Natixis in Portugal is a Centre of Expertise whose mission is to transform traditional banking by developing innovative solutions for the business, operations and work culture of Groupe BPCE worldwide.
As part of Groupe BPCE’s international division, Natixis in Portugal designs and delivers solutions for its two core areas - Corporate & Investment Banking and Asset & Wealth Management - as well as transversal services that support all entities across the Group.
With more than 3,000 employees representing 46 nationalities, the teams work across Information Technology, Banking Support Activities, and Compliance, in an integrated, inclusive, and cross-functional way, supporting all business lines and platforms of the Group.
A disruptive mindset and a culture of proximity and agility identify Natixis in Portugal Team and reflect the company's mission to transform traditional banking at a global scale: a perfect match in the Portuguese dynamics and entrepreneurial ecosystem.
We are looking for an experienced Senior Network Engineer to join our Security & Firewall team. The ideal candidate will be responsible for both BUILD and RUN activities, covering firewall policy management, network security operations, troubleshooting, and continuous improvement of our security infrastructure.
Key Responsibilities
BUILD
Implement flow matrices aligned with project requirements and security standards
Design and deploy firewall filtering rules in compliance with internal security policies
Contribute to the architecture and evolution of the security infrastructure
RUN - Daily Operations
Analyze and process filtering policy modification requests
Perform troubleshooting to identify root causes of network dysfunctions and propose corrective actions and workarounds
Implement and maintain firewall filtering rules on a daily basis, respecting operational guidelines and internal security policies
Define and enforce best practices for system management, operability, and technical qualification
Propose solutions to improve RUN activity performance and efficiency
Security Policy & Compliance
Apply and enforce the internal Security Policy
Conduct Level 1 Periodic Security Controls to monitor policy compliance
Validate and process security policy derogation requests
Participate in internal and external audits
Implement audit recommendations and compliance remediation requests
Write and maintain security guides and standards
Security Infrastructure Maintenance
Ensure Operational Maintenance of security infrastructures (Firewall filtering, Web filtering, Proxies)
Supervise, handle, and resolve incidents and problems
Install, configure, and qualify security systems and products
Innovation & Technology Watch
Propose innovative solutions to improve security, quality, performance, and operational costs
Conduct technology watch to stay up to date with the latest trends and threats in network security
Provide expert advice on the implementation of new security solutions
Team & On-Call
Participate in out-of-hours interventions and regular on-call duties covering network and security perimeters (Firewall filtering, Web filtering, Proxies)
Collaborate effectively within the team, demonstrating autonomy and clear communication - being able to explain clearly what is being done and why
5+ years of experience in network security engineering
Proven expertise in firewall administration in large-scale enterprise environments
Strong knowledge of network protocols (TCP/IP, BGP, OSPF, VLANs, VPNs)
Experience with NSX / SDN environments is a strong plus
Familiarity with compliance frameworks (ISO 27001, NIST, etc.)
Experience participating in security audits (internal and external)
Ability to work autonomously and manage priorities in a fast-paced environment
Strong communication skills - capable of clearly explaining technical decisions to both technical and non-technical stakeholders
Availability for on-call duties and out-of-hours interventions
Nice to Have
Knowledge of automation tools (Ansible, Python scripting) for network configuration management
Experience with SIEM / SOC tools
Knowledge of Zero Trust architecture principles
Experience with Cloud security (AWS, Azure, GCP)
Familiarity with ITIL processes and change management
Education
Bachelor's degree or equivalent in Computer Science, Network Engineering, or Cybersecurity
Relevant certifications are a strong plus:
Fortinet NSE 4/5/7
Palo Alto PCNSE
Cisco CCNP Security
CheckPoint CCSE
Languages
English is mandatory, minimum B2 level;
French is a strong plus
Our workplace reflects the vibrant spirit of our locations, with initiatives such as a Green Transportation Budget, electric bikes and a flexible Hybrid Work Policy. We promote wellbeing through the Honolulu Wellness Club, a Prayer Room, a Lactation Room, and themed Villages that inspire creativity and collaboration. Through our ESG and DEI strategies, we are commit to being inclusive, caring, and fair, ensuring every voice is heard and valued.

