Overview
In this London-based role you will lead technical engagements, translating security needs into actionable architectures. You design Zero Trust network and endpoint models and drive modernization from legacy to software-defined, cloud-integrated ecosystems. You’ll run workshops, demos, and PoCs while ensuring solutions meet client requirements and are scalable. The opportunity blends hands-on design with cross-functional collaboration to shape secure, future-ready networks.
Pay / Benefits
- 25 days’ vacation per year
- private medical insurance
- 3 extra days for charitable work
- flexibility and onsite requirements
Responsibilities
- Act as technical lead in pre-sales engagements for network and endpoint security
- Conduct client discovery sessions, workshops, and assessments focusing on segmentation, visibility, and threat defence
- Deliver technical presentations and product demonstrations to technical and business audiences
- Design secure architectures with network segmentation, DNS-layer protection, and endpoint telemetry
- Develop integrated solutions leveraging listed tools (Fortinet, Palo Alto, CrowdStrike, Microsoft Defender, Zscaler, Infoblox, etc.)
- Recommend strategies to contain lateral movement and harden east-west traffic
- Support RFPs, solution briefs, and Bills of Materials (BoMs)
- Collaborate with sales, delivery, and product teams to ensure feasible, customer-aligned solutions
- Stay updated on threat trends, frameworks (MITRE ATT&CK, Zero Trust), and regulatory requirements
- Prepare and innovate on BoMs and technical solution documentation
- Participate in project enablement and knowledge sharing with internal teams
Key requirements
- 14+ years of cybersecurity experience with emphasis on network and endpoint security architecture
- Experience in technical pre-sales or consulting, translating requirements into secure designs
- Strong knowledge of firewalls, IDS/IPS, NAC, VPN, and network segmentation/micro-segmentation
- Experience with network modernization (SD-WAN, SASE, cloud-native security)
- Hands-on experience with endpoint protection/EDR platforms (CrowdStrike, SentinelOne, Microsoft Defender, Tanium)
- Familiarity with DNS security tools and threat containment strategies (Zscaler, Cisco Umbrella, Infoblox)
- Deep knowledge of Zero Trust Architecture and MITRE ATT&CK/NIST CSF
- Excellent communication to influence diverse stakeholders
- Experience supporting RFP/RFI processes and BoM development
- Industry certifications like CISSP, etc. (preferred)
- Excellent communication
- ability to influence stakeholders
- collaboration across cross-functional teams
- Zero Trust Architecture
- SD-WAN and SASE
- DNS security tools (Zscaler, Cisco Umbrella, Infoblox)
…
