Techtronic Industries (TTI) is a world leader in cordless technology spanning power tools, accessories, hand tools, outdoor power equipment, as well as floorcare & cleaning products. Our focus is on end-users that range from professionals in the industrial, construction and infrastructure sectors to DIYers in home improvement, repair, and maintenance. TTI's powerful brand portfolio includes MILWAUKEE®, RYOBI®, AEG® - recognized worldwide for their deep heritage and innovative product platforms of superior quality.
The company maintains a global manufacturing and product development footprint, with record world-wide sales of approximately US$15.2 billion and around 50,000 employees in 2026. Hiring exceptional people is a top focus at TTI. This drives a high-performance culture across all levels of our organization and helps to achieve our vision of being number one in the industries we serve. Our unique high-speed decision-making process supports our acute focus on developing superior products and meeting high customer expectations. We view our winning culture as a competitive advantage that powers our growth.
We're seeking Security & Network Engineer who can architect and operationalise a secure, compliant, and agile network and infrastructure backbone. You'll own the design and governance of our network, security policies and infrastructure architecture across hybrid cloud and on-premises environments. More than a technician, you're a strategist: someone who shapes policy, educates stakeholders, and mentors teams to embed security thinking into every decision-without strangling velocity.
Reporting to the Head of Infrastructure, this role will work closely with security, cloud, systems and application teams to build the governance and architectural foundations for a growing, security-first organisation.
Key Responsibilities
- Network Architecture & Design: Lead design and delivery of secure, resilient network infrastructure across on-premises data centres and hybrid cloud environments
- Architect network segmentation, Zero Trust access models, and VPC/VLAN designs that enforce security policy without over-complicating operations
- Define network resilience, failover, and disaster recovery strategies aligned with business continuity requirements
- Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable)
- Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls
- Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure
- Infrastructure Security Implementation: Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers
- Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third-party risk assessment
- Lead security hardening programmes for network appliances, access points, and edge infrastructure; manage patching and lifecycle
- Cloud & Hybrid Infrastructure Security: Own network security posture in AWS/Azure/GCP: VPC architecture, network ACLs, security groups, private connectivity (Direct Connect/ExpressRoute)
- Establish cloud governance controls: tagging strategies, resource quotas, cross-account networking, hybrid connectivity
- Build and maintain secrets management, certificate lifecycle, and identity federation across cloud and on-premises
- Mentorship & Culture: Coach and mentor infrastructure/network engineers to understand security implications of their designs
- Build a 'secure by default' culture: run knowledge-sharing sessions, design reviews, and brownbags on emerging threats and best practices
- Work with AppSec and DevSecOps to embed security checkpoints into infrastructure CI/CD pipelines
- Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones)
- Manage incident response for critical infrastructure events; lead post-mortems and remediation
- Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security signals
Required Experience & Skills
- Over 5 years of experience in network engineering, infrastructure architecture, or systems engineering roles
- Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance
- Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows
- Proven experience designing and implementing Zero Trust, least-privilege access, or network segmentation architectures
- Deep knowledge of cloud networking (AWS VPC, Azure vNets, or GCP) and hybrid connectivity models
- Demonstrated ability to design and communicate governance frameworks, RACI models