Cyber Defence Network Engineer

Company: Grant Thornton
Apply for the Cyber Defence Network Engineer
Location: London
Job Description:

Overview

In this role you will be a hands-on Network Engineer in the Cyber Defence Centre, supporting live incidents and security hardening while designing and delivering managed security solutions. You’ll work with cross-functional teams to contain, recover, and harden client estates, aligning with NIST, CIS benchmarks, and industry best practices. The position offers exposure to cutting-edge security technologies and a clear progression path within a collaborative security-focused environment. You’ll impact clients by preventing attacker access and reducing future risk.

Pay / Benefits

  • inclusive culture
  • work life balance
  • clear progression opportunities
  • cross-functional collaboration
  • supportive security teams
  • opportunity to work with leading security technologies

Responsibilities

  • Containment and recovery of live client incidents, including ransomware and business email compromise
  • Isolating affected systems and restricting compromised identities to prevent spread
  • Preserving logs and assisting forensic investigations
  • Supporting client recovery and prioritised remediation sequencing
  • Implementing remediation and hardening work post-incident
  • Security reviews and hardening across cloud and on-premises environments
  • Designing and implementing security solutions from discovery to handover
  • Zero Trust/SASE deployment work (Netskope One) and related access controls
  • Designing network segmentation, DLP, and data classification policies
  • Producing security architecture artefacts, playbooks and deployment guides
  • Adhering to NIST CSF, CIS benchmarks, and ISO 27001 frameworks
  • Collaboration with DFIR, SOC, Cyber Advisory and client teams

Key requirements

  • 36 months in a security-focused network role
  • Netskope Certified Cloud Security Integrator (NCCSI) either held or actively pursued
  • Networking expertise (LAN/WAN, VLAN, routing, switching, DMZ)
  • Firewall and VPN/IPS/IDS experience across multiple vendors
  • SASE and Zero Trust experience with Netskope One
  • Cloud familiarity with Azure, Entra ID, AWS; Terraform for IAC
  • Endpoint security with CrowdStrike Falcon
  • Identity management with AD/Entra ID and PIM
  • Knowledge of NIST CSF, NIST 800-53, CIS Benchmarks, ISO 27001
  • Security governance and regulatory standards (GDPR, Cyber Essentials Plus, PCI DSS)
  • Strong communication and collaboration skills
  • Clear and confident communicator under pressure
  • Analytical thinking and evidence-based decision making
  • Problem solving during active incidents
  • Netskope One (SASE, Secure Web Gateway, CASB, Private Access)
  • Firewall design and review (Cisco Firepower, Palo Alto, FortiGate, etc.)
  • VPNs, IPS/IDS, SSL/TLS inspection

…

Posted: September 26th, 2026