta integration, device posture/Device Assurance) to align Zscaler policy with existing access control models
Coordinate with endpoint teams (Jamf/Intune) on client connector deployment across macOS and Windows fleets
Support BYOD/MAM scoping decisions where Zscaler intersects with mobile access
Document configuration standards and decisions for compliance purposes, including UK Cyber Essentials Plus (CE+) control mapping
Identify and remediate gaps between the current state and the target architecture
Run cutover/migration planning (legacy Global Protest VPN decommission)
Provide status reporting and executive-level summaries suitable for leadership review
Requirements: 5+ years of technical project management experience in enterprise security/network transformation projects
Deep hands-on expertise in both ZIA and ZPA — architecture, policy configuration, troubleshooting
Experience with SSL inspection deployment, DLP policy design, and Zero Trust access models
Familiarity with identity providers (Okta preferred) and device posture/conditional access concepts
Strong stakeholder management and technical writing skills — this role will produce compliance-facing documentation
Zscaler certification(s) preferred (ZDTA, ZDTP, or equivalent)
Prior experience supporting a compliance certification effort (CE+, SOC 2, ISO 27001) where Zscaler was in scope
Experience with Jamf and/or Intune-managed endpoint environments
Experience migrating from legacy VPN to SSE architecture
EEO: Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans