EU remote
Network Engineer (Hybrid Infrastructure & Cloud)
About this role
Job Title: Network Engineer (Hybrid Infrastructure & Cloud) Experience: 7–10 years of experience in enterprise network and security environments, preferably within Banking, Financial Services, or regulated industries Job Purpose Manage all aspects of Network and Security in the organization. This is including but is not limited to, Networking, Structured Cabling, Data Centre Facilities, Security (both logical and Physical) and Telephony.
Key Responsibilities · Administer and maintain all IT Network and Security aspects, configure and install various network devices and services (e.g. Routers, Switches, Firewalls). · Perform maintenance and upgrades for managed network and network security devices including firmware upgrades, hotfixes, hardening, and security configuration changes. · Design and operate Azure network connectivity using hub and spoke architecture to enforce segmentation, secure routing, and controlled east west traffic flows.
· Work within established configuration and change management policies to ensure awareness, approval and success of changes made to the network infrastructure. · Select and implement security tools, policies, and procedures in conjunction with the company's security team. · Integrate comprehensive metrics into the security posture of the organization. · Identify areas of weakness and vulnerability and recommends changes to meet security standards.
· Facilitate security vulnerability assessments for internal and external penetration testing. · Provide technical direction and guidance to other Security Engineers, Information Technology, and the business to align with regulatory, security requirements. · Monitor Network performance and ensure system availability and reliability. · Review the logs of all devices collected through Security Event Log Manager Device. Provide Level-2/3 support and troubleshooting to resolve issues.
· Liaise with vendors and customer IT personnel for problem resolution. · Ensure all Network and system configuration are appropriately documented. Cloud Management & Governance (Network & Security Scope) · Design, implement, and maintain secure cloud network architectures including Virtual Networks, Subnets, NSGs, Route Tables, VPN Gateways, and ExpressRoute connectivity. · Enforce cloud networking governance standards including IP addressing schemes, segmentation policies, and security zoning.
· Ensure compliance with cloud security best practices and regulatory requirements for network isolation and traffic control. · Implement and maintain cloud firewall policies, network access controls, and secure connectivity between on-premises and cloud environments. · Monitor cloud network usage and optimize routing and bandwidth utilization. · Support cloud security posture management by enforcing least privilege access and secure connectivity models.
· Participate in cloud architecture reviews to ensure network resiliency, scalability, and high availability. Managed Service Partner Coordination · Act as technical focal point for managed service providers handling network operations, SOC, NOC, and security monitoring services. · Coordinate incident response activities with service partners during network outages or security events. · Review managed service performance reports and ensure SLA and KPI compliance.
· Validate vendor configuration changes and security updates before production deployment. · Participate in service review meetings and provide technical feedback on operational improvements. · Support onboarding of new vendors and technologies including knowledge transfer sessions and technical documentation validation. · Escalate critical operational risks and performance gaps to IT management. Performance Optimization & Troubleshooting · Continuously monitor network performance, latency, throughput, and packet loss across LAN, WAN, and cloud connectivity.
· Identify performance bottlenecks and implement optimization strategies including QoS tuning, routing optimization, and firewall rule cleanup. · Perform root cause analysis (RCA) for major incidents and recurring network or security issues. · Conduct proactive health checks on firewalls, switches, routers, and VPN gateways. · Optimize security device performance by reviewing logging levels, policy efficiency, and inspection rules.
· Support capacity planning and forecast network growth requirements. · Participate in disaster recovery testing and network resilience validation. Collaboration & Documentation · Work closely with Infrastructure, Cloud, Application, and Information Security teams to ensure end-to-end network and security alignment. · Maintain up-to-date network topology diagrams, firewall rule documentation, IP address management records, and cloud architecture diagrams.
· Document standard operating procedures (SOPs) for network operations, incident handling, and security changes. · Support audit activities by providing network configuration evidence and security compliance documentation. · Participate in change advisory board (CAB) meetings and contribute technical risk assessments. · Share technical knowledge with junior engineers and operations teams through internal documentation and training sessions.
Essential: Bachelor’s degree in computer science, Information Technology, Network Engineering, Cybersecurity, or related discipline. Desirable: · Cisco Certified Network Associate (CCNA) – Mandatory or Strongly Preferred. · Cisco Certified Network Professional (CCNP) – Advantage · Fortinet NSE (NSE 4 / NSE 5 / NSE 7) or equivalent firewall certification · Strong experience in enterprise networking including TCP/IP, VLANs, routing, switching, VPN, firewall technologies, and LAN/WAN infrastructure management.
· Strong experience in implementing and managing firewalls, IPS/IDS, VPNs, WAF
Source listing: workable_qodeworld