Network Engineer

HCLTech

Greater London

Hybrid

GBP 90,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive compensation
Global team
Vacation benefits
Career growth

Job summary

HCLTech in London is seeking an experienced Network Engineer to lead Zero Trust security initiatives and enterprise networking design. You will design scalable security architectures, work across security, IAM, cloud, and operations teams, and guide migrations from traditional models to Zero Trust.

Strong design and communication skills are essential. Deep hands-on with NGFW platforms and cloud security, plus responsibility for PoCs, architecture reviews, and production rollouts, are key aspects

Qualifications

  • 8+ years of experience in Network Security Engineering and Enterprise Networking.
  • Demonstrated experience designing and implementing SASE/SSE.
  • Demonstrated experience designing and implementing ZTNA.
  • Demonstrated experience designing and implementing Network Segmentation.
  • Demonstrated experience designing and implementing Identity-Based Access Controls.
  • Demonstrated experience designing and implementing Enterprise Firewall architectures.
  • Strong understanding of Zero Trust Architecture principles.
  • Ability to produce technical assessments, architecture reviews, PoCs, migration strategies, and engineering documentation.
  • Strong troubleshooting and root cause analysis capabilities.
  • Excellent written and verbal communication skills.

Responsibilities

  • Partner with stakeholders and vendors to evaluate and implement Zero Trust security solutions.
  • Design scalable, secure enterprise network and security architectures.
  • Collaborate across multiple teams to deliver security transformation initiatives.
  • Develop High- and Low-Level Designs, migration plans, and documentation.
  • Support PoCs, pilot deployments, and production rollouts.
  • Lead architecture reviews and engineering recommendations.
  • Design and operate NGFW platforms and their management consoles.
  • Implement SASE/SSE solutions for enterprise-scale deployments.
  • Implement centralized security governance, logging, and reporting.

Skills

Zero Trust Architecture
Network Security Engineering
SASE/SSE
ZTNA
Network Segmentation
Enterprise Networking
BGP/OSPF/VXLAN
Cloud Platforms (Azure/AWS/GCP)
Enterprise Firewall Architectures

Tools

Cisco NX-OS/Nexus
Cisco IOS
Palo Alto
Fortinet
Arista
Nexus

Job description

We are a $13+ billion global technology company, home to more than 224,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud, and AI, powered by a broad portfolio of technology services and products.

HCLTech is a globally recognized leader in the Tech and IT industry, but we’ve never forgotten the startup mindset that got us here. We’ve always approached our work with an idea‑first attitude because every one of our accomplishments —no matter how big or small —can be traced back to an idea’s single spark.

It’s that spark —that inner drive —that sets our people apart from our competitors. It enables us not just to pull off game‑changing feat after game‑changing feat but to better our world in the process. We want you to find your spark. Because that’s what drives you to be better, be more and ultimately, be more fulfilled.

To learn more about how we can supercharge progress for you, visit www.hcltech.com

Job Title: Network Engineer

Location: London, Uk (Hybrid- 3 days' work from office)

Requirements / Qualifications / Tasks
Zero Trust & Network Security Engineering
  • Partner with internal stakeholders and technology vendors to evaluate, select, and implement Zero Trust security solutions.
  • Design and engineer scalable, resilient, and secure enterprise network and security architectures.
  • Collaborate across Network Engineering, Security Engineering, IAM, Cloud, EUC, and Operations teams to deliver security transformation initiatives.
  • Contribute to technical strategy, standards, reference architectures, and design patterns.
  • Deliver solutions tailored to internal business requirements. Articulate design rationale, flexibly adapt solutions, and iterate designs when required.
  • Develop High‑Level Designs (HLD), Low‑Level Designs (LLD), migration plans, operational procedures, and architecture documentation.
  • Support vendor evaluations, Proof of Concepts (PoCs), pilot deployments, and production rollouts.
  • Lead technical assessments, architecture reviews, root cause analysis, and engineering recommendations.
  • Design, deploy, and operate Palo Alto, Fortinet or Cisco NGFW platforms and their respective (Cloud) Manager, (Strata Cloud, FortiManager, Cisco Security Cloud)
  • Design and implement SASE/SSE solutions for enterprise‑scale deployments.
  • Implement centralized security management, policy governance, logging, monitoring, and reporting using the Vendors ecosystem or solutions like Tufin or Algosec
Network Security & Segmentation
  • Design and implement on‑premises Zero Trust Enforcement Points (NGFW)
  • Develop segmentation and micro‑segmentation strategies across data centres, campuses, cloud, and branch environments.
  • Define secure traffic flows and trust boundaries.
  • Support migration from traditional network‑centric security models to Zero Trust architectures.
Enterprise Networking
  • Routers, switches, LAN/WAN design and engineering.
  • VPN technologies, IPSec, TLS encryption, and NAC integration.

Hands‑on experience with:

  • Cisco ASR / ISR / Catalyst 8k
  • Cisco Catalyst and Nexus platforms
  • Arista switching platforms
Strong experience with:
  • BGP
  • OSPF
  • EVPN
  • VXLAN
  • MPLS
  • VRF‑based segmentation

Deep understanding of Layer 2 and Layer 3 network technologies.

Security & Integration
  • Microsoft Entra ID
  • Active Directory
  • Cisco ISE / NAC platforms
  • EDR/XDR solutions
  • SIEM platforms
  • ServiceNow
  • Cloud platforms (Azure, AWS, GCP)
Qualifications Required
  • 8+ years of experience in Network Security Engineering and Enterprise Networking.
  • Demonstrated experience designing and implementing SASE/SSE
  • Demonstrated experience designing and implementing ZTNA
  • Demonstrated experience designing and implementing Network Segmentation
  • Demonstrated experience designing and implementing Identity-Based Access Controls
  • Demonstrated experience designing and implementing Enterprise Firewall architectures
  • Strong understanding of Zero Trust Architecture principles.
  • Ability to produce technical assessments, architecture reviews, PoCs, migration strategies, and engineering documentation.
  • Strong troubleshooting and root cause analysis capabilities.
  • Excellent written and verbal communication skills.
Preferred
  • Palo Alto, Fortinet certification
  • CCNP Enterprise / Security
  • CCIE Enterprise Infrastructure / Security
  • CISSP
  • Experience within large‑scale financial services environments.
  • Knowledge of NIST Zero Trust Architecture, DORA, NIS2, and modern cybersecurity frameworks.
Benefits
  • A supportive, diverse, and global team with a brilliant culture.
  • Competitive compensation and benefits that includes vacation per year, various insurances like Term life and Business Travel insurance. These are apart from the statutory benefits applicable in the country. Employee benefits are regulated by an internal policy that contains full details regarding the entitlement and conditions for the benefits as per the law of the land.
  • Great opportunities to make the role your own, upskill yourself and get involved with exciting projects.
  • Total Wellbeing is our focus. Alongside your professional excellence, you join the likeminded colleagues to create a larger impact within the company and society at large in your chosen area of passion - CSR Council, Diversity Council, Women Connect, Sparks – Engagement Champion to name a few.
  • To know more about us visit – www.hcltech.com
  • For more information on how we process your personal data, please refer to HCLTech’s Candidate Data Privacy Notice.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Engineer
Network Engineer

HCLTech • Slough

Hybrid
GBP 70,000 - 110,000
Competitive compensation
Global team and culture
Network Consultant
Network Consultant

HCLTech • Slough

Hybrid
GBP 60,000 - 90,000
Vacation benefits
Insurance
Network Engineer
Network Engineer

HCLTech • City Of London

Hybrid
GBP 30,000 - 50,000
Network Engineer
Network Engineer

HCLTech • Windsor

On-site
GBP 35,000 - 56,000
Competitive compensation
Up to 20 days vacation
Insurance benefits
Network Security Engineer
Network Security Engineer

HCLTech • Greater London

Hybrid
GBP 30,000 - 50,000
Hybrid schedule
Fixed-term contract
Senior Patch Management Engineer
Senior Patch Management Engineer

HCLTech • Slough

Hybrid
GBP 70,000 - 110,000
Vacation benefit
Insurance coverage
Global team
Technical Specialist Premium – Zero Trust Network Access MacOS
Technical Specialist Premium – Zero Trust Network Access MacOS

HCLTech • City Of London

Hybrid
GBP 85,000 - 110,000
Competitive compensation
Insurance benefits
Global team culture and CSR
Senior Network Security Engineer
Senior Network Security Engineer

Natilik • Greater London

On-site
GBP 70,000 - 110,000
25 days annual leave (+ bank holidays)
Quarterly Awards and Bonuses
Flexible Working Policy
+14
Technical Specialist Premium – Zero Trust Network Access MacOS
Technical Specialist Premium – Zero Trust Network Access MacOS

HCLTech • Slough

Hybrid
GBP 75,000 - 110,000
Hybrid work model
Global team culture
Competitive compensation
Technical Specialist Premium – Zero Trust Network Access MacOS
Technical Specialist Premium – Zero Trust Network Access MacOS

HCLTech • Greater London

Hybrid
GBP 70,000 - 100,000
Competitive compensation and benefits
Vacation allowance
CSR and Diversity programs