This role is based in the United Kingdom and as such all normal working days must be carried out in the United Kingdom.
Join us as a Network Firewall Services Infrastructure Engineer
- Join us and collaborate in building the best possible network security platforms for public and private cloud environments
- Improve our products as you apply automation to provide testing and a route to live
- This is your chance to share thought leadership and best practice across the bank, while you’re developing solutions
As a Network Firewall Infrastructure Engineer, you’ll take the lead on designing and supporting enterprise firewall and network security services that make all the difference to our customers, as well as our strategic targets. This is a fantastic opportunity to advance your career in a highly innovative and supportive environment.
You’ll collaborate with product owners to create roadmaps and manage the lifecycle of network security services, considering customer feedback, operational requirements, emerging threats and production issues. As you continue to manage the selection, implementation and maintenance of Fortinet technologies, you’ll ensure that our solutions comply with the bank’s requirements and responsibilities.
You’ll also:
- Design, deploy and maintain Fortinet security solutions including FortiGate (FGT), FortiManager (FMG) and FortiAnalyzer (FAZ)
- Manage firewall policies, NAT configurations, VPN services and security profiles across enterprise environments
- Identify new ways to solve security challenges and enhance platform performance using modern security tooling
- Provide operational support for firewall and network security-related incidents and service requests
- Contribute to Infrastructure as Code and automation initiatives for firewall provisioning, policy management and compliance controls
- Build awareness of security best practices, design patterns and automation capabilities across the bank
- Work with key stakeholders to ensure secure and resilient service delivery
- Support security audits, vulnerability remediation activities and regulatory compliance requirements
- Perform security policy reviews, rule-base optimisation and firewall lifecycle management
To thrive in this role, you'll have experience in network security engineering, firewall administration and automation scripting using technologies such as Python, Ansible or Shell scripting. You'll possess a strong understanding of network security principles, firewall architectures and enterprise operational processes. You’ll also have strong hands-on experience administering and supporting FGT firewalls in large enterprise environments, along with experience managing FMG for centralised policy administration, device management and configuration compliance.
You’ll also need experience using FAZ for logging, reporting, security analytics and operational troubleshooting, along with knowledge of Fortinet Security Fabric architecture and integrated security solutions and experience configuring and supporting IPSEC VPNs, SSL VPNs, SD-WAN and dynamic routing protocols including BGP and OSPF.
We’ll expect you to bring a good understanding of Agile working practices and toolsets, with the ability to create the vision and roadmap for security platforms and services. Relevant Fortinet certifications such as NSE 4, NSE 5, NSE 7, FCSS or equivalent certifications would be advantageous
In addition, you’ll have:
- Experience implementing security policies, intrusion prevention, web filtering, application control and threat protection services
- Knowledge of network protocols including TCP/IP, DNS, DHCP and load balancing concepts
- Experience with firewall automation, Infrastructure as Code and configuration management tooling, and experience developing CI/CD pipelines and automated deployment processes for network and security infrastructure
- Experience using monitoring, observability and security analytics tools to continuously improve services
- Understanding of cloud networking and security principles across AWS and hybrid cloud environments and strong troubleshooting, analytical and problem-solving skills
- Experience supporting highly available and resilient network security platforms
- Strong collaborative and communication skills, with the ability to clearly articulate technical concepts to both technical and non-technical stakeholder