Well, it's easy. OWASP ZAP supports client certificate so we don't need to take extra actions. Go to Preference -> Client Certificate, check "Enable unsafe SSL/TLS renegotiaion" if you use a self signed cert, check "Use client certificate" to add your cert.