Network Engineer

HCLTech

City Of London

Hybrid

GBP 30,000 - 50,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

HCLTech in London is seeking an experienced Network Security Engineer to design, implement, and operate Zero Trust security solutions for enterprise-scale deployments. You will collaborate with multiple teams to deliver secure, scalable architectures and drive security transformation initiatives.

The role requires strong experience in SASE/SSE, ZTNA, and firewall architectures, with a focus on design reviews, PoCs, and migration planning.

Qualifications

  • 8+ years of experience in Network Security Engineering and Enterprise Networking.
  • Demonstrated experience designing and implementing SASE/SSE, ZTNA, network segmentation, identity-based access controls, and enterprise firewall architectures.
  • Strong understanding of Zero Trust Architecture principles.
  • Ability to produce technical assessments, architecture reviews, PoCs, migration strategies, and engineering documentation.
  • Strong troubleshooting and root cause analysis capabilities.
  • Excellent written and verbal communication skills.
  • Preferred: Palo Alto or Fortinet certification.
  • Preferred: CCNP Enterprise / Security.
  • Preferred: CCIE Enterprise Infrastructure / Security.
  • Preferred: CISSP.
  • Preferred: Experience within large-scale financial services environments.
  • Preferred: Knowledge of NIST Zero Trust Architecture, DORA, NIS2, and modern cybersecurity frameworks.

Responsibilities

  • Partner with internal stakeholders and technology vendors to evaluate, select, and implement Zero Trust security solutions.
  • Design and engineer scalable, resilient, and secure enterprise network and security architectures.
  • Collaborate across Network Engineering, Security Engineering, IAM, Cloud, EUC, and Operations teams to deliver security transformation initiatives.
  • Contribute to technical strategy, standards, reference architectures, and design patterns.
  • Deliver solutions tailored to internal business requirements, articulate design rationale, and adapt or iterate designs when required.
  • Develop High-Level Designs (HLD), Low-Level Designs (LLD), migration plans, operational procedures, and architecture documentation.
  • Support vendor evaluations, Proof of Concepts (PoCs), pilot deployments, and production rollouts.
  • Lead technical assessments, architecture reviews, root cause analysis, and engineering recommendations.
  • Design, deploy, and operate Palo Alto, Fortinet, or Cisco NGFW platforms and their respective cloud management platforms.
  • Design and implement SASE/SSE solutions for enterprise-scale deployments.
  • Implement centralized security management, policy governance, logging, monitoring, and reporting using vendor ecosystems or tools such as Tufin or Algosec.
  • Design and implement on-premises Zero Trust Enforcement Points (NGFW).
  • Develop segmentation and micro-segmentation strategies across data centres, campuses, cloud, and branch environments.
  • Define secure traffic flows and trust boundaries.
  • Support migration from traditional network-centric security models to Zero Trust architectures.
  • Design and engineer routers, switches, and LAN/WAN solutions.
  • Work with VPN technologies, IPSec, TLS encryption, and NAC integration.
  • Integrate network security solutions with Microsoft Entra ID, Active Directory, Cisco ISE / NAC platforms, EDR/XDR solutions, SIEM platforms, ServiceNow, and cloud platforms including Azure, AWS, and GCP.

Skills

Zero Trust
SASE/SSE
ZTNA
Network security
Firewall architectures
Security certifications
Root cause analysis

Tools

Palo Alto Networks
Fortinet
Microsoft Entra ID
Active Directory
NAC (ISE/NAC)
Tufin
Algosec

Job description

Salary: £30,000 - 50,000 per year

Requirements:
  • 8+ years of experience in Network Security Engineering and Enterprise Networking.
  • Demonstrated experience designing and implementing SASE/SSE, ZTNA, network segmentation, identity-based access controls, and enterprise firewall architectures.
  • Strong understanding of Zero Trust Architecture principles.
  • Ability to produce technical assessments, architecture reviews, PoCs, migration strategies, and engineering documentation.
  • Strong troubleshooting and root cause analysis capabilities.
  • Excellent written and verbal communication skills.
  • Preferred: Palo Alto or Fortinet certification.
  • Preferred: CCNP Enterprise / Security.
  • Preferred: CCIE Enterprise Infrastructure / Security.
  • Preferred: CISSP.
  • Preferred: Experience within large-scale financial services environments.
  • Preferred: Knowledge of NIST Zero Trust Architecture, DORA, NIS2, and modern cybersecurity frameworks.
Responsibilities:
  • Partner with internal stakeholders and technology vendors to evaluate, select, and implement Zero Trust security solutions.
  • Design and engineer scalable, resilient, and secure enterprise network and security architectures.
  • Collaborate across Network Engineering, Security Engineering, IAM, Cloud, EUC, and Operations teams to deliver security transformation initiatives.
  • Contribute to technical strategy, standards, reference architectures, and design patterns.
  • Deliver solutions tailored to internal business requirements, articulate design rationale, and adapt or iterate designs when required.
  • Develop High-Level Designs (HLD), Low-Level Designs (LLD), migration plans, operational procedures, and architecture documentation.
  • Support vendor evaluations, Proof of Concepts (PoCs), pilot deployments, and production rollouts.
  • Lead technical assessments, architecture reviews, root cause analysis, and engineering recommendations.
  • Design, deploy, and operate Palo Alto, Fortinet, or Cisco NGFW platforms and their respective cloud management platforms.
  • Design and implement SASE/SSE solutions for enterprise-scale deployments.
  • Implement centralized security management, policy governance, logging, monitoring, and reporting using vendor ecosystems or tools such as Tufin or Algosec.
  • Design and implement on-premises Zero Trust Enforcement Points (NGFW).
  • Develop segmentation and micro-segmentation strategies across data centres, campuses, cloud, and branch environments.
  • Define secure traffic flows and trust boundaries.
  • Support migration from traditional network-centric security models to Zero Trust architectures.
  • Design and engineer routers, switches, and LAN/WAN solutions.
  • Work with VPN technologies, IPSec, TLS encryption, and NAC integration.
  • Integrate network security solutions with Microsoft Entra ID, Active Directory, Cisco ISE / NAC platforms, EDR/XDR solutions, SIEM platforms, ServiceNow, and cloud platforms including Azure, AWS, and GCP.
Technologies:
  • AI
  • AWS
  • Active Directory
  • Azure
  • Cloud
  • Cisco
  • Firewall
  • GCP
  • IAM
  • Support
  • LAN
  • Network
  • Security
  • ServiceNow
  • Spark
  • VPN
  • MPLS
  • Nexus
More:

We are a $13+ billion global technology company and a globally recognized leader in the tech and IT industry, with more than 224,000 people across 60 countries delivering digital, engineering, cloud, and AI capabilities through a broad portfolio of technology services and products. We bring an idea-first mindset and a startup spirit to our work, and we want our people to find their spark and grow with us. This Network Engineer role is based in London, UK, with a hybrid arrangement of 3 days in the office. We offer a supportive, diverse, and global team, competitive compensation and benefits including vacation and insurance cover, opportunities to upskill and take ownership of exciting projects, and a strong focus on wellbeing, CSR, diversity, and employee engagement.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Engineer
Network Security Engineer

HCLTech • Greater London

Hybrid
GBP 30,000 - 50,000
Hybrid schedule
Fixed-term contract
Network Engineer
Network Engineer

HCLTech • Slough

Hybrid
GBP 70,000 - 110,000
Competitive compensation
Global team and culture
Network Engineer
Network Engineer

HCLTech • Greater London

Hybrid
GBP 90,000 - 130,000
Competitive compensation
Global team
Vacation benefits
+1
Network Engineer
Network Engineer

Additional Resources • Cheltenham

On-site
GBP 70,000 - 86,000
25 days leave + bank holidays
AXA Healthcare cover
Cycle to Work scheme
+3
Senior Network Engineer_Cloud, Security & Infra (Architect II - Cloud Infrastructure Services)
Senior Network Engineer_Cloud, Security & Infra (Architect II - Cloud Infrastructure Services)

UST • Greater London

Hybrid
GBP 90,000 - 130,000
Network and Security Engineer
Network and Security Engineer

aap3 Recruitment • City Of London

On-site
GBP 45,000 - 55,000
Network Security Consultant (Remote) - Systems Integrator
Network Security Consultant (Remote) - Systems Integrator

Hamilton Barnes Associates Limited • United Kingdom

Remote
GBP 81,000 - 99,000
Certifications funded
Remote-first
Career development
Senior Network Engineer – Cyber Engineer
Senior Network Engineer – Cyber Engineer

Cyber UK • Greater London

Hybrid
GBP 75,000 - 95,000
Hybrid work model
Bonus
On-call allowance
+2
Senior Network Security Engineer On site
Senior Network Security Engineer On site

ITC Secure • City Of London

Hybrid
GBP 70,000 - 110,000
25 days annual leave
Pension scheme
Private health insurance
+6
Network Engineer
Network Engineer

G-Research • City of Westminster

On-site
GBP 70,000 - 110,000
Lunch provided
Barista bar
30 days annual leave
+4