About The Position

The Network Security Principal Engineer is responsible for designing, implementing, and overseeing advanced network security controls to protect organizational assets against evolving threats. This role manages perimeter security products including firewalls, intrusion detection systems, proxy, remote access as well as network access control (NAC) and network segmentation solutions. The Network Security Lead enforces network security policies, standards, and baselines, and drives automation initiatives including deploying Infrastructure as Code via CI/CD pipeline and configuration management. The position partners closely with infrastructure, cloud, and cybersecurity teams, execute high-impact network changes, and manage risk and compliance activities. You will join Barclays at a pivotal moment in our Networks Modernization journey, playing a critical role in shaping and delivering the transformation of our strategic network security platforms and connectivity services, embedding security-by-design and zero-trust principles across the network estate. Production Network Engineering is a new, mission-aligned operating model within the Network Product Design and Engineering domain. This domain is responsible for the design, build, and run of the underlying strategic network infrastructure platforms and the over-the-top connectivity products and services that enable systems, colleagues, guests, and partners. As a senior technical leader, you will have the opportunity to shape the future of our global network infrastructure, influencing how millions of customers, colleagues, and partners connect and collaborate through secure-by-design platforms, engineering standards, and technical decision-making. This role operates within the Product Operating Model, emphasizing product-centric delivery, clear ownership, cross-functional collaboration, and agile ways of working, with a strong focus on reducing risk while enabling safe and predictable change at scale.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or related field; Master’s degree preferred.
  • Relevant certifications such as CISSP, CCNP Security, AWS/Azure Security, or equivalent.
  • 10+ years of experience in network security engineering or architecture roles, including hands-on management of firewalls, IDS/IPS, proxy, segmentation, and access controls.
  • Demonstrated experience with DevOps practices, CI/CD, configuration management tools (e.g., Ansible, Terraform), and Infrastructure as Code.
  • Thorough understanding of risk management, regulatory compliance, and incident response procedures.
  • 8+ years’ experience leading engineering teams, with a strong track record building high‑performance, collaborative cultures
  • Deep experience in network security domains, including Network Access Control, Zero Trust Network Access, network segmentation, firewalls, and IDS/IPS
  • Strong networking fundamentals (routing and switching)
  • Experience deploying Infrastructure as Code via CI/CD pipelines
  • Proven vendor and service‑provider management
  • Experience executing network infrastructure audits and supporting responses to security incidents
  • Key Skills Network Security Domain Leadership: Deep experience leading and shaping network security solutions across Network Access Control, Zero Trust Network Access, network segmentation, network firewalls, and intrusion detection and prevention technologies.
  • Senior Engineering Leadership & Delivery: 8+ years’ experience leading engineering teams, fostering a high-performance culture, and delivering complex initiatives aligned to organisational objectives.
  • Advanced Networking Fundamentals: Strong technical foundation in enterprise networking, including routing and switching, enabling secure and scalable network designs.
  • Automation & Modern Engineering Practices: Proven experience deploying Infrastructure as Code using CI/CD pipelines and configuration management to improve reliability, speed, and control.
  • Risk, Audit & Vendor Management: Experience executing network infrastructure audits, identifying and assessing vulnerabilities, supporting responses to security incidents, and managing technology vendors and service providers in line with standards and contracts.

Nice To Haves

  • Hybrid & Cloud Connectivity: Experience integrating enterprise networks with AWS and/or Azure.

Responsibilities

  • Design, deploy, and manage perimeter security solutions including firewalls, intrusion detection/prevention systems and proxy controls to safeguard network boundaries and critical services.
  • Design, deploy, and manage network access control (NAC) systems, monitor network activity, and lead incident response efforts for network-related security events.
  • Adopt Zero Trust architecture and solutions for users to securely access internal applications, as well as accessing SaaS and Internet Deploy Macro level segmentation controls to reduce Unauthorized Lateral Movement risks.
  • Enforce network security policies, standards, and baselines, ensuring consistent application across all environments.
  • Lead automation initiatives within the network security domain, utilizing DevOps practices, CI/CD pipelines, configuration management, and Infrastructure as Code to improve efficiency and reliability.
  • Collaborate with infrastructure, cloud, and cybersecurity teams to design and implement integrated security solutions and support complex change management activities.
  • Conduct risk assessments, manage compliance with regulatory requirements, and participate in audits related to network security controls.
  • Document processes, maintain operational metrics, and produce reports for management and compliance purposes.
  • Support incident response and problem management for critical network issues, ensuring rapid resolution and root cause analysis.

Benefits

  • Barclays employees are eligible for a suite of a competitive and generous employee benefits, including medical, dental and vision coverage, 401(k), life insurance, and other paid leave for qualifying circumstances.
  • This position is eligible for an incentive award.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service