Networking & Security Engineer

Company: Capula Investment Management
Apply for the Networking & Security Engineer
Location: London
Job Description:

Overview

In this hands-on role, you will own and advance the firm’s security posture across infrastructure, networks, and endpoints. You’ll lead security operations, from threat detection to incident response, while embedding security into design and delivery. You will work with cross-functional teams to harden systems and implement secure solutions, including modern AI-guarded defenses. This is a technically demanding, on-site position with a clear impact on risk reduction and resilience.

Responsibilities

  • Lead the security operations function, owning threat detection, incident response, and vulnerability management end-to-end
  • Monitor, triage, and respond to security events across the environment, including log analysis, anomaly detection, and threat hunting
  • Own and drive security hardening across all infrastructure — servers, endpoints, network devices, and cloud-adjacent systems
  • Design and implement secure infrastructure solutions, embedding security requirements from the outset
  • Conduct regular vulnerability assessments and penetration testing exercises, prioritising and remediating findings
  • Manage and continuously improve security tooling, including SIEM, EDR, firewalls, IDS/IPS, and endpoint protection platforms
  • Act as the escalation point for security-related incidents across 2nd and 3rd line, providing expert guidance and driving resolution
  • Support and maintain network infrastructure including firewalls, switches, VPNs, and wireless systems (primarily Cisco-based), with a security lens on all configuration and change
  • Operate across Windows and Linux (Red Hat/CentOS) environments, ensuring both are maintained to a consistent security baseline
  • Collaborate with infrastructure and technology teams to embed security into project delivery and BAU processes
  • Develop and maintain security documentation including incident response playbooks, SOPs, architecture diagrams, and runbooks
  • Stay current with the evolving threat landscape, bringing proactive recommendations to improve the firm’s security posture over time
  • Participate in an on-call rotation to support critical systems and respond to security incidents outside business hours

Key requirements

  • Minimum 7+ years’ experience in infrastructure, networking, and security roles
  • Strong hands-on experience with Windows Server and Linux (Red Hat/CentOS)
  • Solid networking knowledge, including TCP/IP, VLANs, VPNs, DNS, DHCP, with practical experience in Cisco environments
  • Demonstrated experience implementing and supporting security controls, including: Patch management and system hardening, Endpoint protection and monitoring, Identity and access management
  • Good understanding of cyber security principles, including modern threat landscapes and evolving risks (e.g. automation and AI-driven attack vectors)
  • Experience with virtualisation (VMware) and enterprise storage (SAN/NAS)
  • Scripting or automation experience (e.g. PowerShell, Bash) is advantageous
  • Experience in financial services or regulated environments is preferred
  • Strong troubleshooting skills with a structured and analytical approach
  • Able to balance BAU responsibilities with project delivery effectively
  • A thoughtful and forward-looking mindset, with the ability to identify risks and propose improvements
  • Clear and confident communicator, able to engage with both technical and non-technical stakeholders
  • Self-motivated, accountable, and willing to take ownership of issues end-to-end
  • Collaborative and adaptable, with a practical and solutions-focused approach
  • Clear communicator
  • Collaborative mindset
  • Self-motivated and accountable
  • Windows Server
  • Linux (Red Hat/CentOS)
  • Cisco networking (firewalls, switches, VPNs)

Posted: September 14th, 2026