At a Glance
- Tasks: Design and implement security solutions to protect our digital landscape.
- Company: Join Footasylum, a leading UK retailer in streetwear and sportswear.
- Benefits: Enjoy a supportive environment with opportunities for growth and development.
- Other info: Collaborative culture that values diversity and continuous learning.
- Why this job: Make a real impact on cyber security while working with innovative technologies.
- Qualifications: Experience in cyber security and a passion for emerging tech is essential.
The predicted salary is between 63000 - 77000 £ per year.
Description
Footasylum is a leading UK-based retailer specialising in streetwear and sportswear, committed to delivering innovative and trend-setting products to our customers, with a strong focus on digital transformation and data-driven decision-making.
We are looking for a talented and motivated Cyber Security Engineer to join our growing Information Security team.
This is an exciting opportunity to play a key role in protecting our business, customers, systems, and data while supporting our ongoing digital transformation journey.
As a Cyber Security Engineer, you will design, implement, and enhance security solutions across cloud platforms, infrastructure, applications, networks, and endpoints.
Working closely with Infrastructure, Platform, Engineering, Development, and Operations teams, you will help embed security into everything we do.
This role offers the opportunity to influence security strategy, implement modern technologies, drive automation, and support the adoption of Dev Sec Ops and Zero Trust principles across the organisation.
We foster a culture of collaboration, innovation, continuous learning, and empowerment, giving our people the autonomy and support needed to make a real impact.
The Team
The Team is responsible for defining and implementing our cyber security strategy, engineering modern security solutions, driving cloud security initiatives, strengthening threat detection capabilities, and supporting the organisation's wider digital transformation programme.
We operate in a supportive and knowledge-sharing environment where innovation, continuous improvement, and professional development are actively encouraged.
Team members are empowered to challenge the status quo, introduce new technologies, automate processes, and influence the direction of our security capabilities.
About You
We are looking for someone who embodies the Footasylum values – Community, Collaborate and Challenge.
You will be passionate about cyber security and emerging technologies.
You will be naturally curious and eager to solve complex problems.
You will have the ability to balance security requirements with business objectives.
- Along with;
- A collaborative team player who enjoys sharing knowledge.
- Detail-oriented with a commitment to quality.
- Comfortable working within a fast-paced technology environment.
- Proactive, accountable, and focused on continuous improvement.
Responsibilities
- Security Engineering
- You will design, implement, and maintain enterprise security solutions across cloud, infrastructure, application, and endpoint environments.
- You will develop and maintain security standards, technical controls, and security architectures.
- You will evaluate emerging technologies and recommend improvements to strengthen our security posture.
- You will support the implementation of Zero Trust security principles across the organisation.
- You will enhance threat prevention, detection, and response capabilities through security engineering best practices.
- Cloud Security
- You will design and implement security controls within Microsoft Azure and hybrid cloud environments.
- You will secure cloud infrastructure using industry best practices and cloud-native security technologies.
- You will implement identity and privileged access management controls.
- You will monitor and remediate cloud security risks and misconfigurations.
- You will participate in cloud security reviews, assessments, and architecture discussions.
- Security Operations & Threat Detection
- You will engineer and maintain SIEM, SOAR, and security monitoring platforms.
- You will develop and optimise security alerts, detections, and automated response processes.
- You will collaborate with internal teams and SOC providers to improve threat detection and incident response capabilities.
- You will support security investigations, incident response activities, and root cause analysis.
- You will deliver security automation initiatives that improve operational effectiveness.
- Vulnerability Management
- You will implement and maintain vulnerability management processes.
- You will conduct infrastructure, application, and cloud security assessments.
- You will work with technical teams to coordinate remediation activities.
- You will review penetration testing findings and support remediation planning.
- You will perform security reviews and risk assessments for new technologies and services.
- Application Security & Dev Sec Ops
- You will integrate security into CI/CD pipelines and development workflows.
- You will support secure coding initiatives and security testing programmes.
- You will implement automated security scanning and validation controls.
- You will collaborate with development teams to reduce application security risks.
- You will promote security-first engineering and Dev Sec Ops best practices.
- Network & Infrastructure Security
- You will design and implement secure network architectures.
• You will manage and improve security controls including
- Firewalls
- Web Application Firewalls (WAF)
- Secure Web Gateways
- Network Segmentation
- DDo S Protection
- API Security Controls
- You will support endpoint security and Mobile Device Management (MDM) solutions.
- Security Automation
- You will develop scripts, automation, and orchestration workflows.
- You will automate repetitive security tasks to improve efficiency.
- You will enhance compliance monitoring, reporting, visibility, and alerting capabilities.
- You will support Infrastructure-as-Code (Ia C) security reviews and governance.
Essential Experience
Proven experience as a Cyber Security Engineer, Security Engineer, Cloud Security Engineer, Infrastructure Security Engineer, or similar role.
Strong understanding of modern cyber security principles and security architecture.
Hands-on experience with
- SIEM and Security Monitoring platforms
- Endpoint Detection and Response (EDR)
- Vulnerability Management solutions
- Identity and Access Management (IAM)
- Network Security technologies
- Web Application Firewalls (WAF)
- Security Automation tools
- Cloud Security Controls
Strong experience securing Microsoft Azure environments.
Experience working within cloud and hybrid infrastructure environments.
Knowledge of application security and secure software development practices.
Experience supporting Dev Sec Ops initiatives.
Scripting and automation experience using technologies such as
- Power Shell
- Python
- Bash
- Terraform
Excellent troubleshooting, analytical, and problem-solving skills.
Strong communication and stakeholder engagement abilities.
Qualifications
Essential
A recognised cyber security qualification such as
- Comp TIA Security+ (SY0-701)
- ISC2 Certified in Cybersecurity (CC)
- ISC2 SSCP
- Microsoft Security Operations Analyst (SC-200)
- Microsoft Azure Security Engineer Associate (AZ-500)
- GIAC Security Essentials (GSEC)
Desirable
- Microsoft Cybersecurity Architect Expert (SC-100)
- CISSP
- CISM
- Certified Cloud Security Professional (CCSP)
- Certified Ethical Hacker (CEH)
- Offensive Security Certified Professional (OSCP)
- Terraform Associate Certification
- Additional GIAC certifications
Why Footasylum?
We are one of the UK’s leading omni channel retailers, but as well as that, we’re a genuinely great place to work.
We value you and your development.
Our people across the business have taken on new opportunities, whether that’s stepping into a new role, moving into a different department, or building new skills through the support and training we offer.
Our goal is to create a fun, supportive environment where your success matters just as much as ours, and where you have the tools, encouragement, and opportunities to achieve your goals.
Diversity
We recognise and value the importance of diversity to help make sure we have a diverse perspective when we are building services to customers and the wider business.
This is great news for us.
But for us, diversity is also about, building happy energised teams full of people who want to learn and want to be inspired by each other's different backgrounds and experiences.
Recruitment Process
We review applications on an individual basis, and if we feel you would be a good fit we’ll invite you for a call or Teams video for an informal chat about the role, and to see if we’re a good fit for you.
We value open and honest conversations and collaboration, giving you a chance to learn about what we are doing in an informal and friendly environment.
We want to know about you and why you feel that this is the opportunity for you.
Please note, this is not a remote role and our expectation is that you will be able to attend Head Office in a hybrid way, in Greater Manchester.
#J-18808-Ljbffr
Cyber Security Engineer Information Technology · Head Office · employer: Merry Hill Group
Footasylum is an exceptional employer that thrives on creativity and passion for streetwear, offering a vibrant work culture where every team member plays a crucial role in shaping the customer experience. With flexible shifts, competitive pay, and a generous staff discount, employees are encouraged to grow through structured training and clear pathways to advancement, making it an ideal place for those looking to build a rewarding career in retail.
StudySmarter Expert Advice🤫
We think this is how you could land Cyber Security Engineer Information Technology · Head Office ·
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Merry Hill Group, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Merry Hill Group
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Merry Hill Group. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Cyber Security Engineer Information Technology · Head Office ·
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Merry Hill Group insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Merry Hill Group that you’re committed to staying ahead in the game.
How to prepare for a job interview at Merry Hill Group
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Merry Hill Group to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Merry Hill Group.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.