Security & Network Engineer - 12 months Fixed term

Techtronic Industries EMEA

Maidenhead

On-site

GBP 90,000 - 120,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Techtronic Industries (TTI) seeks a Security & Network Engineer to architect and operationalise a secure, compliant, and agile network and infrastructure backbone. You’ll own design governance across hybrid cloud and on‑prem environments, mentoring teams to embed security thinking without slowing velocity.

Reporting to the Head of Infrastructure, you’ll collaborate with security, cloud, systems and application teams to build governance and architectural foundations for a growing, security‑first

Qualifications

  • Over 5 years of experience in network engineering, infrastructure architecture, or systems engineering roles.
  • Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance
  • Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows
  • Proven experience designing and implementing Zero Trust, least-privilege access, or network segmentation architectures
  • Deep knowledge of cloud networking (AWS VPC, Azure vNets, or GCP) and hybrid connectivity models
  • Demonstrated ability to design and communicate governance frameworks, RACI models, and policy architecture to both technical and non-technical stakeholders
  • Experience with infrastructure-as-code tools (Terraform, CloudFormation, ARM) and configuration management (Ansible, etc.)
  • Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable)
  • Strong incident response and troubleshooting background; comfort operating in high-pressure environments
  • Experience mentoring junior/mid-level engineers and building security culture within technical teams

Responsibilities

  • Lead design and delivery of secure, resilient network infrastructure across on-premises data centres and hybrid cloud environments
  • Architect network segmentation, Zero Trust access models, and VPC/VLAN designs that enforce security policy without over-complicating operations
  • Define network resilience, failover, and disaster recovery strategies aligned with business continuity requirements
  • Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable)
  • Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls
  • Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure
  • Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers
  • Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third-party risk assessment
  • Lead security hardening programmes for network appliances, access points, and edge infrastructure; manage patching and lifecycle
  • Own network security posture in AWS/Azure/GCP: VPC architecture, network ACLs, security groups, private connectivity
  • Establish cloud governance controls: tagging strategies, resource quotas, cross-account networking, hybrid connectivity
  • Build and maintain secrets management, certificate lifecycle, and identity federation across cloud and on-premises
  • Coach and mentor infrastructure/network engineers to understand security implications of their designs
  • Build a 'secure by default' culture: run knowledge-sharing sessions, design reviews, brownbags on threats
  • Work with AppSec and DevSecOps to embed security checkpoints into infrastructure CI/CD pipelines
  • Lead network delivery for strategic initiatives (data centre migrations, office relocations, cloud landing zones)
  • Manage incident response for critical infrastructure events; lead post-mortems and remediation
  • Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security signals

Skills

Network engineering
Infrastructure architecture
Security governance
Cloud networking
CI/CD security
Mentoring
Threat monitoring
Incident response
Zero Trust
IAM concepts

Tools

Palo Alto
Fortinet
Cisco ASA
Terraform
CloudFormation
ARM
Ansible
Splunk
Datadog
New Relic
Elasticsearch

Job description

Techtronic Industries (TTI) is a world leader in cordless technology spanning power tools, accessories, hand tools, outdoor power equipment, as well as floorcare & cleaning products. Our focus is on end-users that range from professionals in the industrial, construction and infrastructure sectors to DIYers in home improvement, repair, and maintenance. TTI’s powerful brand portfolio includes MILWAUKEE®, RYOBI®, AEG® - recognized worldwide for their deep heritage and innovative product platforms of superior quality.

The company maintains a global manufacturing and product development footprint, with record world-wide sales of approximately US$15.2 billion and around 50,000 employees in 2026. Hiring exceptional people is a top focus at TTI. This drives a high-performance culture across all levels of our organization and helps to achieve our vision of being number one in the industries we serve. Our unique high-speed decision-making process supports our acute focus on developing superior products and meeting high customer expectations. We view our winning culture as a competitive advantage that powers our growth.

We're seeking Security & Network Engineer who can architect and operationalise a secure, compliant, and agile network and infrastructure backbone. You'll own the design and governance of our network, security policies and infrastructure architecture across hybrid cloud and on-premises environments. More than a technician, you're a strategist: someone who shapes policy, educates stakeholders, and mentors teams to embed security thinking into every decision—without strangling velocity.

Reporting to the Head of Infrastructure, this role will work closely with security, cloud, systems and application teams to build the governance and architectural foundations for a growing, security-first organisation.

Key Responsibilities
  • Network Architecture & Design: Lead design and delivery of secure, resilient network infrastructure across on-premises data centres and hybrid cloud environments
  • Architect network segmentation, Zero Trust access models, and VPC/VLAN designs that enforce security policy without over-complicating operations
  • Define network resilience, failover, and disaster recovery strategies aligned with business continuity requirements
  • Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable)
  • Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls
  • Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure
  • Infrastructure Security Implementation: Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers
  • Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third-party risk assessment
  • Lead security hardening programmes for network appliances, access points, and edge infrastructure; manage patching and lifecycle
  • Cloud & Hybrid Infrastructure Security: Own network security posture in AWS/Azure/GCP: VPC architecture, network ACLs, security groups, private connectivity (Direct Connect/ExpressRoute)
  • Establish cloud governance controls: tagging strategies, resource quotas, cross-account networking, hybrid connectivity
  • Build and maintain secrets management, certificate lifecycle, and identity federation across cloud and on-premises
  • Mentorship & Culture: Coach and mentor infrastructure/network engineers to understand security implications of their designs
  • Build a 'secure by default' culture: run knowledge-sharing sessions, design reviews, and brownbags on emerging threats and best practices
  • Work with AppSec and DevSecOps to embed security checkpoints into infrastructure CI/CD pipelines
  • Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones)
  • Manage incident response for critical infrastructure events; lead post-mortems and remediation
  • Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security signals
Required Experience & Skills
  • Over 5 years of experience in network engineering, infrastructure architecture, or systems engineering roles
  • Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance
  • Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows
  • Proven experience designing and implementing Zero Trust, least-privilege access, or network segmentation architectures
  • Deep knowledge of cloud networking (AWS VPC, Azure vNets, or GCP) and hybrid connectivity models
  • Demonstrated ability to design and communicate governance frameworks, RACI models, and policy architecture to both technical and non-technical stakeholders
  • Experience with infrastructure-as-code tools (Terraform, CloudFormation, ARM) and configuration management (Ansible, etc.)
  • Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable)
  • Strong incident response and troubleshooting background; comfort operating in high-pressure environments
  • Experience mentoring junior/mid-level engineers and building security culture within technical teams
Desirable Experience
  • CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise)
  • Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance)
  • Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics)
  • Exposure to identity and access management (IAM) architecture: SSO, MFA, RBAC, ABAC
  • Hands-on experience with container networking (Kubernetes CNI, Docker networking) and service mesh (Istio, Linkerd)
  • Experience building or scaling infrastructure teams; familiarity with offshore or distributed team models
  • Practical experience with Cisco, Juniper, Meraki, or enterprise wireless infrastructure (WLC, Aerohive, Meraki)

At TTI, we are committed to being an equal opportunity employer. We believe in creating a supportive environment where everyone can thrive and grow. If you're looking to join a forward-thinking company that values collaboration, innovation, and impact — we’d love to hear from you. and be part of something exciting!

Visit https://www.ttigroup.com to find out more about us

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security & Network Architect: Hybrid Cloud & Zero Trust
Security & Network Architect: Hybrid Cloud & Zero Trust

Ttigroup • United Kingdom

Hybrid
GBP 75,000 - 110,000
Senior Network Security Engineer
Senior Network Security Engineer

ITC Secure • United Kingdom

On-site
GBP 40,000 - 60,000
25 days annual leave
Private health insurance
Enhanced maternity and paternity leave
+4
Lead Security Architect ( Networks)
Lead Security Architect ( Networks)

Tata Consultancy Services • Royal Leamington Spa

On-site
GBP 90,000 - 130,000
Pension
Health care
Life assurance
+6
Security Architect
Security Architect

NTT Limited • Greater London

On-site
GBP 90,000 - 130,000
Security Architect
Security Architect

NTT DATA, Inc. • Greater London

On-site
GBP 85,000 - 120,000
Cyber Defence Network Engineer
Cyber Defence Network Engineer

Grant Thornton (UK) • City Of London

On-site
GBP 65,000 - 95,000
Flexible working options
Collaborative, cross-functional team
Network Security Infrastructure Engineer, Network Traffic Management
Network Security Infrastructure Engineer, Network Traffic Management

NatWest Group • Manchester

On-site
GBP 65,000 - 95,000
Network Security Infrastructure Engineer, Network Traffic Management
Network Security Infrastructure Engineer, Network Traffic Management

NatWest Group • City of Edinburgh

On-site
GBP 60,000 - 90,000
Network and Security Engineer
Network and Security Engineer

TieTalent • Warwick

On-site
GBP 35,000 - 55,000
Car Allowance
34 days holiday
Company pension scheme
+3
Cyber Defence Network Engineer
Cyber Defence Network Engineer

Grant Thornton UK • Greater London

On-site
GBP 85,000 - 110,000