DescriptionIn this role, you will play a key part in ensuring Heathrow’s network infrastructure is securely designed, managed, and configured in line with leading cyber security principles. You will work closely with network teams across the organisation, providing technical expertise, validating security configurations, and ensuring compliance with industry standards and regulatory requirements. This role is critical to maintaining and enhancing Heathrow’s overall cyber security posture in an increasingly complex threat landscape.
Responsibilities- Collaborating with network specialists to design secure infrastructures and validate configurations of firewalls, IDS/IPS, routers, and other network devices.
- Overseeing the integration of security across network architecture, configuration, change, and maintenance processes to ensure compliance and resilience.
- Providing expert cyber security advice to network and project teams, including guidance on secure protocols, encryption, and network configuration best practices.
- Consulting on network-related vulnerabilities and mitigation strategies, ensuring security risks are effectively managed.
- Ensuring that network security controls and configurations comply with relevant regulatory and industry standards such as NIST, ISO 27001, GDPR, and PCI-DSS.
- Supporting audits, risk assessments, and configuration reviews to continuously evaluate and improve the organisation’s network security posture.
- Working with the Cyber Security Operations team to configure and monitor tools that detect, alert, and respond to network-based security threats.
- Assisting in the investigation, analysis, and mitigation of network-related security incidents, ensuring swift and effective response.
- Identifying opportunities for continuous improvement in network security through patching, configuration updates, and enhanced controls.
- Reporting on network vulnerabilities, incidents, and risks to stakeholders, while staying informed about emerging threats and security technologies.
Qualifications- Strong experience specialising in network security, including hands-on experience with network security devices (firewalls, routers, IDS/IPS, VPNs, etc.).
- Solid experience with network architecture, security protocols, and secure network configurations.
- Proven track record of providing Cyber Security guidance on network infrastructure design, implementation, and ongoing management.
- Experience in ensuring compliance with industry standards and regulations related to network security (e.g., NIST, ISO 27001, PCI-DSS, GDPR).
- Strong knowledge of network security principles, concepts, and technologies, including firewalls, VPNs, IDS/IPS, proxies, and load balancers.
- Deep understanding of secure by design principles and how to implement them in network architecture and design.
- Experience in performing security assessments, vulnerability scans, and risk assessments on network configurations and devices.
- Strong technical ability to evaluate and configure network security devices, ensuring they meet security and performance requirements.
- Ability to effectively communicate technical information to both technical and non-technical stakeholders.
Ideally, you’ll have:
- Experience with Paolo Alto and Cisco technologies.
- Experience with network security in cloud environments (e.g., AWS, Azure) and hybrid network configurations.
- Knowledge of security automation tools and practices (e.g., automated patching, vulnerability management, orchestration tools).
- Familiarity with network segmentation, access control policies, and Zero Trust security models.