Provides gas transmission and distribution services, connecting homes and businesses across Ireland.
Senior security analyst leading firewall architecture, design, operation & mentorship.
9 days ago ago
Expert & Leadership (13+ years)
Full Time
Cork, County Cork, Ireland
Hybrid
Company Size
1,200 Employees
Service Specialisms
Network operation & maintenance
Pipeline construction & extension
Customer connections
Meter installation & reading
Gas emergency response
Carbon monoxide inspection services
Dial Before You Dig mapping & consultancy
GIS dataset provision
Sector Specialisms
Power Generation
Industrial
Commercial
Residential
Transport
Energy
Infrastructure
Utilities
Role
Description
network architecture
policy lifecycle
cloud security
vulnerability scanning
performance monitoring
incident response
Design and maintain network security architecture (perimeter, DMZ, partner/B2B, datacentre, OTadjacent), including segmentation and microsegmentation patterns aligned to Zero Trust principles.
Define rule base strategy (AppID/identityaware policies, service groups, objects, tags) to minimise overprivilege and shadowed/duplicate rules.
Plan, schedule, and execute timely patching and firmware updates for all firewall and network security appliances, in line with vendor and organisational SLAs.
Provide daytoday mentorship to junior analysts (design reviews, change walkthroughs, quality gates) while partnering with architects, project teams, and OT stakeholders (e.g., Claroty, DarkTrace) to respect safety/availability constraints.
Run the endtoend policy lifecycle: intake/impact analysis, risk assessment, change plans and rollbacks, peer review, CAB approvals, and postimplementation validation.
Engineer secure northsouth and eastwest paths for Azure and other cloud environments (e.g., Azure Firewall, vNGFWs, NSGs/ASGs, Private Link, ExpressRoute).
Coordinate and execute vulnerability scans (e.g., Qualys TVM) for firewall and network security infrastructure; track, remediate, and report on vulnerabilities in collaboration with asset owners.
Standardise cloud landingzone security controls and ensure consistent policy across onprem and cloud.
Continuously monitor firewall and network security health, resource utilisation (CPU, memory, throughput, session counts), and performance metrics; proactively address capacity or degradation issues.
Ensure comprehensive logging to SIEM (e.g., Microsoft Sentinel) with highfidelity alerts and runbooks/SOAR where appropriate.
Own NAT, routing interactions (static, dynamic/BGP), and HA/cluster designs ensuring resilience and deterministic failover.
Plan and govern TLS/SSL decryption policies and privacy exceptions; align with legal and compliance requirements.
Ensure regular, tested backups of firewall and network security device configurations; maintain documented restore procedures and participate in periodic recovery drills.
Participate in audits; provide accurate evidence of control design and effectiveness.
Lead firewall aspects of incident triage/containment (rapid policy updates, network isolation, temporary blocks), contribute to RCA, and convert lessons into durable policy/detections.
Lead scheduled rule recertification and hygiene: remove unused, expired, or risky entries; consolidate objects; enforce naming conventions and tagging.
Maintain golden configs and standard builds; drive PANOS / Check Point upgrade roadmaps, including lab validation and staged rollouts.
Scope and oversee penetration tests/redteam exercises targeting network controls; ensure highvalue findings and pragmatic fixes; manage retests to closure.
Administer and optimise nextgen firewall platforms (e.g., Palo Alto, Check Point) and related proxies/IDPS/PKI/authentication controls.
Maintain and test remote access VPN and sitetosite VPNs; govern posture checks and identity context.
Requirements
palo alto
check point
azure
ansible
bgp
degree
Incident Response Integration
Strong grasp of routing/NAT/VPN, HA clustering, BGP/ECMP, DNS, certificates/PKI, and identityaware policy.
Familiarity with automation/IaC (API, Ansible/Terraform) and policy hygiene tooling (e.g., Expedition) is a plus.
Degree in Information Systems/IT or equivalent experience; 5+ years IT with 3+ years in network security/firewall engineering (design, build, run).
Experience operating in Azure and hybrid topologies; understanding of cloud networking controls (Azure Firewall, NSGs/ASGs).
Deep handson with Palo Alto (PANOS, Panorama, AppID, UserID, URL/Threat profiles, decryption) and/or Check Point (R8x, SmartConsole/Smart1, IPS, Identity Awareness).
Solid troubleshooting (packet capture, log correlation, path analysis) and SIEM integration (e.g., Microsoft Sentinel).
Collaboration and communication skills to explain complex network security topics to technical and nontechnical stakeholders; experience mentoring junior team members.
Benefits
Cloud & Hybrid Connectivity
**Cork or Dublin based** Permanent role ** Hybrid -2 days office **
Training + Development
Information not given or found
Interview process
Information not given or found
Visa Sponsorship
Information not given or found
Security clearance
Information not given or found
Company
Overview
Founded to manage and operate Ireland's gas infrastructure, enabling the delivery of natural gas across the country.
Operates one of the largest gas networks in Europe, ensuring the safe and reliable supply of gas to millions of customers.
Responsible for maintaining and upgrading pipelines, providing gas to residential, commercial, and industrial sectors.
Known for its focus on infrastructure development, from new pipelines to advanced monitoring systems.
Works closely with local and national governments to ensure sustainable and future-proof energy solutions.
Involved in large-scale projects such as gas network expansion, pipeline modernization, and energy efficiency improvements.
Specializes in maintaining the safety of gas transportation systems, investing in technology and infrastructure to minimize risks.
A leader in integrating smart technologies into its systems, offering real-time monitoring and advanced data analytics.
Culture + Values
Safety - Our number one priority is safety. We focus on the safety of our people, our customers, and the communities we serve.
Customer Service - We are committed to providing our customers with a reliable, efficient, and responsive service.
Excellence - We strive for excellence in everything we do, delivering high-quality results across all aspects of our operations.
Integrity - We operate with honesty and integrity, building trust with our stakeholders.
Innovation - We embrace innovation and new technologies to improve the service we provide.
Sustainability - We take our environmental responsibility seriously and strive to make a positive impact on the communities and environments we work in.
Environment + Sustainability
2050 Target
Net Zero Greenhouse Gas Emissions
The company aims to achieve net-zero greenhouse gas emissions by 2050, aligning with global sustainability goals.
Focus on reducing carbon emissions through a more sustainable energy network.
Investing in alternative energy solutions, such as biomethane and hydrogen, to support cleaner energy sources.
Operational initiatives to improve energy efficiency and reduce waste.
Commitment to lowering methane emissions across the network.
Collaboration with stakeholders to develop future low-carbon technologies.
Inclusion & Diversity
40% women
Gender Balance
In senior leadership roles.
Goal to achieve gender parity across the workforce.
Focused efforts on ensuring equal opportunities for all employees, regardless of gender or background.
Regular training and development to foster an inclusive work environment.