Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Part Time/Full Time
- Contract Type
- Permanent employment
- Location
- Frankfurt
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop comprehensive network security architectures, define security standards, and implement modern security concepts in highly secure networks.
Job Technologies
Your role in the team
- Development, maintenance, and further development of comprehensive network security architectures for complex on-premises, cloud, and hybrid environments.
- Definition and implementation of security standards, policies, and architectural principles for network segments, data centers, cloud connections (Microsoft Azure, Google Cloud Platform), and external partner links.
- Design and implementation of modern network security concepts (including micro-segmentation, Zero Trust Network Access, Secure Access Service Edge / SASE).
- Design and further development of secure network zones (DMZ, internal zones, high-security zones) as well as their separation in accordance with regulatory and supervisory requirements.
- Consulting of business units, IT teams, and DevOps on secure network designs (Secure-by-Design) and on integrating new applications, services, and third-party providers.
- Planning, implementation, and continuous improvement of network security components (e.g., firewalls, IDS/IPS, Web Application Firewalls, DDoS protection, Network Access Control, VPN, Secure Web Gateways).
- Assessment of network risks as well as conducting threat modeling, architecture, and security reviews for network and connectivity solutions.
- Development of pillar-specific target images, segmentation models, architecture guidelines, and reusable Network Security patterns within the framework of the future Security Architecture function.
- Conducting architecture reviews, technical challenge, and deriving robust recommendations for network, connectivity, and third-party provider connection scenarios.
- Translation of core security architecture principles into actionable guidelines for network segmentation, access models, partner integrations, and secure connectivity.
- Creation and maintenance of architecture-relevant decision bases, review results, and governance documents for material network security issues.
- Close collaboration with Enterprise Architecture, Information Security, Risk/Compliance functions, as well as adjacent Security and Infrastructure teams to ensure consistent architecture standards.
- Identification, standardization, and further development of recurring solution components for typical network and connectivity security issues.
- Ensuring compliance with regulatory requirements (e.g., DORA) in the banking environment concerning network security (e.g., segmentation of critical systems, monitoring of network access).
- Collaboration with information security, risk, and compliance units, infrastructure teams, as well as external auditors and service providers.
- Support in network-related security incidents (Incident Response) as well as the further development of associated monitoring, logging, and detection concepts.
- Monitoring technological trends in the field of Network & Network Security (e.g., SD-WAN, SASE, Zero Trust, Network Telemetry) and deriving actionable recommendations for the bank.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in (Business) Informatics, IT Security, or a comparable qualification.
Qualifications
- Ability to translate complex network security requirements into practical architecture guidelines, guardrails, and reusable patterns for delivery and infrastructure teams.
- Strong ability to appropriately differentiate between architectural governance, technical deep expertise, and operational network infrastructure implementation.
- In-depth knowledge of network architectures and protocols (including TCP/IP, routing, switching, VPN, DNS, TLS) as well as in securing data center, campus, and WAN networks based on Cisco, Fortinet, or Palo Alto technologies.
- Excellent knowledge in the field of Network Monitoring, Logging, and Detection (e.g., NetFlow, Network Telemetry, integration into SIEM/SOAR platforms).
- In-depth knowledge of regulatory and supervisory requirements in the financial sector (e.g., DORA) and their implementation in network security.
- Very good analytical skills as well as a structured, risk-oriented, and solution-oriented working approach.
- Strong communication and consulting skills to effectively convey complex network security topics to technical departments and management.
Experience
- Several years of experience in network security architecture, ideally in the finance or banking sector.
- Experience in developing target architectures, segmentation models, architecture decisions, review outcomes, and architecture-related governance documents.
- Experience in cross-functional collaboration with Enterprise Architecture, Risk/Compliance functions, as well as adjacent Security and Infrastructure areas.
- Extensive experience with network security technologies such as next-generation firewalls, IDS/IPS, WAF, DDoS protection, network access control, proxy and gateway solutions.
- Practical experience in implementing Zero-Trust and segmentation concepts, including role-based access controls, separation of privileged access, and securing East-West and North-South traffic.
- Knowledge of the CISA Maturity Model, particularly the Network Security pillar, as well as experience in assessing and progressively increasing the maturity level of Network Security controls.
- Experience with architecture frameworks and security models (e.g., Zero Trust, NIST) as well as in documenting target architectures, roadmaps, and architecture decisions.
This text has been machine translated. Show original
What we offer
- 30 days of vacation.
- Flexible working.
- Professional Training & Development.
- Asset-building benefits.
- Friendly working environment.
- Diverse tasks.
- Work-Life Balance.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Commerzbank AG
Commerzbank is an internationally-operating commercial bank with locations in nearly 50 countries and 49,000 employees. It offers a comprehensive range of financial services to private, business, and corporate customers. Commerzbank is a reliable and trusted source for all your banking needs.
Description
- Company Size
- 250+ Employees
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Banking, Finance, Insurance
Employer reviews
by devworkplaces.com
Total
(1 Review)3.6
Workingconditions
4.4Engineering
3.2Career Growth
3.6Culture
3.5