> Markdown version of [/jobs/ext/1620690-cybersecurity-engineer-for-edge-network-security](https://www.wearedevelopers.com/jobs/ext/1620690-cybersecurity-engineer-for-edge-network-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer For Edge Network Security - **Company:** Roche - **Location:** Madrid, Spain - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Complex Networks, Cyber Security, DDoS Mitigation, Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Packet Analyzer, Ansible, Zero Trust Network Access, Software Engineering, Transport Layer Security, Google Cloud, System Availability, Multi-Cloud, Firewalls (Computer Science), Information Technology, Fortinet, Terraform, User Identification - **Published:** July 1, 2026 - **Apply:** https://es.trabajo.org/oferta-3206-5131865549910bf06da4e2e00bdb1ce5 ## About the Role Experteer Overview In this role you design and operate Roche's perimeter and cloud security stack, focusing on edge defense and multi-cloud protection. You'll drive end-to-end deployment, modernization, and automation of NGFW, DDoS mitigation, and ZTNA, enabling secure access across global networks. You work with Cloud, Infra, and Incident Response teams to sustain a resilient security posture. This opportunity lets you shape a scalable security platform in a mission-driven, inclusive environment.Compensaciones / Beneficios - Lead end-to-end deployment, configuration, and maintenance of Next-Generation Firewalls (Palo Alto, Fortinet) with high availability and optimal inspection across global entry points - Architect and implement ZTNA solutions to replace legacy VPNs and enforce granular, identity-aware access policies - Engineer and manage cloud-native security controls across AWS, Azure, and GCP for consistent security posture in hybrid/multi-cloud - Design and refine DDoS protection strategies and automated threat prevention policies (SSL decryption, IPS/IDS) for critical infrastructure - Oversee edge solutions from design to global rollout and continuous optimization, ensuring reliable, scalable security controls - Proactively identify edge computing and SASE trends to inform product roadmap and maintain competitive advantage in network defense - Serve as lead engineer for complex network security escalations and perform deep-packet analysis for long-term fixes - Develop advanced monitoring dashboards and telemetry for real-time visibility into edge traffic and security health - Manage security policies as code and improve automation workflows and cross-platform orchestration - Build automated workflows and APIs to enable internal dev teams to consume edge security services autonomously - Available for on-call support on a rotating schedule to ensure continuity of global edge security servicesResponsabilidades - Bachelor's degree in Computer Science, Software Engineering, Information Security, or related field - 5+ years designing and managing enterprise-grade firewall environments (Palo Alto and/or Fortinet) - Proven experience implementing network security controls in at least two major cloud providers (AWS, Azure, or GCP) - Hands-on experience with Palo Alto NGFWs (TLS inspection, user identification, WildFire, Threat Prevention, URL Filtering, GlobalProtect) - Automation experience using Ansible, Terraform, or Python to manage security infrastructure at scale - Experience handling security controls in large, global environments with diverse device profiles - Experience in highly regulated industries (Pharma, Healthcare, Finance) is a plus - NGFW, DDoS mitigation, ZTNA and SASE familiarity - Cloud networking fundamentals and protocols (VPCs, VNETs, Transit Gateways, Cloud Firewalls)Requisitos principales - ## Related Videos - [Dev & Test in the Cloud? Deploy your cloud environments with Ansible & Terraform](https://www.wearedevelopers.com/videos/1607-dev-test-in-the-cloud-deploy-your-cloud-environments-with-ansible-terraform) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [WeAreDevelopers LIVE - Back to CODE100](https://www.wearedevelopers.com/videos/1909-wearedevelopers-live-back-to-code100) - [Infrastructure as Code: The Developer's Secret Weapon](https://www.wearedevelopers.com/videos/1221-infrastructure-as-code-the-developer-s-secret-weapon) - [Terraform for Developers](https://www.wearedevelopers.com/videos/3-terraform-for-developers) - [Implementing Feature Environments with AWS and Terraform](https://www.wearedevelopers.com/videos/531-implementing-feature-environments-with-aws-and-terraform) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)