Technical Skills & Competencies
AlgoSec & Security Policy Management
Hands-on experience administering and supporting the AlgoSec Security Management Suite, including:
- Firewall Analyzer
- FireFlow
- ObjectFlow
- AppViz
- Experience utilising AlgoSec to automate Firewall policy management, risk analysis, access recertification, change governance, and compliance reporting.
- Strong understanding of application connectivity mapping, traffic flow analysis, and security policy optimisation.
Firewall & Network Security Technologies
Extensive experience managing large-scale, multi-vendor Firewall environments, including:
- Palo Alto Networks
- Fortinet
- Cisco ASA/Firepower
- Check Point
- Strong understanding of Firewall architecture, policy administration, NAT, VPN technologies, segmentation, and micro-segmentation.
- Experience performing Firewall rule reviews, recertification exercises, policy optimisation, and risk reduction initiatives.
- Knowledge of network access controls, intrusion prevention systems (IPS), intrusion detection systems (IDS), DDoS protection, and secure web gateway technologies.
Network Security Operations
Strong operational experience supporting enterprise network security environments.
- Experience managing security incidents, Firewall requests, policy exceptions, and operational support within regulated organisations.
- Understanding of Firewall compliance management, governance processes, audit requirements, and regulatory controls.
- Experience working within ITIL-aligned Incident, Problem, Change, and Service Management frameworks.
Security Automation & Engineering: Experience automating network security processes, including:
- Firewall rule life cycle management
- Policy validation
- Compliance reporting
- Security control enforcement
- Operational workflows
- Proficiency in PowerShell, Python, Bash, and API-based integrations to support automation objectives.
- Experience with automation platforms and configuration management tools such as Ansible, Terraform, Chef, or equivalent solutions.
Additional Professional Competencies
Strong stakeholder management and relationship-building skills across technical and executive audiences.
- Ability to influence and drive security improvements across infrastructure, cloud, engineering, and operational teams.
- Strong analytical approach to risk identification, remediation, and operational optimisation.
- Excellent written and verbal communication skills with the ability to present complex technical issues in a clear and concise manner.
- Demonstrated ability to balance security, operational resilience, regulatory obligations, and business requirements.
Additional Desirable Skills & Experience
Experience implementing enterprise Firewall governance programmes using AlgoSec or equivalent policy management platforms.
- Experience with Zero Trust Network Architecture (ZTNA), SASE, and Security Service Edge (SSE) technologies.
- Experience within large-scale financial services, banking, or other highly regulated environments.
- Knowledge of regulatory frameworks including PCI-DSS, ISO27001, NIST Cyber Security Framework, CIS Controls, and relevant financial industry regulations.
- Experience supporting network security transformation, cloud migration, and hybrid networking programmes.
- Familiarity with software-defined networking (SDN), network segmentation strategies, and modern secure connectivity solutions.
Professional Certifications (Desired): CISSP (Certified Information Systems Security Professional)
- CCNP Security/CCIE Security
- Palo Alto PCNSE
- Check Point CCSA/CCSE
- Azure Security Engineer Associate (AZ-500)
- AWS Security Specialty
- Certified Cloud Security Professional (CCSP)
- GIAC Security Certifications (GCIA, GCIH, GMON or equivalent)