Network Security Specialist
Listed on 2026-07-06
-
IT/Tech
Cybersecurity, Network Security
Senior Network Security Specialist – London Metal Exchange (LME). The LME is the world centre for industrial metals trading, with the majority of global non‑ferrous futures business conducted on its three trading platforms totalling $21 trillion, 191 million lots and 4 billion tonnes notional.
Overall Purpose of RoleAs a Network Security Specialist you will help design, implement and govern the network security controls that protect our modern, high‑performance enterprise network. You will shape the network security roadmap, define security policies and standards that drive Zero Trust and micro‑segmentation, and work across on‑premises, cloud, and containerised environments to ensure consistent protection across all connectivity layers.
Responsibilities- Design, implement and maintain enterprise network security controls including firewalls, proxies and secure access services aligned to business and regulatory requirements.
- Act as the technical authority for Fortinet, Palo Alto Networks and Zscaler platforms.
- Ensure security policies are consistently enforced across data centre, campus, cloud and hybrid environments.
- Lead complex troubleshooting of network security issues, balancing security, performance and availability.
- Help define the network security roadmap, aligned with wider technology and security strategies.
- Design and evolve Zero Trust network architectures, including identity‑aware access and least‑privilege principles.
- Define and implement micro‑segmentation strategies for traditional and containerised workloads.
- Provide design input into new initiatives (cloud adoption, Kubernetes/Open Shift, automation, AI platforms).
- Evaluate new security technologies and patterns, producing clear recommendations and design artefacts.
- Develop and maintain network security standards, patterns and policy definitions.
- Ensure adherence to security policies through design reviews, operational controls and continuous improvement.
- Partner with Information Security to translate policy into enforceable technical controls.
- Support audits, risk assessments and regulatory obligations by providing clear evidence of control implementation.
- Act as a technical leader within the Connectivity Engineering Team, mentoring engineers and setting best practice.
- Work closely with Infrastructure, Platform, and Application teams to embed security by design.
- Provide subject‑matter expertise to project teams and senior stakeholders.
The ideal candidate will hold a bachelor’s degree in Computer Science, Information Technology, or a related discipline, or possess an equivalent combination of education, technical training, and practical experience. Relevant industry certifications (e.g. PCNSE, NSE, CCNP Security, or CISSP) or substantial real‑world application are expected, while ITIL and/or PMI certification is considered an advantage.
Required Knowledge and Level of Experience- Minimum 5 years’ experience operating in regulated, mission‑critical environments such as financial services or critical infrastructure, with deep hands‑on expertise in enterprise network security engineering and large‑scale network infrastructure support.
- Experience defining and implementing network segmentation and micro‑segmentation strategies.
- Strong understanding of Zero Trust networking principles and identity‑aware access controls.
- Strong experience designing, implementing and optimising firewall and proxy security policies.
- Deep hands‑on experience with Palo Alto Networks (PAN‑OS, Panorama, policy design), Fortinet (Forti Gate, Forti Manager, Forti Analyzer) and Zscaler (ZIA, ZPA, Zero Trust Exchange).
- Experience securing hybrid environments spanning on‑prem, cloud and containerised platforms.
- Exposure to security controls and design for Kubernetes/Open Shift.
- Experience with automation and infrastructure‑as‑code approaches for deploying security controls.
- Wide exposure to routing, switching, load balancing and security architectures, with extensive operational and engineering experience.
- Strong grounding in core networking technologies and protocols, including TCP/IP, BGP, OSPF, VLANs, VRF, VPN, VXLAN, NAT, ACLs, DNS.
- Hand…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: