Security & Network Engineer - 12 months Fixed term

Techtronic Industries (TTI) is a world leader in cordless technology spanning power tools, accessories, hand tools, outdoor power equipment, as well as floorcare & cleaning products. Our focus is on end-users that range from professionals in the industrial, construction and infrastructure sectors to DIYers in home improvement, repair, and maintenance. TTI’s powerful brand portfolio includes MILWAUKEE, RYOBI, AEG - recognized worldwide for their deep heritage and innovative product platforms of superior quality.

We're seeking Security & Network Engineer who can architect and operationalise a secure, compliant, and agile network and infrastructure backbone. You'll own the design and governance of our network, security policies and infrastructure architecture across hybrid cloud and on-premises environments. More than a technician, you're a strategist: someone who shapes policy, educates stakeholders, and mentors teams to embed security thinking into every decision—without strangling velocity.

Key Responsibilities

  • Network Architecture & Design: Lead design and delivery of secure, resilient network infrastructure across on-premises data centres and hybrid cloud environments
  • Architect network segmentation, Zero Trust access models, and VPC/VLAN designs that enforce security policy without over-complicating operations
  • Define network resilience, failover, and disaster recovery strategies aligned with business continuity requirements
  • Security Policy & Governance: Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable)
  • Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls
  • Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure
  • Infrastructure Security Implementation: Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers
  • Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third-party risk assessment
  • Lead security hardening programmes for network appliances, access points, and edge infrastructure; manage patching and lifecycle
  • Cloud & Hybrid Infrastructure Security: Own network security posture in AWS/Azure/GCP: VPC architecture, network ACLs, security groups, private connectivity (Direct Connect/ExpressRoute)
  • Establish cloud governance controls: tagging strategies, resource quotas, cross-account networking, hybrid connectivity
  • Build and maintain secrets management, certificate lifecycle, and identity federation across cloud and on-premises
  • Mentorship & Culture: Coach and mentor infrastructure/network engineers to understand security implications of their designs
  • Build a 'secure by default' culture: run knowledge-sharing sessions, design reviews, and brownbags on emerging threats and best practices
  • Work with AppSec and DevSecOps to embed security checkpoints into infrastructure CI/CD pipelines
  • Operational Delivery & Strategic Projects: Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones)
  • Manage incident response for critical infrastructure events; lead post-mortems and remediation
  • Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security signals

Required Experience & Skills

  • Over 5 years of experience in network engineering, infrastructure architecture, or systems engineering roles
  • Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance
  • Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows
  • Proven experience designing and implementing Zero Trust, least-privilege access, or network segmentation architectures
  • Deep knowledge of cloud networking (AWS VPC, Azure vNets, or GCP) and hybrid connectivity models
  • Demonstrated ability to design and communicate governance frameworks, RACI models, and policy architecture to both technical and non-technical stakeholders
  • Experience with infrastructure-as-code tools (Terraform, CloudFormation, ARM) and configuration management (Ansible, etc.)
  • Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable)
  • Strong incident response and troubleshooting background; comfort operating in high-pressure environments
  • Experience mentoring junior/mid-level engineers and building security culture within technical teams

Desirable Experience

  • CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise)
  • Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance)
  • Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics)
  • Exposure to identity and access management (IAM) architecture: SSO, MFA, RBAC, ABAC
  • Hands-on experience with container networking (Kubernetes CNI, Docker networking) and service mesh (Istio, Linkerd)
  • Experience building or scaling infrastructure teams; familiarity with offshore or distributed team models
  • Practical experience with Cisco, Juniper, Meraki, or enterprise wireless infrastructure (WLC, Aerohive, Meraki)

At TTI, we are committed to being an equal opportunity employer. We believe in creating a supportive environment where everyone can thrive and grow. If you're looking to join a forward-thinking company that values collaboration, innovation, and impact — we’d love to hear from you. Apply now and be part of something exciting!

Job Details

Company
Techtronic Industries - Europe HQ
Location
Maidenhead, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
Competitive salary
Posted