Network Security Engineer (SOC)

  • MBDA UK
  • Stevenage, Hertfordshire
  • 23/06/2026
Full time Information Technology Telecommunications

Job Description

Salary and Benefits

Salary: Circa £50,000 depending on experience + shift allowance.

Working Hours: Hybrid (5 days on-site) with 24/7 shift pattern.

Security Clearance Required: DV, British Citizen, BPSS, and SC clearance.

Benefits:

  • Company bonus up to £2,500 based on performance.
  • Pension contribution up to 14% of total.
  • Paid overtime opportunities.
  • Flexi leave up to 15 additional days.
  • Enhanced parental leave up to 26 weeks.
  • Site facilities: subsidised meals, free car parking, etc.
Responsibilities

As a Network Security Engineer, you will:

  • Safeguard network infrastructure as part of the 24x7 Internal Security Response team.
  • Participate in incident response and triage with the SOC team.
  • Design, implement, and maintain robust security solutions to protect against evolving threats.
  • Collaborate with cross-functional teams to deploy changes securely.
  • Identify vulnerabilities, manage security incidents, and ensure industry compliance.
  • Optimize security tools, remediate purple team findings, and standardise network tools.
Essential Qualifications
  • Solid understanding of networking principles (TCP/IP, DNS, routing, switching, VLANs, load balancing).
  • Strong expertise in configuring, maintaining, and troubleshooting firewalls (Cisco, Checkpoint, Palo Alto).
  • Hands on experience in next-gen firewalls and advanced security features (IPS/IDS, SSL decryption, deep packet inspection).
  • Experience managing secure proxy solutions (Bluecoat, F5) with policies for content filtering, SSL inspection, and traffic monitoring.
  • In depth knowledge of security protocols (IPSec, SSL/TLS, VPNs, two-factor authentication).
  • Understanding of network architectures and security zones (DMZ, internal networks).
  • Proficiency in monitoring technologies (PRTG, Nagios).
Desirable Qualifications
  • Understanding of cyber security capabilities and integration with network infrastructure.
  • Existing knowledge or aptitude for Darktrace Antigena and Respond, Splunk ES, or LogRhythm.
  • Ability to interpret packet captures to identify malicious traffic, command and control, lateral movement, and data exfiltration.
  • Proficient SOC alert triage and Tier 1 management.
  • Experience with LDAP and application traffic flow root cause analysis.
  • Knowledge of OSI Reference Model and common protocols (DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S).
  • Experience with SIEM tools and packet capture tools.