Overview
In this role you will be a hands-on Network Engineer in the Cyber Defence Centre, supporting live incidents and security hardening while designing and delivering managed security solutions. You’ll work with cross-functional teams to contain, recover, and harden client estates, aligning with NIST, CIS benchmarks, and industry best practices. The position offers exposure to cutting-edge security technologies and a clear progression path within a collaborative security-focused environment. You’ll impact clients by preventing attacker access and reducing future risk.
Pay / Benefits
- inclusive culture
- work life balance
- clear progression opportunities
- cross-functional collaboration
- supportive security teams
- opportunity to work with leading security technologies
Responsibilities
- Containment and recovery of live client incidents, including ransomware and business email compromise
- Isolating affected systems and restricting compromised identities to prevent spread
- Preserving logs and assisting forensic investigations
- Supporting client recovery and prioritised remediation sequencing
- Implementing remediation and hardening work post-incident
- Security reviews and hardening across cloud and on-premises environments
- Designing and implementing security solutions from discovery to handover
- Zero Trust/SASE deployment work (Netskope One) and related access controls
- Designing network segmentation, DLP, and data classification policies
- Producing security architecture artefacts, playbooks and deployment guides
- Adhering to NIST CSF, CIS benchmarks, and ISO 27001 frameworks
- Collaboration with DFIR, SOC, Cyber Advisory and client teams
Key requirements
- 36 months in a security-focused network role
- Netskope Certified Cloud Security Integrator (NCCSI) either held or actively pursued
- Networking expertise (LAN/WAN, VLAN, routing, switching, DMZ)
- Firewall and VPN/IPS/IDS experience across multiple vendors
- SASE and Zero Trust experience with Netskope One
- Cloud familiarity with Azure, Entra ID, AWS; Terraform for IAC
- Endpoint security with CrowdStrike Falcon
- Identity management with AD/Entra ID and PIM
- Knowledge of NIST CSF, NIST 800-53, CIS Benchmarks, ISO 27001
- Security governance and regulatory standards (GDPR, Cyber Essentials Plus, PCI DSS)
- Strong communication and collaboration skills
- Clear and confident communicator under pressure
- Analytical thinking and evidence-based decision making
- Problem solving during active incidents
- Netskope One (SASE, Secure Web Gateway, CASB, Private Access)
- Firewall design and review (Cisco Firepower, Palo Alto, FortiGate, etc.)
- VPNs, IPS/IDS, SSL/TLS inspection
…
