Enable job alerts via email!

Senior Network Security Engineer

CFP Energy Ltd.

City Of London

On-site

GBP 100,000 - 125,000

Full time

Today
Be an early applicant

Job summary

A leading energy solutions firm in London is seeking a Senior Network Security Engineer to design and implement secure network solutions. The role requires expertise in firewalls, routing protocols, and and a strong background in automation practices. Ideal candidates should have over 5 years of experience in network security and excellent problem-solving skills. This position offers a dynamic work environment focused on innovation and collaboration.

Qualifications

  • 5+ years of experience in network security and IT infrastructure.
  • Familiarity with network monitoring tools and cloud platforms.
  • Experience with IaC practices and automation.

Responsibilities

  • Design and implement secure, high-performing network solutions.
  • Manage firewall configurations and document security processes.
  • Drive automation initiatives using IaC practices.

Skills

Strong experience with enterprise network vendors
Proficiency in routing and switching
Deep understanding of network security principles
Familiarity with network monitoring tools
Strong knowledge of cloud platforms
Experience with network security technologies
Proficiency in a modern programming language
Experience with IaC practices and GitOps workflows
Strong Linux background
Excellent analytical and problem-solving skills

Education

5+ years of experience in network security
2+ years of experience hardening Windows/MacOS/Linux

Tools

Networking protocols and OSI model knowledge
Tools like SNMP, Syslog, Netflow, ELK Stack
Job description

Job Overview:

As a Network Security Engineering team member, the Senior Network Security Engineer will specialise in firewalls and routing. The ideal candidate is a flexible, self-motivated individual who excels at multitasking and thrives in a fast-paced, challenging environment.

This self-starter will bring ingenuity and expertise to design, implement, and maintain secure, scalable, high-performing network solutions that connect on-premises and public cloud environments. The role emphasises driving automation through Infrastructure-as-Code (IaC) and GitOps methodologies, ensuring optimal network performance, and integrating robust security measures.

Responsibilities:
  • Network Design and Implementation: Design and implement secure, scalable, and high-performing network solutions bridging on-premises and public cloud environments.
  • Leverage routing and switching expertise (e.g., BGP, OSPF, MPLS) to ensure network performance and reliability across diverse environments.
  • Analyze operational needs and proactively develop creative network solutions to address security challenges.
Security and Firewall Management:
  • Manage firewall configurations for the Cyber Energia network based on operational requirements.
  • Develop and implement network security tools, produce threat models, and assess risks around existing configurations.
  • Provide subject matter expertise on network security, firewalls, and industry best practices.
  • Document and formalize security processes.
Automation and Infrastructure Management:
  • Drive automation initiatives using Infrastructure-as-Code (IaC) practices (e.g., Terraform, Ansible, Chef) and GitOps workflows to streamline network provisioning and enforce configuration consistency.
  • Develop CI/CD pipelines tailored for IT infrastructure to enhance deployment efficiency and integrate network security measures.
  • Build and maintain internal automation solutions (e.g., Slack bots and integrations) to streamline IT operations and business processes.
Monitoring and Maintenance:
  • Manage and maintain network security systems through system patches and periodic maintenance tasks.
  • Establish comprehensive observability and proactive issue-resolution strategies using tools like SNMP, Syslog, Netflow, Elasticsearch (ELK Stack), and Grafana.
Collaboration and Communication:
  • Work with Cyber Energia teams to identify functional needs, develop secure architectures, and communicate security best practices and policies.
  • Collaborate with security teams to align IT automation with Zero Trust principles and compliance frameworks.
  • Clearly explain technical concepts to both technical and non-technical audiences, demonstrating excellent stakeholder management skills.
Basic Qualifications:
  • 5+ years of experience in network security, IT infrastructure, applications, endpoints, and/or APIs.
  • 2+ years of experience hardening Windows, MacOS, and/or Linux operating systems.
Required Skills and Experience:
  • Technical Expertise: Strong experience with enterprise network vendors (e.g., CheckPoint, Palo Alto).
  • Proficiency in routing and switching, including protocols like BGP, OSPF, and MPLS.
  • Deep understanding of network security principles (e.g., ACLs, firewalls, VPNs, 802.1x authentication, profiling, RBAC).
  • Familiarity with network monitoring tools/protocols and logging pipelines (e.g., SNMP, Syslog, Netflow, ELK Stack, Grafana).
  • Strong knowledge of cloud platforms (e.g., Azure, AWS, GCP) and infrastructure management.
  • Experience with network security technologies, including firewalls (Palo Alto, CheckPoint), IDS/IPS, NDR, switch/router ACLs, NAC solutions, IPSec/TLS VPNs, WAFs, email security, and SIEM logging/alerting.
Programming and Automation:
  • Proficiency in a modern programming language (e.g., Python).
  • Experience with IaC practices, GitOps workflows, and cloud automation best practices.
  • Proven ability to integrate corporate IT infrastructure with CI/CD pipelines and DevOps workflows.
  • Familiarity with networking protocols and the OSI model.
General Skills:
  • Strong Linux background and passion for open-source technology (a must).
  • Excellent analytical, problem-solving, and time-management skills.
  • Adept at learning new technologies and systems.
  • Experience testing and implementing changes in a production environment.
  • Exceptional communication skills (written and verbal) to work cross-functionally with IT, security, and business teams.
Preferred Attributes:
  • Demonstrated track record of developing and maintaining internal tools to optimize IT operations.
  • Ability to work independently as a self-starter with minimal supervision.

The CFP Energy Group is committed to ensuring equal opportunities, fairness of treatment, dignity and respect, and the elimination of all forms of discrimination in the workplace for all employees/contractors and job applicants.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.