Network Security Engineer
QAD
Birmingham, England, United Kingdom
Job Description We are looking for a Network Security Engineer with experience in implementing Web Application Firewalls. The role requires strong and vast networking skills that span many different types of technologies and architectures. The position will demand a profound comprehension of emerging security, networking, and compliance trends and technologies that include both cloud and on-premise architectures. The preferred location for this remote role is in the U.K. or in the Eastern or Central time zones of the U.S. Very minimal travel required, maybe 1-2 times a year. What You’ll Do: Design, Architect, and assist with the implementation of Web Application Firewalls across corporate and customer resources. Recommend WAF policies and content filtering using established baselines and templates. Assist with network security gap analysis, control mapping, data flow diagrams, and process development. Interpret network security processes to identify potential risks and compliance concerns. Provide maintenance recommendations and on-going monitoring for security events on internal and perimeter network systems. Research the latest technologies, threats, and evolving landscape around network security to produce recommendations to QAD leadership Qualifications Professional degree: A bachelor's degree in a relevant field such as Computer Science, Information Technology, Cybersecurity, or a related discipline Cisco Certified Network Associate (CCNA), Cisco Certified Network Professional (CCNP), or certifications from firewall vendors like Check Point, Palo Alto Networks, or Fortinet may be required or beneficial. Cloud Certifications: like AWS Certified Security – Specialty or Google Cloud Professional Cloud Security Engineer Web Application Firewall (WAF) Certifications: such as Cloudflare Certified Security Professional (CCSP). Networking Certifications: like CompTIA Network+ or Cisco's CCNA 5+ years experience with AWS, GCP, and cloud architectures. Broad hands-on experience with firewalls. Experienced in implementing Cloudflare or similar WAFs from scratch. Strong understanding of TCP/IP, IPSec, and routing protocols. Comfortable with DNS and SSL Certificate management Familiar with Infrastructure as Code Ideally familiar with DDoS mitigation techniques and threat actor TTPs for network-based attacks, but not required.