Security Engineer | Palo Alto, Prisma SASE, SIEM, DLP
Contract: 6 months
Rate: £750 per day
IR35: Inside IR35
Location: Flexible / remote-led
A leading organisation is looking for a hands-on Build-Focused Security Engineer to support a major security transformation programme. This role will suit someone with strong practical security engineering experience across SASE, DLP, TLS inspection, Palo Alto, Prisma SASE and/or Zscaler, with the ability to build, configure and troubleshoot secure infrastructure at scale.
The priority is strong, real-world security experience rather than someone who is purely network-focused or design-led. The successful candidate will have worked on environments with thousands of users and large multi-site estates, rather than small-scale deployments or training-led exposure.
Key Responsibilities
- Build, configure, and automate secure network and security infrastructure components
- Implement and manage policy-based controls across DLP, TLS inspection, SASE and zero trust environments
- Work with security tooling such as Palo Alto, Prisma SASE, Zscaler and SIEM platforms
- Support firewall, VPN, SD-WAN and cloud security configurations
- Use Terraform to support infrastructure deployment and configuration
- Work with Git and CI/CD workflows to support secure automation practices
- Troubleshoot security, network and access-related issues across complex environments
- Support incident response, security control validation and operational improvements
Key Requirements
- Strong hands-on experience in security engineering, not just network engineering
- Practical experience with SASE platforms, ideally Palo Alto Prisma SASE and/or Zscaler
- Strong understanding of DLP, malware/threat controls, TLS inspection and policy-based security
- Experience working across large-scale environments, ideally with thousands of users and hundreds of sites
- Network security knowledge across firewalls, VPNs, SD-WAN and zero trust architecture
- Infrastructure as Code experience, ideally with Terraform
- Git experience for version control and collaborative workflows
- Scripting ability in Python, Bash or PowerShell
- Familiarity with CI/CD and DevOps practices for security automation
- Understanding of IAM, PAM and PIM solutions
- Cloud security experience across Azure or GCP
- Strong troubleshooting and incident response capability
Ideal Profile
This role is best suited to a practical security engineer who has built and supported large-scale secure infrastructure, with strong exposure to SASE, DLP, TLS inspection and enterprise security controls.
Candidates who are mainly network engineers, mobile/network specialists, or who only have light training-based exposure to Palo Alto, Prisma or SASE platforms are unlikely to be the right fit.
…
