- Company Name
- RedRock Resourcing
- Job Title
- Network / Platform Engineer - Canary Wharf - New Role
- Job Description
-
Job Title: Network / Platform Engineer
Role Summary
Design, implement, and maintain secure cloud and on‑prem network solutions for a financial services organization. Focus on firewall, WAF, VPN, and SASE technologies, ensuring robust threat prevention, segmentation, and reliable access for enterprise users.
Expectations
- Apply advanced knowledge of Azure networking and cloud security.
- Deploy and manage multi‑vendor security platforms (Check Point, Palo Alto, Cisco).
- Operate perimeter defenses and next‑generation firewalls, including global load balancing and web application protection.
- Oversee authentication, PKI, and secure wireless infrastructures.
Key Responsibilities
- Configure, update, and monitor Azure Virtual Networks, NSGs, and VPN gateways.
- Deploy and tune Check Point, Palo Alto, and Cisco firewalls for perimeter and internal security.
- Implement and maintain Web Application Firewalls (SaaS, on‑prem, Azure).
- Design and operate SSL VPN and SASE solutions to support remote access.
- Enforce macro/micro‑segmentation and tagging policies across data centers and cloud resources.
- Manage Global Server Load Balancing (GSLB) deployments.
- Administer Network Access Control (NAC) via 802.1X, MAB, and device profiling.
- Ensure secure Wi‑Fi deployments (encryption, authentication, intrusion prevention).
- Oversee RADIUS/TACACS+ authentication and PKI infrastructure for certificate management.
- Conduct vulnerability assessments, penetration tests, and continuous compliance monitoring.
- Collaborate with cross‑functional teams to troubleshoot complex network and security incidents.
Required Skills
- Microsoft Azure networking & security (subnets, NSGs, VPN, ExpressRoute).
- Check Point, Palo Alto Networks, and Cisco firewall (including ASA, Firepower).
- Web Application Firewall (WAF) administration (SaaS, on‑prem, Azure).
- SSL VPN, SASE architecture, and secure remote access.
- Network segmentation, tagging, macro/micro policies.
- Global Server Load Balancing (GSLB).
- NAC implementation (802.1X, MAB, profiling).
- Wi‑Fi security (encryption/protocols, intrusion prevention).
- RADIUS/TACACS+ and PKI/certificate lifecycle.
- Strong scripting (PowerShell, Bash) and automation tools (Ansible, Terraform).
- Incident response, threat hunting, and security analytics.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Technology, or related field.
- Preferred certifications:
- Microsoft Certified: Azure Solutions Architect / Engineer
- Check Point Certified Security Administrator (CCSA) or Check Point Certified Security Expert (CCSE)
- Palo Alto Networks Certified Network Security Administrator (PCNSA)
- Cisco Certified Network Associate (CCNA) Security / Cisco Certified Network Professional (CCNP) Security
- Certified Information Systems Security Professional (CISSP) or equivalent.