Network Firewall Services Infrastructure Engineer
Job description
Closing date for applications: 18/08/2026 Location London, United Kingdom Job typePermanent | Contract typeFull Time Mostly Remote You’ll spend most of your time at home, working with your team digitally. You’ll come into an office or hub at least twice a month to collaborate with your colleagues. Managerial / Technical Lead This is a general indication and doesn’t always reflect day-to-day responsibilities. Check the job description for full details. #R-00283381 Join our digital revolution in NatWest Digital X In everything we do, we work to one aim. To make digital experiences which are effortless and secure. So we organise ourselves around three principles: engineer, protect, and operate. We engineer simple solutions, we protect our customers, and we operate smarter. Job description This role is based in the United Kingdom and as such all normal working days must be carried out in the United Kingdom. Join us as a Network Firewall Services Infrastructure Engineer Join us and collaborate in building the best possible network security platforms for public and private cloud environments Improve our products as you apply automation to provide testing and a route to live This is your chance to share thought leadership and best practice across the bank, while you’re developing solutions What you'll do As a Network Firewall Infrastructure Engineer, you’ll take the lead on designing and supporting enterprise firewall and network security services that make all the difference to our customers, as well as our strategic targets. This is a fantastic opportunity to advance your career in a highly innovative and supportive environment. You’ll collaborate with product owners to create roadmaps and manage the lifecycle of network security services, considering customer feedback, operational requirements, emerging threats and production issues. As you continue to manage the selection, implementation and maintenance of Fortinet technologies, you’ll ensure that our solutions comply with the bank’s requirements and responsibilities. You’ll also: Design, deploy and maintain Fortinet security solutions including FortiGate (FGT), FortiManager (FMG) and FortiAnalyzer (FAZ) Manage firewall policies, NAT configurations, VPN services and security profiles across enterprise environments Identify new ways to solve security challenges and enhance platform performance using modern security tooling Provide operational support for firewall and network security-related incidents and service requests Contribute to Infrastructure as Code and automation initiatives for firewall provisioning, policy management and compliance controls Build awareness of security best practices, design patterns and automation capabilities across the bank Work with key stakeholders to ensure secure and resilient service delivery Support security audits, vulnerability remediation activities and regulatory compliance requirements Perform security policy reviews, rule-base optimisation and firewall lifecycle management The skills you'll need To thrive in this role, you'll have experience in network security engineering, firewall administration and automation scripting using technologies such as Python, Ansible or Shell scripting. You'll possess a strong understanding of network security principles, firewall architectures and enterprise operational processes. You’ll also have strong hands-on experience administering and supporting FGT firewalls in large enterprise environments, along with experience managing FMG for centralised policy administration, device management and configuration compliance. You’ll also need experience using FAZ for logging, reporting, security analytics and operational troubleshooting, along with knowledge of Fortinet Security Fabric architecture and integrated security solutions and experience configuring and supporting IPSEC VPNs, SSL VPNs, SD-WAN and dynamic routing protocols including BGP and OSPF. We’ll expect you to bring a good understanding of Agile working practices and toolsets, with the ability to create the vision and roadmap for security platforms and services. Relevant Fortinet certifications such as NSE 4, NSE 5, NSE 7, FCSS or equivalent certifications would be advantageous In addition, you’ll have: Experience implementing security policies, intrusion prevention, web filtering, application control and threat protection services Knowledge of network protocols including TCP/IP, DNS, DHCP and load balancing concepts Experience with firewall automation, Infrastructure as Code and configuration management tooling, and experience developing CI/CD pipelines and automated deployment processes for network and security infrastructure Experience using monitoring, observability and security analytics tools to continuously improve services Understanding of cloud networking and security principles across AWS and hybrid cloud environments and strong troubleshooting, analytical and problem-solving skills Experience supporting highly available and resilient network security platforms Strong collaborative and communication skills, with the ability to clearly articulate technical concepts to both technical and non-technical stakeholder Your benefits breakdown Here’s a quick look at what your pay package and annual leave could look like if you get accepted for the role. We have a wide range of benefits to support you in your working life and beyond. Tap each segment for details. Your pay package 100% Base pay This is your base pay package that you take home every month. +10% Pension funding This is monthly funding paid towards your pension. up to +10% Benefit funding This is monthly funding paid towards a range of benefits you can choose from. Your leave allowance 30 days Annual leave You’ll also have the opportunity to purchase up to 5 additional days off. 3 days Volunteering Take time off to support the causes you’re passionate about. 3 days Training Take time to build the skills you need to grow your career. Total rewards package Welcome to our Bishopsgate hub Based only a few minutes’ walk from Liverpool Street Station, the central location of this office makes working there incredibly convenient. Everything you need is close by, so you can run errands, go to the gym, and socialise with friends and colleagues before and after work. Bishopsgate recently underwent a multi-year refurbishment programme to improve spaces and facilities as well as become more sustainable. Our tech stack Here’s just some of the technologies we use. Front end JavaScript ReactJS AngularJS Back end Python Java Microsoft Dynamics DevOps AWS GitLab Google Cloud Platform Data Kafka Hadoop PostgreSQL Snowflake