Cyber Security Engineer
Footasylum Rochdale, England, United Kingdom
Retail · 1,001-5,000 employees
About the role
You will design, implement, and maintain enterprise security solutions across cloud, infrastructure, and application environments. Additionally, you will drive security automation, threat detection, and vulnerability management to strengthen the organization's overall security posture.
What they look for
Requirements
The role requires proven experience as a Cyber Security Engineer with strong hands-on expertise in Microsoft Azure and modern security architecture. Candidates must possess relevant industry certifications and demonstrate proficiency in scripting, automation, and secure development practices.
Full description
Description
Footasylum is a leading UK-based retailer specialising in streetwear and sportswear, committed to delivering innovative and trend-setting products to our customers, with a strong focus on digital transformation and data-driven decision-making.
We are looking for a talented and motivated Cyber Security Engineer to join our growing Information Security team. This is an exciting opportunity to play a key role in protecting our business, customers, systems, and data while supporting our ongoing digital transformation journey.
As a Cyber Security Engineer, you will design, implement, and enhance security solutions across cloud platforms, infrastructure, applications, networks, and endpoints. Working closely with Infrastructure, Platform, Engineering, Development, and Operations teams, you will help embed security into everything we do.
This role offers the opportunity to influence security strategy, implement modern technologies, drive automation, and support the adoption of DevSecOps and Zero Trust principles across the organisation.
We foster a culture of collaboration, innovation, continuous learning, and empowerment, giving our people the autonomy and support needed to make a real impact.
The Team
The Team is responsible for defining and implementing our cyber security strategy, engineering modern security solutions, driving cloud security initiatives, strengthening threat detection capabilities, and supporting the organisation's wider digital transformation programme.
We operate in a supportive and knowledge-sharing environment where innovation, continuous improvement, and professional development are actively encouraged. Team members are empowered to challenge the status quo, introduce new technologies, automate processes, and influence the direction of our security capabilities.
About You
We are looking for someone who embodies the Footasylum values – Community, Collaborate and Challenge.
You will be passionate about cyber security and emerging technologies.
You will be naturally curious and eager to solve complex problems.
You will have the ability to balance security requirements with business objectives.
Along with;
· A collaborative team player who enjoys sharing knowledge.
· Detail-oriented with a commitment to quality.
· Comfortable working within a fast-paced technology environment.
· Proactive, accountable, and focused on continuous improvement.
Responsibilities
Security Engineering
· You will design, implement, and maintain enterprise security solutions across cloud, infrastructure, application, and endpoint environments.
· You will develop and maintain security standards, technical controls, and security architectures.
· You will evaluate emerging technologies and recommend improvements to strengthen our security posture.
· You will support the implementation of Zero Trust security principles across the organisation.
· You will enhance threat prevention, detection, and response capabilities through security engineering best practices.
Cloud Security
· You will design and implement security controls within Microsoft Azure and hybrid cloud environments.
· You will secure cloud infrastructure using industry best practices and cloud-native security technologies.
· You will implement identity and privileged access management controls.
· You will monitor and remediate cloud security risks and misconfigurations.
· You will participate in cloud security reviews, assessments, and architecture discussions.
Security Operations & Threat Detection
· You will engineer and maintain SIEM, SOAR, and security monitoring platforms.
· You will develop and optimise security alerts, detections, and automated response processes.
· You will collaborate with internal teams and SOC providers to improve threat detection and incident response capabilities.
· You will support security investigations, incident response activities, and root cause analysis.
· You will deliver security automation initiatives that improve operational effectiveness.
Vulnerability Management
· You will implement and maintain vulnerability management processes.
· You will conduct infrastructure, application, and cloud security assessments.
· You will work with technical teams to coordinate remediation activities.
· You will review penetration testing findings and support remediation planning.
· You will perform security reviews and risk assessments for new technologies and services.
Application Security & DevSecOps
· You will integrate security into CI/CD pipelines and development workflows.
· You will support secure coding initiatives and security testing programmes.
· You will implement automated security scanning and validation controls.
· You will collaborate with development teams to reduce application security risks.
· You will promote security-first engineering and DevSecOps best practices.
Network & Infrastructure Security
· You will design and implement secure network architectures.
· You will manage and improve security controls including:
Ø Firewalls
Ø Web Application Firewalls (WAF)
Ø Secure Web Gateways
Ø Network Segmentation
Ø DDoS Protection
Ø API Security Controls
· You will support endpoint security and Mobile Device Management (MDM) solutions.
Security Automation
· You will develop scripts, automation, and orchestration workflows.
· You will automate repetitive security tasks to improve efficiency.
· You will enhance compliance monitoring, reporting, visibility, and alerting capabilities.
· You will support Infrastructure-as-Code (IaC) security reviews and governance.
Essential Experience
Proven experience as a Cyber Security Engineer, Security Engineer, Cloud Security Engineer, Infrastructure Security Engineer, or similar role.
Strong understanding of modern cyber security principles and security architecture.
Hands-on experience with:
· SIEM and Security Monitoring platforms
· Endpoint Detection and Response (EDR)
· Vulnerability Management solutions
· Identity and Access Management (IAM)
· Network Security technologies
· Web Application Firewalls (WAF)
· Security Automation tools
· Cloud Security Controls
Strong experience securing Microsoft Azure environments.
Experience working within cloud and hybrid infrastructure environments.
Knowledge of application security and secure software development practices.
Experience supporting DevSecOps initiatives.
Scripting and automation experience using technologies such as:
· PowerShell
· Python
· Bash
· Terraform
Excellent troubleshooting, analytical, and problem-solving skills.
Strong communication and stakeholder engagement abilities.
Qualifications
Essential
A recognised cyber security qualification such as:
· CompTIA Security+ (SY0-701)
· ISC2 Certified in Cybersecurity (CC)
· ISC2 SSCP
· Microsoft Security Operations Analyst (SC-200)
· Microsoft Azure Security Engineer Associate (AZ-500)
· GIAC Security Essentials (GSEC)
Desirable
· Microsoft Cybersecurity Architect Expert (SC-100)
· CISSP
· CISM
· Certified Cloud Security Professional (CCSP)
· Certified Ethical Hacker (CEH)
· Offensive Security Certified Professional (OSCP)
· Terraform Associate Certification
· Additional GIAC certifications
Why Footasylum?
We are one of the UK’s leading omni channel retailers, but as well as that, we’re a genuinely great place to work. We value you and your development. Our people across the business have taken on new opportunities, whether that’s stepping into a new role, moving into a different department, or building new skills through the support and training we offer. Our goal is to create a fun, supportive environment where your success matters just as much as ours, and where you have the tools, encouragement, and opportunities to achieve your goals.
Diversity
We recognise and value the importance of diversity to help make sure we have a diverse perspective when we are building services to customers and the wider business. This is great news for us. But for us, diversity is also about, building happy energised teams full of people who want to learn and want to be inspired by each other's different backgrounds and experiences.
Recruitment Process
We review applications on an individual basis, and if we feel you would be a good fit we’ll invite you for a call or Teams video for an informal chat about the role, and to see if we’re a good fit for you.
We value open and honest conversations and collaboration, giving you a chance to learn about what we are doing in an informal and friendly environment. We want to know about you and why you feel that this is the opportunity for you. Please note, this is not a remote role and our expectation is that you will be able to attend Head Office in a hybrid way, in Greater Manchester.
Similar roles
-
Director Cybersecurity Operational Risk Oversight
Citizens Bank Johnston, Rhode Island, United States · $178K–$220K/yr
-
Senior Security Engineer, Detection & Response
Aircall.io, Inc. San Francisco, California, United States · $180K–$220K/yr
-
Senior Security Engineer (m/w/d)
Yoummday GmbH Munich, Bavaria, Germany
-
Senior Security Engineer, Cloud and Infrastructure Security
Weight Watchers United States · $210K–$225K/yr
-
Staff Security Engineer - AI Security
Qube Research & Technologies London, England, United Kingdom
-
Cybersecurity Engineer - CBO
INNOVIM United States · $90K–$107K/yr