A leading global financial services organization is seeking a Network Security Engineer to join its Information Security and Infrastructure teams. This position will be responsible for the design, implementation, administration, and continuous improvement of network security technologies that protect critical business systems, cloud platforms, market-facing applications, and enterprise infrastructure.
The ideal candidate will possess a strong background in firewall administration, network security architecture, cloud security, threat prevention, and secure network operations within a highly regulated environment. This individual will partner closely with cybersecurity, infrastructure, cloud, networking, and application teams to strengthen the organization's security posture while supporting business growth and operational stability.
Key Responsibilities
Network Security Engineering
- Design, implement, and maintain enterprise network security controls across corporate, cloud, and data center environments.
- Administer and optimize next-generation firewalls, VPN technologies, intrusion detection and prevention systems, secure web gateways, and network access controls.
- Develop and maintain network segmentation strategies that support security, compliance, and operational requirements.
- Review and approve network security changes, firewall rules, VPN configurations, and routing modifications.
- Evaluate new technologies and recommend solutions that improve network security, visibility, and operational efficiency.
Security Architecture & Infrastructure Protection
- Participate in architecture reviews and provide security guidance for network, cloud, and application initiatives.
- Design secure connectivity solutions for cloud platforms, branch offices, third‑party vendors, and remote users.
- Support implementation of Zero Trust and defense‑in‑depth security architectures.
- Ensure security controls are aligned with organizational standards, regulatory requirements, and industry best practices.
- Monitor network security events and investigate suspicious activity.
- Tune and optimize security monitoring tools to improve threat detection and reduce false positives.
- Assist with threat hunting, forensic investigations, and incident response activities.
- Develop reporting and dashboards that provide visibility into network security posture and operational risk.
Vulnerability & Risk Management
- Conduct network security assessments and identify vulnerabilities within enterprise infrastructure.
- Partner with infrastructure teams to prioritize remediation and reduce risk exposure.
- Evaluate security risks associated with network changes, cloud deployments, and third‑party integrations.
- Provide recommendations for mitigating identified threats and vulnerabilities.
- Secure connectivity between on‑premises infrastructure and cloud environments.
- Support security controls within Microsoft Azure and Microsoft 365 environments.
- Implement secure access controls, network monitoring, and cloud security best practices.
- Partner with cloud engineering teams to ensure consistent security standards across hybrid environments.
Governance, Compliance & Documentation
- Develop and maintain network security standards, procedures, and technical documentation.
- Support internal audits, regulatory examinations, penetration tests, and security assessments.
- Assist with compliance initiatives aligned to frameworks such as NIST, CIS Controls, ISO 27001, and financial services cybersecurity requirements.
- Maintain accurate documentation of network architecture, security controls, and operational procedures.
Required Qualifications
- Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field, or equivalent professional experience.
- 5+ years of experience in network security engineering, network infrastructure, or cybersecurity roles.
- Strong experience administering enterprise firewall platforms such as Palo Alto, Check Point, Cisco Firepower, or Fortinet.
- Hands‑on experience supporting VPN technologies, network segmentation, IDS/IPS solutions, proxy technologies, and secure remote access platforms.
- Strong understanding of TCP/IP, DNS, DHCP, BGP, OSPF, routing, switching, and network troubleshooting.
- Experience with network packet analysis and diagnostic tools such as Wireshark.
- Experience supporting security monitoring, incident response, and vulnerability management initiatives.
- Knowledge of cloud networking and cloud security concepts within Microsoft Azure and Microsoft 365 environments.
- Strong understanding of cybersecurity principles, attack vectors, threat actor methodologies, and security best practices.
- Excellent analytical, troubleshooting, and communication skills.
Preferred Qualifications
- Experience within financial services, banking, capital markets, or other highly regulated industries.
- Experience supporting Palo Alto firewalls, Prisma Access, GlobalProtect, or similar enterprise platforms.
- Familiarity with SIEM technologies such as Microsoft Sentinel, Splunk, QRadar, or LogRhythm.
- Experience with cloud security services, Zero Trust architecture, and network access control solutions.
- Knowledge of DDoS mitigation, web application firewalls, and enterprise traffic inspection technologies.
- Experience with endpoint security, identity security, and Microsoft security platforms.
- Industry certifications including CISSP, CCSP, PCNSE, CCNP Security, Fortinet NSE, or equivalent credentials.
Desired Characteristics
- Strong ownership mentality and commitment to operational excellence.
- Ability to balance security requirements with business objectives.
- Excellent collaboration skills and ability to work across technical and non‑technical teams.
- Effective communicator capable of presenting security concepts to a variety of audiences.
- Continuous learner with a passion for cybersecurity, emerging threats, and evolving technologies.
- Ability to remain calm and decisive during critical incidents and high‑priority operational events.
Why Join Us
This role offers the opportunity to work within a sophisticated financial services environment where network security is critical to business operations. You will play a key role in securing enterprise infrastructure, enhancing cybersecurity capabilities, and partnering with technology leaders to support strategic initiatives across cloud, network, and security domains.