Experience
- Bachelor’s degree in Computer Science, Information Security, or related field; Master’s degree preferred.
- Relevant certifications such as CISSP, CCNP Security, AWS/Azure Security, or equivalent.
- 10+ years of experience in network security engineering or architecture roles, including hands-on management of firewalls, IDS/IPS, proxy, segmentation, and access controls.
- Demonstrated experience with DevOps practices, CI/CD, configuration management tools (e.g., Ansible, Terraform), and Infrastructure as Code.
- Thorough understanding of risk management, regulatory compliance, and incident response procedures.
Must‑have skills:
- 8+ years’ experience leading engineering teams, with a strong track record building high‑performance, collaborative cultures
- Deep experience in network security domains, including Network Access Control, Zero Trust Network Access, network segmentation, firewalls, and IDS/IPS
- Strong networking fundamentals (routing and switching)
- Experience deploying Infrastructure as Code via CI/CD pipelines
- Proven vendor and service‑provider management
- Experience executing network infrastructure audits and supporting responses to security incidents
Key Skills
- Network Security Domain Leadership: Deep experience leading and shaping network security solutions across Network Access Control, Zero Trust Network Access, network segmentation, network firewalls, and intrusion detection and prevention technologies.
- Senior Engineering Leadership & Delivery: 8+ years’ experience leading engineering teams, fostering a high-performance culture, and delivering complex initiatives aligned to organisational objectives.
- Advanced Networking Fundamentals: Strong technical foundation in enterprise networking, including routing and switching, enabling secure and scalable network designs.
- Automation & Modern Engineering Practices: Proven experience deploying Infrastructure as Code using CI/CD pipelines and configuration management to improve reliability, speed, and control.
- Risk, Audit & Vendor Management: Experience executing network infrastructure audits, identifying and assessing vulnerabilities, supporting responses to security incidents, and managing technology vendors and service providers in line with standards and contracts.
Desirable Skills
- Hybrid & Cloud Connectivity: Experience integrating enterprise networks with AWS and/or Azure.
Whippany
Salary / Rate Minimum: $220,000
Salary / Rate Maximum: $300,000
The minimum and maximum salary/rate information above includes only base salary or base hourly rate. It does not include any another type of compensation or benefits that may be available.
Barclays employees are eligible for a suite of a competitive and generous employee benefits, including medical, dental and vision coverage, 401(k), life insurance, and other paid leave for qualifying circumstances.
This position is eligible for an incentive award.
Purpose of the role
- The Network Security Principal Engineer is responsible for designing, implementing, and overseeing advanced network security controls to protect organizational assets against evolving threats. This role manages perimeter security products including firewalls, intrusion detection systems, proxy, remote access as well as network access control (NAC) and network segmentation solutions. The Network Security Lead enforces network security policies, standards, and baselines, and drives automation initiatives including deploying Infrastructure as Code via CI/CD pipeline and configuration management. The position partners closely with infrastructure, cloud, and cybersecurity teams, execute high-impact network changes, and manage risk and compliance activities.
- You will join Barclays at a pivotal moment in our Networks Modernization journey, playing a critical role in shaping and delivering the transformation of our strategic network security platforms and connectivity services, embedding security-by-design and zero-trust principles across the network estate.
- Production Network Engineering is a new, mission-aligned operating model within the Network Product Design and Engineering domain. This domain is responsible for the design, build, and run of the underlying strategic network infrastructure platforms and the over-the-top connectivity products and services that enable systems, colleagues, guests, and partners.
- As a senior technical leader, you will have the opportunity to shape the future of our global network infrastructure, influencing how millions of customers, colleagues, and partners connect and collaborate through secure-by-design platforms, engineering standards, and technical decision-making.
- This role operates within the Product Operating Model, emphasizing product-centric delivery, clear ownership, cross-functional collaboration, and agile ways of working, with a strong focus on reducing risk while enabling safe and predictable change at scale.
Accountabilities
- Design, deploy, and manage perimeter security solutions including firewalls, intrusion detection/prevention systems and proxy controls to safeguard network boundaries and critical services.
- Design, deploy, and manage network access control (NAC) systems, monitor network activity, and lead incident response efforts for network-related security events.
- Adopt Zero Trust architecture and solutions for users to securely access internal applications, as well as accessing SaaS and Internet
- Deploy Macro level segmentation controls to reduce Unauthorized Lateral Movement risks.
- Enforce network security policies, standards, and baselines, ensuring consistent application across all environments.
- Lead automation initiatives within the network security domain, utilizing DevOps practices, CI/CD pipelines, configuration management, and Infrastructure as Code to improve efficiency and reliability.
- Collaborate with infrastructure, cloud, and cybersecurity teams to design and implement integrated security solutions and support complex change management activities.
- Conduct risk assessments, manage compliance with regulatory requirements, and participate in audits related to network security controls.
- Document processes, maintain operational metrics, and produce reports for management and compliance purposes.
- Support incident response and problem management for critical network issues, ensuring rapid resolution and root cause analysis.
Director Expectations
- To manage a business function, providing significant input to function wide strategic initiatives. Contribute to and influence policy and procedures for the function and plan, manage and consult on multiple complex and critical strategic projects, which may be business wide..
- They manage the direction of a large team or sub-function, leading other people managers and embedding a performance culture aligned to the values of the business. Or for an individual contributor, they lead organisation wide projects and act as deep technical expert and thought leader, identifying new ways of working and collaborating cross functionally. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
- Provide expert advice to senior functional management and committees to influence decisions made outside of own function, offering significant input to function wide strategic initiatives.
- Manage, coordinate and enable resourcing, budgeting and policy creation for a significant sub-function.
- Escalates breaches of policies / procedure appropriately.
- Foster and guide compliance, ensure regulations are observed that relevant processes in place to facilitate adherence.
- Focus on the external environment, regulators, or advocacy groups to both monitor and influence on behalf of Barclays, when appropriate.
- Demonstrate extensive knowledge of how the function integrates with the business division / Group to achieve the overall business objectives.
- Maintain broad and comprehensive knowledge of industry theories and practices within own discipline alongside up-to-date relevant sector / functional knowledge, and insight into external market developments / initiatives.
- Use interpretative thinking and advanced analytical skills to solve problems and design solutions in often complex/ sensitive situations.
- Exercise management authority to make significant decisions and certain strategic decisions or recommendations within own area.
- Negotiate with and influence stakeholders at a senior level both internally and externally.
- Act as principal contact point for key clients and counterparts in other functions/ businesses divisions.
- Mandated as a spokesperson for the function and business division.
All Senior Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others.
All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.