Salary and Benefits
Salary: Circa £50,000 depending on experience + shift allowance.
Working Hours: Hybrid (5 days on-site) with 24/7 shift pattern.
Security Clearance Required: DV, British Citizen, BPSS, and SC clearance.
Benefits:
- Company bonus up to £2,500 based on performance.
- Pension contribution up to 14% of total.
- Paid overtime opportunities.
- Flexi leave up to 15 additional days.
- Enhanced parental leave up to 26 weeks.
- Site facilities: subsidised meals, free car parking, etc.
Responsibilities
As a Network Security Engineer, you will:
- Safeguard network infrastructure as part of the 24x7 Internal Security Response team.
- Participate in incident response and triage with the SOC team.
- Design, implement, and maintain robust security solutions to protect against evolving threats.
- Collaborate with cross-functional teams to deploy changes securely.
- Identify vulnerabilities, manage security incidents, and ensure industry compliance.
- Optimize security tools, remediate purple team findings, and standardise network tools.
Essential Qualifications
- Solid understanding of networking principles (TCP/IP, DNS, routing, switching, VLANs, load balancing).
- Strong expertise in configuring, maintaining, and troubleshooting firewalls (Cisco, Checkpoint, Palo Alto).
- Hands on experience in next-gen firewalls and advanced security features (IPS/IDS, SSL decryption, deep packet inspection).
- Experience managing secure proxy solutions (Bluecoat, F5) with policies for content filtering, SSL inspection, and traffic monitoring.
- In depth knowledge of security protocols (IPSec, SSL/TLS, VPNs, two-factor authentication).
- Understanding of network architectures and security zones (DMZ, internal networks).
- Proficiency in monitoring technologies (PRTG, Nagios).
Desirable Qualifications
- Understanding of cyber security capabilities and integration with network infrastructure.
- Existing knowledge or aptitude for Darktrace Antigena and Respond, Splunk ES, or LogRhythm.
- Ability to interpret packet captures to identify malicious traffic, command and control, lateral movement, and data exfiltration.
- Proficient SOC alert triage and Tier 1 management.
- Experience with LDAP and application traffic flow root cause analysis.
- Knowledge of OSI Reference Model and common protocols (DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S).
- Experience with SIEM tools and packet capture tools.