
Network Security Lead
- London
- Permanent
- Full-time
- Oversee, configure, deploy, and maintain security measures for the bank’s network infrastructure, including firewalls, intrusion detection/prevention systems (IDS/IPS), WAF and VPNs.
- Provide oversight and management of security tools within the bank’s network such as web filtering, mail security, NAC, endpoint security, DLP, data classification and security tools, ensuring regular policy reviews are completed and recommendations actioned.
- Monitor network traffic and logs to identify and mitigate potential threats or vulnerabilities.
- Manage and optimise access controls, ensuring proper segmentation and secure connectivity across the network
- Lead the response to network security incidents, including containment, root cause analysis, and remediation.
- Collaborate closely with Information Security to address vulnerabilities identified through audits, assessments, or penetration tests within agreed timeframes.
- Provide Level 2/3 support for network security issues, ensuring timely resolution to minimise business impact.
- Work closely with the Network Lead, Firewall Lead, Technical Services Lead, Technical Services Manager and Information Security teams to align security measures with network architecture and operational goals.
- Engage with Engineering and IT Operations teams to ensure secure integration of new systems and applications.
- Partner with external vendors and service providers to maintain and enhance security tools and services.
- Ensure network security measures comply with regulatory and industry standards, including GDPR, PCI-DSS, and ISO 27001.
- Maintain up-to-date documentation of network security configurations, policies, and procedures.
- Conduct regular reviews of network security systems to ensure alignment with best practices and regulatory requirements.
- Stay updated on emerging cybersecurity threats and technologies, recommending proactive measures to address risks.
- Implement automation tools to streamline security monitoring and response efforts.
- Lead projects to upgrade legacy security tools to modern, scalable solutions.
- Bachelor’s degree in Computer Science, Information Security, or a related field or relevant experience.
- Proven experience of managing security tools within an enterprise network (e.g., mail and web filtering, DLP, WAF, CASB etc)
- Proven experience in managing and securing enterprise network infrastructures.
- Expertise in network security tools and technologies, including firewalls, IDS/IPS, and access control systems.
- Strong knowledge of network protocols (e.g., TCP/IP, BGP, OSPF) and encryption technologies.
- Familiarity with security monitoring tools (e.g., Grafana, Wireshark, SolarWinds).
- Solid understanding of regulatory compliance frameworks and security standards.
- Certifications such as CISSP, CCNP Security, CEH, or equivalent.
- Experience in the banking or financial services sector.
- Experience of Forcepoint suite of products, Varonis, Proofpoint and Palo Alto
- Knowledge of cloud-based security measures and hybrid network environments.
- Strong knowledge of network protocols (e.g., TCP/IP, BGP, OSPF) and encryption technologies.
- Familiarity with automation frameworks for security operations.
- Competitive salary and company bonus
- Competitive holiday allowance plus bank holidays
- Option to purchase an additional 10 days holiday
- Pension contribution and life assurance
- Income protection scheme and season ticket loan
- Medical cover (after probation)
- Electric car scheme and money coach (after probation)
- Hybrid working pattern: 3 days in office & 2 WFH