Techtronic Industries (TTI) is a world leader in cordless technology spanning power tools, accessories, hand tools, outdoor power equipment, as well as floorcare & cleaning products. Our focus is on end-users that range from professionals in the industrial, construction and infrastructure sectors to DIYers in home improvement, repair, and maintenance. TTI’s powerful brand portfolio includes MILWAUKEE, RYOBI, AEG - recognized worldwide for their deep heritage and innovative product platforms of superior quality.
We're seeking Security & Network Engineer who can architect and operationalise a secure, compliant, and agile network and infrastructure backbone. You'll own the design and governance of our network, security policies and infrastructure architecture across hybrid cloud and on-premises environments. More than a technician, you're a strategist: someone who shapes policy, educates stakeholders, and mentors teams to embed security thinking into every decision—without strangling velocity.
Key Responsibilities
-
Network Architecture & Design:
Lead design and delivery of secure, resilient network infrastructure across on-premises data centres and hybrid cloud environments
-
Architect network segmentation, Zero Trust access models, and VPC/VLAN designs that enforce security policy without over-complicating operations
-
Define network resilience, failover, and disaster recovery strategies aligned with business continuity requirements
-
Security Policy & Governance:
Develop and maintain network security policies, baseline configurations, and compliance frameworks (ISO 27001, SOC 2, regulatory if applicable)
-
Build and socialise governance frameworks: RACI matrices for infrastructure decisions, policy approval workflows, change controls
-
Create runbooks, decision trees, and architectural standards that allow teams to move fast while staying secure
-
Infrastructure Security Implementation:
Implement and manage firewalls, intrusion detection/prevention, DDoS mitigation, and threat monitoring across network layers
-
Establish secure supply chain practices for infrastructure: vendor management, procurement policy, and third-party risk assessment
-
Lead security hardening programmes for network appliances, access points, and edge infrastructure; manage patching and lifecycle
-
Cloud & Hybrid Infrastructure Security:
Own network security posture in AWS/Azure/GCP: VPC architecture, network ACLs, security groups, private connectivity (Direct Connect/ExpressRoute)
-
Establish cloud governance controls: tagging strategies, resource quotas, cross-account networking, hybrid connectivity
-
Build and maintain secrets management, certificate lifecycle, and identity federation across cloud and on-premises
-
Mentorship & Culture:
Coach and mentor infrastructure/network engineers to understand security implications of their designs
-
Build a 'secure by default' culture: run knowledge-sharing sessions, design reviews, and brownbags on emerging threats and best practices
-
Work with AppSec and DevSecOps to embed security checkpoints into infrastructure CI/CD pipelines
-
Operational Delivery & Strategic Projects:
Lead network delivery for strategic initiatives (e.g., data centre migrations, office relocations, cloud landing zones)
-
Manage incident response for critical infrastructure events; lead post-mortems and remediation
-
Collaborate with infrastructure teams to build monitoring, alerting, and observability stacks that surface security signals
Required Experience & Skills
-
Over 5 years of experience in network engineering, infrastructure architecture, or systems engineering roles
-
Proven hands-on with enterprise network security: firewall architecture (Palo Alto, Fortinet, Cisco ASA), network segmentation, threat detection, compliance
-
Strong understanding of DevSecOps principles and how to embed security into CI/CD and infrastructure-as-code workflows
-
Proven experience designing and implementing Zero Trust, least-privilege access, or network segmentation architectures
-
Deep knowledge of cloud networking (AWS VPC, Azure vNets, or GCP) and hybrid connectivity models
-
Demonstrated ability to design and communicate governance frameworks, RACI models, and policy architecture to both technical and non-technical stakeholders
-
Experience with infrastructure-as-code tools (Terraform, CloudFormation, ARM) and configuration management (Ansible, etc.)
-
Proficiency with network monitoring and observability tools (e.g., Splunk, Datadog, New Relic, Elasticsearch, Prometheus, RSA NetWitness, Tenable)
-
Strong incident response and troubleshooting background; comfort operating in high-pressure environments
-
Experience mentoring junior/mid-level engineers and building security culture within technical teams
Desirable Experience
-
CISSP, CEH, OSCP, AWS Solutions Architect Professional, or similar security certification (or equivalent practical expertise)
-
Experience with regulatory frameworks (ISO 27001, SOC 2, GDPR, NIS Regulations, or industry-specific compliance)
-
Background in manufacturing, retail, or distributed operations environments (warehouse infrastructure, multi-site logistics)
-
Exposure to identity and access management (IAM) architecture: SSO, MFA, RBAC, ABAC
-
Hands-on experience with container networking (Kubernetes CNI, Docker networking) and service mesh (Istio, Linkerd)
-
Experience building or scaling infrastructure teams; familiarity with offshore or distributed team models
-
Practical experience with Cisco, Juniper, Meraki, or enterprise wireless infrastructure (WLC, Aerohive, Meraki)
At TTI, we are committed to being an equal opportunity employer. We believe in creating a supportive environment where everyone can thrive and grow. If you're looking to join a forward-thinking company that values collaboration, innovation, and impact — we’d love to hear from you. Apply now and be part of something exciting!