Role definition
We are looking for a proactive Network Engineer L3 to Partner with internal stakeholders and technology vendors to evaluate, select, and implement Zero Trust security solutions.
This is fixed term contract role with HCLTech.
Location - London, UK
Mode - 3 days onsite in a week
Zero Trust & Network Security Engineering
Partner with internal stakeholders and technology vendors to evaluate, select, and implement Zero Trust security solutions.
Design and engineer scalable, resilient, and secure enterprise network and security architectures.
Collaborate across Network Engineering, Security Engineering, IAM, Cloud, EUC, and Operations teams to deliver security transformation initiatives.
Contribute to technical strategy, standards, reference architectures, and design patterns.
Deliver solutions tailored to internal business requirements.
Articulate design rationale, flexibly adapt solutions, and iterate designs when required.
Develop High-Level Designs (HLD), Low-Level Designs (LLD), migration plans, operational procedures, and architecture documentation.
Support vendor evaluations, Proof of Concepts (PoCs), pilot deployments, and production rollouts.
Lead technical assessments, architecture reviews, root cause analysis, and engineering recommendations.
Design, deploy, and operate Palo Alto, Fortinet or Cisco NGFW platforms and their respective (Cloud) Manager, (Strata Cloud, FortiManager, Cisco Security Cloud)
Design and implement SASE/SSE solutions for enterprise-scale deployments.
Implement centralized security management, policy governance, logging, monitoring, and reporting using the Vendors ecosystem or solutions like Tufin or Algosec
Network Security & Segmentation
Design and implement on-premises Zero Trust Enforcement Points (NGFW)
Develop segmentation and micro-segmentation strategies across data centres, campuses, cloud, and branch environments.
Define secure traffic flows and trust boundaries.
Support migration from traditional network-centric security models to Zero Trust architectures.
Enterprise Networking
Routers, switches, LAN/WAN design and engineering.
VPN technologies, IPSec, TLS encryption, and NAC integration.
Hands-on experience with:
- Cisco ASR / ISR / Catalyst 8k
- Cisco Catalyst and Nexus platforms
- Arista switching platforms
Strong experience with:
- BGP
- OSPF
- EVPN
- VXLAN
- MPLS
- VRF-based segmentation
Deep understanding of
- Layer 2 and Layer 3 network technologies.
Security & Integration
Experience integrating network security solutions with:
Microsoft Entra ID
Active Directory
Cisco ISE / NAC platforms
EDR/XDR solutions
SIEM platforms
ServiceNow
Cloud platforms (Azure, AWS, GCP)
Qualifications Required
- 8+ years of experience in Network Security Engineering and Enterprise Networking.
- Demonstrated experience designing and implementing: SASE/SSE, ZTNA, Network Segmentation, Identity-Based Access Controls, Enterprise Firewall architectures.
- Strong understanding of Zero Trust Architecture principles.
- Ability to produce technical assessments, architecture reviews, PoCs, migration strategies, and engineering documentation.
- Strong troubleshooting and root cause analysis capabilities.
- Excellent written and verbal communication skills.
Preferred
- Palo Alto, Fortinet certification
- CCNP Enterprise / Security
- CCIE Enterprise Infrastructure / Security
- CISSP
- Experience within large-scale financial services environments.
- Knowledge of NIST Zero Trust Architecture, DORA, NIS2, and modern cybersecurity frameworks.
Benefits
A supportive, diverse, and global team with a brilliant culture.
Competitive compensation and benefits that includes up to 20 days’ vacation per year, various insurances like Term life and Business Travel insurance.
These are apart from the statutory benefits applicable in the country.
Employee benefits are regulated by an internal policy that contains full details regarding the entitlement and conditions for the benefits as per the law of the land.
Great opportunities to make the role your own, upskill yourself and get involved with exciting projects.
Total Wellbeing is our focus. Alongside your professional excellence, you join the likeminded colleagues to create a larger impact within the company and society at large in your chosen area of passion - CSR Council, Diversity Council, Women Connect, Sparks – Engagement Champion to name a few.