Full-Time

Data Protection Zscaler Architect

Posted on 9/11/2026

Ernst & Young

Ernst & Young

10,001+ employees

Provides consulting, assurance, and tax services

Compensation Overview

$144.9k - $302.1k/yr

Seattle, WA, USA

Remote

Remote within the United States; travel may be required based on client and engagement needs.

Bachelor's

Category
Consulting (1)
Required Skills
Zscaler
Data Governance
HIPAA
PowerPoint/Keynote/Slides

Get referred to Ernst & Young

See people who can refer or advise you

Requirements
  • A bachelor's degree in Computer Science, Computer Engineering, Cybersecurity, Information Systems, Network Engineering, Data Science, Privacy, or a related field, or equivalent relevant experience.
  • Approximately 6 or more years of relevant experience in cybersecurity, network security, zero trust, data protection, identity, endpoint, cloud security, privacy, compliance, or related technology consulting, including experience leading teams or workstreams.
  • Demonstrated experience architecting integrated Zscaler solutions across secure internet access, private application access, cloud, branch, workload, digital experience, and data protection capabilities.
  • Required hands-on architecture or delivery experience with Zscaler, including meaningful depth in Zscaler Internet Access and Zscaler Private Access and working knowledge of adjacent Zscaler capabilities.
  • Experience developing policy and architecture for secure web gateway, zero trust network access, cloud access security broker, cloud firewall, SSL inspection, threat protection, application segmentation, and data loss prevention use cases.
  • Experience leading requirements, architecture, design, integration, configuration oversight, testing, migration, deployment, and operating model activities for enterprise Zscaler solutions.
  • Demonstrated leadership experience managing and mentoring consulting or technical teams and coordinating work across client and third-party stakeholders.
  • Experience managing engagement scope, plans, risks, issues, quality, resources, budgets, and executive communications in a professional services or similarly client-driven environment.
  • Experience supporting business development activities, including solution shaping, estimation, proposal development, statements of work, and client presentations.
  • Understanding of zero trust, security, and privacy frameworks or regulations such as NIST, ISO 27001, CIS Controls, GDPR, CCPA/CPRA, HIPAA, or other applicable requirements.
  • Ability to travel as required by client and engagement needs.
Responsibilities
  • Lead Zscaler security and data protection engagements from discovery and solution shaping through architecture, implementation oversight, testing, deployment, operational transition, and benefits realization.
  • Own end-to-end solution architecture across the Zscaler Zero Trust Exchange, including Zscaler Internet Access, Zscaler Private Access, Zscaler Digital Experience, Zscaler Client Connector, cloud security, branch security, workload security, and related data protection capabilities.
  • Design secure internet and SaaS access architectures, including secure web gateway, cloud access security broker, cloud firewall, sandboxing, SSL inspection, browser isolation, advanced threat protection, and policy enforcement patterns.
  • Design zero trust private application access architectures, including application segmentation, access policies, App Connector placement, private service edge considerations, third-party access, privileged remote access, and migration from legacy VPN approaches.
  • Incorporate data protection capabilities into broader zero trust architectures, including data discovery, classification, cloud DLP, SaaS security, inline inspection, policy design, incident workflows, and control integration.
  • Develop integrated zero trust, secure access, data protection, cloud, branch, workload, identity, endpoint, and digital experience strategies aligned with business objectives and regulatory obligations.
  • Lead enterprise security assessments, architecture reviews, maturity assessments, control gap analyses, roadmaps, target operating models, governance frameworks, and transformation programs.
  • Facilitate executive and working-level workshops across security, privacy, legal, compliance, network, infrastructure, cloud, identity, endpoint, application, data governance, security operations, audit, and business stakeholders.
  • Translate requirements into target-state architectures, traffic-flow designs, policy models, integration requirements, migration waves, implementation plans, testing approaches, operational procedures, and measurable outcomes.
  • Establish architecture principles, reference patterns, configuration standards, decision records, integration requirements, and quality criteria for Zscaler-based enterprise solutions.
  • Design and oversee integrations with identity providers, endpoint and device management platforms, SIEM and SOAR technologies, IT service management tools, network infrastructure, cloud platforms, data security tools, and other third-party controls.
  • Manage engagement scope, workplans, staffing, budgets, risks, dependencies, quality reviews, executive reporting, and coordination with client and firm leadership.
  • Provide architecture direction and coaching to Senior and junior resources, review technical deliverables, resolve cross-platform design issues, and escalate material risks when appropriate.
  • Build trusted client relationships, identify opportunities to extend value, support proposals and statements of work, contribute to solution pricing and estimation, and participate in account development.
  • Develop reusable architecture methods, reference designs, accelerators, points of view, and thought leadership while maintaining awareness of Zscaler platform developments and emerging zero trust, cloud, data, and AI security risks.
Desired Qualifications
  • Current Zscaler certifications aligned to architecture and implementation responsibilities, together with relevant industry certifications in security, networking, cloud, or zero trust.
  • Experience with Zscaler Digital Experience, Zscaler Client Connector, cloud and workload security, branch and campus use cases, browser security, privileged remote access, and data protection capabilities.
  • Experience developing enterprise zero trust, secure access service edge, data protection, cloud security, identity, endpoint, branch, or network transformation strategies and operating models.
  • Experience integrating Zscaler with identity providers, endpoint management, SIEM and SOAR, IT service management, cloud platforms, security operations, network services, and third-party data security technologies.
  • Experience with architecture methods and deliverables such as capability models, current- and target-state diagrams, traffic-flow diagrams, reference architectures, control mappings, design decision records, migration roadmaps, and transition architectures.
  • Strong PowerPoint and architecture diagramming skills, including the ability to communicate complex cross-platform concepts to executive, business, and technical audiences.
  • Experience developing team capabilities, reusable assets, market offerings, points of view, or thought leadership.
  • Experience contributing to account planning, pipeline development, pursuit leadership, or expansion of client relationships.

EY (Ernst & Young) is a global professional services firm that provides consulting, assurance, tax, and transaction advisory services across industries such as energy, healthcare, financial services, and real estate. Its work centers on helping clients solve critical business challenges by offering high-value advisory support in areas like supply chain, cybersecurity, sustainability, and digital transformation; revenue comes from fees for consulting, audit, and advisory services. What sets EY apart is its breadth of services across multiple disciplines, deep industry knowledge, and emphasis on thought leadership and research to inform clients’ strategic decisions. The firm aims to help organizations improve operational efficiency, navigate regulatory environments, and stay ahead of market trends by delivering practical, evidence-based guidance and execution support.

Company Size

10,001+

Company Stage

N/A

Total Funding

N/A

Headquarters

London, United Kingdom

Founded

1991

Get referred to Ernst & Young

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • April 7, 2026, agentic AI rollout targets all end-to-end audit activities by 2028.
  • February 10, 2026, Snowflake Innovation Center widens data-cloud transformation sales.
  • EY.ai Agentic for Sales launched March 2, 2026, with Snowflake and Canva.

What critics are saying

  • July 28, 2026, FRC sanctioned EY £1.197 million for Made.com audit failures.
  • July 2026 class action targets EY over tax-team breach exposing Social Security numbers.
  • Repeated sanctions break trust and drive clients from EY audits.

What makes Ernst & Young unique

  • EY Canvas and agentic AI power 160,000 audits globally.
  • Microsoft committed $1 billion with EY on May 21, 2026.
  • EY bundles tax, assurance, consulting, and EY-Parthenon inside one platform.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Professional Development Budget

Flexible Work Hours

Remote Work Options

Company News

Yahoo Finance
Aug 31st, 2026
EY commits $100M to bonuses rewarding human skills alongside AI adoption

Ernst & Young's US division is allocating $100 million this fiscal year to bonus payments rewarding employees who demonstrate adaptability, innovation, and judgement. Individual spot awards reach $500, whilst employees or teams making significant contributions can receive between $10,000 and $25,000, five times the previous programme's ceiling. The initiative also covers AI experimentation. "What we recognise signals what we value," said Ginnie Carlier, chief talent and culture officer for EY Americas. The bonuses form part of a broader strategy to reshape employee development across all career levels. Other professional services firms are pursuing similar approaches. KPMG restructured its audit internship this summer to emphasise critical thinking, whilst PwC US introduced training combining AI proficiency with human qualities like empathy. EY reported AI-related revenue grew 30% year-over-year in 2025.

Consultancy.eu
Aug 28th, 2026
EY-Parthenon acquires Dutch digital strategy consultancy SparkOptimus

EY-Parthenon has acquired SparkOptimus, a Dutch digital strategy consultancy founded in 2010. The Amsterdam-based firm employs around 50 consultants and specialises in AI transformation, digital business model redesign and technology-driven transformation. SparkOptimus founders Alexandra Jankovich and Tom Voskes, both former McKinsey consultants, said joining EY-Parthenon will create significant value for clients and staff whilst providing access to broader capabilities. The acquisition marks EY-Parthenon's first European deal since 2021. EY-Parthenon, established in 2014, is EY's strategy consulting and transactions advisory business with around 25,000 professionals globally. Mark Reich, Partner at EY-Parthenon Netherlands, said SparkOptimus' expertise will complement existing capabilities in the Dutch market. The deal closes on 1 September 2026. Financial terms were not disclosed.

Yahoo Finance
Aug 18th, 2026
KPMG and EY win $579M UK civil servants training contract despite consultancy spending pledge

The UK Government has awarded a contract worth up to £456 million to KPMG and EY to train civil servants, the Financial Times reported, citing government procurement tracker Tussell. Under the arrangement, the firms will train officials across various skills areas, including AI, between 2026 and 2028. KPMG's share is capped at £319 million, representing almost a quarter of its total UK advisory net sales from last year. EY's portion is worth £137 million, equivalent to around 13% of its UK consulting revenue. The deal is the largest single contract awarded to Big Four companies since Tussell started tracking records in 2012. The previous record was a £322 million deal between the Foreign Office and PricewaterhouseCoopers in 2012.

Business Insider
Jul 30th, 2026
EY's 'invisible' AI router cuts token costs by 60% by directing queries to cheaper models

EY has introduced an "invisible" AI router to manage internal AI spending, helping cut token consumption by up to 60% since its April rollout. The router sits behind specialised AI tools and directs employee queries to the most appropriate model for each task, rather than defaulting to the most powerful option. Token costs have become a growing concern as AI providers increasingly charge based on usage. EY's AI Pulse survey found that 82% of senior leaders at companies investing in AI were worried about token usage. The router has been deployed on department-specific platforms, including tax and risk functions, though not on the general Microsoft Copilot chatbot available to all staff. EY has also implemented token budgets based on employees' roles and departments. The firm's global consulting AI leader Dan Diasio said companies should focus AI investment on areas with the deepest impact rather than spreading resources thinly.

Yahoo Finance
Jul 29th, 2026
FRC fines EY $1.5M over Made.com audit failures before 2022 collapse

The UK's Financial Reporting Council has fined EY nearly £1.2m and audit partner Julie Carlyle £49,000 for failings in their 2021 audit of Made.com. Both received severe reprimands for breaching international auditing standards regarding going concern and deferred tax assets. The FRC said the auditors relied on management forecasts without sufficient challenge or adequate testing. Made.com, an online furniture retailer that listed on the London Stock Exchange in June 2021, entered administration in November 2022 after reporting a £35.3m loss. EY later disclaimed its opinion on Made.com's 2022 interim statements due to material uncertainty about the company's ability to continue operating.