Skip to content
mimi

Network Security Engineer (Tax-Free)

GCS Recruitment

UAE · On-site Senior £100k – £150k/yr Yesterday

About the role

Network Security Engineer - Abu Dhabi (Tax‑Free)

Location: Abu Dhabi, UAE
NET Take‑Home: £100,000 - £150,000 (tax‑free)
Contract: 18‑month fixed term
Notice Period: 1 month

Benefits

  • Full Relocation Package for You & Your Family
  • Visa Processing: 3‑5 days (family included)
  • Accommodation: Provided (partial housing allowance)
  • Flights: Included for you and your family
  • Healthcare: Full private medical for you and your family

About the Role

We are seeking an experienced Network Security Engineer to join a major organisation in Abu Dhabi, working on a large‑scale, cloud‑first security transformation. This is a hands‑on engineering role focused on SASE, Zscaler (ZIA/ZPA), FortiGate firewalls, and enterprise Wi‑Fi security.

You’ll be responsible for designing, deploying, and operating secure network architectures across on‑prem, cloud, and remote environments – with full ownership rather than simply maintaining existing platforms. If you enjoy building, optimising, and securing modern network environments end‑to‑end, this role will suit you perfectly.

Key Responsibilities

Zscaler (ZIA & ZPA) / SASE

  • Lead deployment and daily operations of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)
  • Design traffic forwarding architectures (GRE, IPsec)
  • Manage identity and authentication integrations
  • Configure and maintain Zscaler security controls:
    • URL filtering
    • Cloud firewall
    • SSL inspection
    • Threat prevention
    • Access control
  • Onboard new users and sites, supporting remote and branch connectivity
  • Optimise local internet breakout and cloud‑first routing

Network Security / FortiGate

  • Deploy and manage FortiGate firewalls
  • Design and maintain policies, NAT, VPNs, and routing (BGP/static)
  • Integrate FortiGate with Zscaler for secure egress and private access

Enterprise Wi‑Fi Security

  • Support rollout and configuration of secure enterprise Wi‑Fi
  • Design SSIDs, segmentation, and authentication (including 802.1X)
  • Troubleshoot performance, coverage, and connectivity issues

Cross‑Domain Troubleshooting

  • Diagnose complex issues across cloud, on‑prem, and remote environments
  • Work across networking, security, and user connectivity
  • Own deployments end‑to‑end

Ideal Candidate (Requirements)

  • Strong hands‑on experience with Zscaler ZIA & ZPA
  • Solid operational knowledge of FortiGate firewalls
  • Experience with enterprise Wi‑Fi security
  • Comfortable designing and deploying secure, cloud‑first architectures
  • Strong troubleshooting skills across multi‑layered environments
  • Able to take ownership of deployments, not just maintain existing systems

If interested, please apply and a consultant will be in touch ASAP!

GCS is acting as an Employment Business in relation to this vacancy.

Requirements

  • Strong hands‑on experience with Zscaler ZIA & ZPA
  • Solid operational knowledge of FortiGate firewalls
  • Experience with enterprise Wi‑Fi security
  • Comfortable designing and deploying secure, cloud‑first architectures
  • Strong troubleshooting skills across multi‑layered environments
  • Able to take ownership of deployments, not just maintain existing systems

Responsibilities

  • Lead deployment and daily operations of Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA)
  • Design traffic forwarding architectures (GRE, IPsec)
  • Manage identity and authentication integrations
  • Configure and maintain Zscaler security controls
  • Onboard new users and sites, supporting remote and branch connectivity
  • Optimise local internet breakout and cloud‑first routing
  • Deploy and manage FortiGate firewalls
  • Design and maintain policies, NAT, VPNs, and routing (BGP/static)
  • Integrate FortiGate with Zscaler for secure egress and private access
  • Support rollout and configuration of secure enterprise Wi‑Fi
  • Design SSIDs, segmentation, and authentication (including 802.1X)
  • Troubleshoot performance, coverage, and connectivity issues
  • Diagnose complex issues across cloud, on‑prem, and remote environments
  • Work across networking, security, and user connectivity
  • Own deployments end‑to‑end

Benefits

Relocation packageVisa processingAccommodationHousing allowanceFlightsPrivate medical insurance

Skills

802.1XBGPCloud-first architectureFortiGateGREIPsecNetwork securitySASESSL inspectionThreat preventionVPNWi-Fi securityZscalerZscaler ZIAZscaler ZPA

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free