> Markdown version of [/jobs/ext/2951432-network-and-security-service-delivery-engineer](https://www.wearedevelopers.com/jobs/ext/2951432-network-and-security-service-delivery-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Network and Security Service Delivery Engineer - **Company:** National Energy System Operator - **Location:** Sindlesham, UK - **Salary:** £60,000.0 - £70,000.0 - **Contract:** Permanent contract - **Skills:** Agile Methodology, Amazon Web Services, Microsoft Azure, Border Gateway Protocol, Cloud Computing, Cloud Computing Security, Cloud Engineering, Complex Networks, Cyber Security, DevOps, Domain Name System (DNS), Hypertext Transfer Protocols (HTTP), Internet Protocol Security (IP SEC), Network Packet, Information Systems Security Architecture Professional, Python (Programming Language), Network Security, Routing, Network Protocols, Open Shortest Path First (OSPF), Ansible, Zero Trust Network Access, Sherwood Applied Business Security Architecture, TCP/IP, Cloud Platform System, HybridCloud, Firewalls (Computer Science), Cloudformation, Togaf, Enterprise Integration, Fortinet, Terraform - **Published:** September 17, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5887454098 ## About the Role * Extensive demonstrable experience in network security, with significant hands-on expertise in a dedicated Architecture or Lead role. * Proven ability to see the "big picture" and design holistic solutions that balance security, performance, and cost. You don't just configure firewalls; you design the framework in which they operate. * Expert-Level Technical Knowledge: + Deep expertise in routing and switching (BGP, OSPF) and network protocols (TCP/IP, DNS, HTTP/2, TLS 1.3, IPsec, SDWAN). + Advanced knowledge of on-premise and cloud-based firewalls (Palo Alto, Fortinet, ZScaler). + Strong understanding of Cloud Native Networking in AWS/Azure (VPCs, PrivateLink, Security Groups, WAF). * Network Principal level: TOGAF, SABSA, or CISSP-ISSAP. * Vendor Professional/Expert: CCNP Security or CCIE, PCNSE (Palo Alto), NSE 7/8 (Fortinet * Automation & Scripting: Experience with infrastructure as code (Terraform, CloudFormation) and automation using Python, Ansible, or similar to enforce security at scale. * Exceptional ability to create clear architectural diagrams, HLD documents, LLD documents and presentations for consumption by executive leadership (CISO, CIO) and peer teams. You can explain a complex packet flow to an engineer and a business risk to a manager. * Strong understanding of ITIL and Agile methodologies within a security context. Experience with governance frameworks like ISO 27001, NIST, or SOC2. * Expert understanding of security monitoring, operational reporting, alerting, and security observability platforms across enterprise and cloud environments. * Experience defining meaningful security metrics, KPIs, KRIs and executive reporting that provide visibility of security posture, service performance, compliance, risk exposure, and operational resilience. * Ability to govern enterprise-wide reporting frameworks for: + Firewall policy compliance, Security incidents, Threat activity, Rule recertification, Vulnerability exposure, Change compliance, Segmentation effectiveness, Regulatory compliance ## Description NESO seeks a visionary Network Security Service Delivery Engineer to lead the strategic design and evolution of our network security infrastructure. This role is responsible for setting the direction and defining the architectural blueprints that underpin NESO's secure, scalable, and resilient energy system. The Network Security Engineering role bridges business objectives with technical execution, ensuring our network security aligns with NESO's mission and supports long-term innovation and reliability. * Define and govern the architectural framework for NESO's network security, including firewalls, Zscaler, and emerging technologies. * Translate business strategy into actionable technical solutions, creating clear architectural standards and roadmaps. * Design scalable, secure network solutions that support NESO's operational and strategic goals. * Collaborate with cloud teams and partners to integrate security architectures across hybrid and cloud environments. * Lead the adoption of automation and DevOps principles to enhance the efficiency, agility, and reliability of security operations. * Mentor and guide engineering teams, providing technical direction and fostering continuous learning and professional growth. * Serve as a technical authority, advising internal and external stakeholders on network security architecture and best practices. The incumbent will work closely with cloud, infrastructure, and application teams to align security solutions with business needs. By driving collaboration, the role ensures seamless integration of security measures and supports NESO's digital transformation. This position is distinguished by its focus on high-level strategy and technical leadership, rather than day-to-day implementation. The Network Principal empowers engineering teams, elevates technical standards, and shapes NESO's network security vision for the future. This role can be based from Wokingham or Warwick and we continue to offer hybrid working from office and home. We are open to full time and part time applicants, as well as flexible working arrangements. The role is likely to include an element of out-of-hours on-call., * Own the end-to-end network security architecture for NESO, ensuring robust protection across on-premises, cloud, and hybrid environments. * Design, document, and govern secure network segmentation strategies, including Zero Trust models, next-generation firewall frameworks, and secure connectivity solutions such as Direct Connect, and Transit Gateway currently delivered by ZScaler * Develop and maintain a comprehensive 12-24 month technology roadmap for network security, prioritizing automation, orchestration, and integration with the NESO Digital Strategic ecosystem to enhance operational efficiency and resilience. * Define, publish, and enforce enterprise-wide network security standards, conducting regular architectural reviews to ensure alignment with business objectives, regulatory requirements, and industry best practices. * Serve as the highest escalation point for complex network security incidents, analyzing network packet captures and logs to design and implement permanent solutions that address root causes and strengthen the overall security posture. * Continuously research emerging network security threats, vulnerabilities, and industry trends, recommending architectural innovations to proactively address evolving risks. * Design and review cloud security architectures, collaborating with cloud teams to ensure secure integration and governance across public, private, and hybrid cloud platforms. * Provide technical mentorship and guidance to engineering and operations teams, promoting professional growth, knowledge sharing, and adherence to NESO's network security vision and standards. Applicants must have the right to work in the UK by the start of employment. Visa sponsorship may not be available for this role and will be considered in line with business requirements. ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)