Sophos Firewall is the flagship product of Sophos, operating in the network security domain to protect customer network traffic when deployed in router or switch mode.
As part of the NSG Engineering Group, you will join the Firewall Assistant team in a senior capacity. This team focuses on leveraging AI to interpret natural language queries, deliver intelligent recommendations, and automate firewall operations while upholding enterprise-grade security and compliance standards. The team’s vision is to evolve firewall management from a complex, error-prone manual process into an intuitive, conversational experience—enabling security teams to operate with greater speed, accuracy, and confidence.
What you will do
- Own and deliver production-grade AI assistant capabilities, including agent workflows, tool integrations, guardrails, evaluation frameworks, and developer automation initiatives.
- Take end-to-end ownership of scalable systems and services, contributing beyond prompt engineering or experimental notebook-based solutions.
- Design, develop, and enhance AI-powered firewall assistant capabilities to enable natural language driven security operations and intelligent automation workflows.
- Build and maintain scalable backend systems, APIs, and distributed services with a strong focus on reliability, performance, and enterprise-grade security.
- Collaborate with cross-functional engineering and security teams to deliver secure, scalable, and user-centric firewall management solutions.
What you will bring
- 4-10 years of software engineering experience
- Hands-on experience with at least two of the following languages: Python, Go, or Java, including the ability to read and modify code beyond your primary language when needed.
- Experience building and deploying production-grade agents using frameworks such as LangGraph, Claude Agent SDK, OpenAI Agents, or Pydantic-AI, including tool integrations, MCP servers (e.g., FastMCP), and multi-agent orchestration. Familiarity with Temporal, Pydantic, FastAPI, and related ecosystems is highly valued.
- Proven experience designing and owning end-to-end distributed systems, including APIs, data models, storage strategies, caching, queuing, and handling failure scenarios and scalability challenges.
- Strong foundation in computer science fundamentals such as data structures, concurrency, networking, and databases, with the ability to reason clearly about latency, throughput, and consistency trade-offs.
- Ability to write clean, testable, and maintainable code, with a focus on robust API design, backward compatibility, and operational excellence.
- Demonstrated experience developing evaluation frameworks, tracing mechanisms, and regression safeguards for LLM-based systems.
- Hands-on experience with AWS and large-scale cloud deployments, including infrastructure as code (IaC), networking, identity management, observability, cost/performance optimization, and safe rollout practices.
- Familiarity with prompt caching, KV-cache optimization, model routing, and context engineering to improve cost efficiency and system reliability.
- Experience fine-tuning models (e.g., LoRA, QLoRA, SFT, DPO) for real-world use cases, with measurable improvements in quality—considered a strong differentiator.
- Exposure to deploying solutions across on-premises, cloud, and hybrid environments, with an understanding of constraints, networking, identity, and upgrading cycles.
- Understanding of high-volume telemetry and alerting patterns, along with safety mechanisms for agent-driven actions such as approvals, dry runs, blast-radius control, and audit trails.
Skills Required
- Proven experience designing and owning end-to-end distributed systems, including APIs, data models, storage strategies, caching, queuing, and handling failure scenarios and scalability challenges.
- Strong foundation in computer science fundamentals such as data structures, concurrency, networking, and databases.
- Ability to write clean, testable, and maintainable code, focusing on robust API design and operational excellence.
- Hands-on experience with at least two of the following languages: Python, Go, or Java.
- Experience building and deploying production-grade agents using frameworks such as LangGraph, Claude Agent SDK, OpenAI Agents, or Pydantic-AI.
- Demonstrated experience developing evaluation frameworks, tracing mechanisms, and regression safeguards for LLM-based systems.
Sophos Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Sophos and has not been reviewed or approved by Sophos.
-
Leave & Time Off Breadth — Time away is positioned as broad, with company-wide wellness days plus dedicated learning days and paid volunteer time.
-
Parental & Family Support — Family-related leave appears more comprehensive than baseline offerings, including paid parental leave, caregiver leave, and extended bereavement leave.
-
Wellbeing & Lifestyle Benefits — Wellbeing support is emphasized through always-available assistance resources and a Calm subscription, suggesting a lifestyle-oriented benefits approach.
Sophos Insights
What We Do
Cybersecurity Evolved. As a worldwide leader in next-generation cybersecurity, Sophos protects nearly 400,000 organizations of all sizes in more than 150 countries from today’s most advanced cyberthreats. Powered by SophosLabs – a global threat intelligence and data science team – Sophos’ cloud-native and AI-enhanced solutions secure endpoints (laptops, servers and mobile devices) and networks against evolving cybercriminal tactics and techniques, including automated and active-adversary breaches, ransomware, malware, exploits, data exfiltration, phishing, and more.









