The Mission
You'll be the technical backbone of both our network infrastructure and security posture - designing resilient networks, architecting defences, hunting threats, and ensuring everything that connects us is also protected. This isn't a compliance checkbox role. You'll own real problems across two disciplines, work with a high-trust team, and see the direct impact of your work every day.
What You'll Do
Cybersecurity
- Lead threat modelling and vulnerability assessments across cloud and on-prem environments.
- Respond to and forensically investigate security incidents end-to-end.
- Harden CI/CD pipelines and enforce security-by-design across engineering teams.
- Translate complex risks into clear recommendations for technical and non-technical stakeholders.
- Stay current on threat intelligence - TTPs, CVEs, and emerging attack vectors.
Network Engineering
- Design, deploy, and manage LAN/WAN, SD-WAN, and hybrid cloud network architectures.
- Configure and maintain routers, switches, firewalls, and load balancers (Cisco, Juniper, Palo Alto, or equivalent).
- Implement and enforce zero-trust network access (ZTNA) and network segmentation policies.
- Monitor network performance, diagnose bottlenecks, and optimise throughput and uptime.
- Manage VPNs, VLANs, BGP/OSPF routing, and DNS/DHCP infrastructure.
- Collaborate with cloud teams to secure and govern network connectivity across AWS, GCP, or Azure environments.
What We're Looking For
- 4+ years in cybersecurity and/or network engineering
- Hands-on with cloud security and cloud networking (AWS, GCP, or Azure)
- Proficiency in Python, Bash, or PowerShell for automation
- Experience with OWASP, MITRE ATT&CK, or NIST frameworks
- Strong incident response and digital forensics experience
- Familiarity with SIEM, EDR, IDS/IPS, and SOAR platforms
- Solid grasp of TCP/IP, BGP, OSPF, MPLS, and VLANs
- Experience with firewalls, SD-WAN, and zero-trust network access
- Hands-on with Cisco, Juniper, Palo Alto, or Fortinet hardware/software
- Network monitoring tools (SolarWinds, PRTG, Wireshark, or similar)
- Certs a plus: CISSP, CEH, OSCP, CCNA, CCNP, or CompTIA Network+
- Clear communicator who can write a great post-mortem