This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for a highly experienced and forward-thinking Senior Infrastructure & Security Engineer to play a pivotal strategic role in shaping and securing our technology landscape. This is a hands-on leadership position where you’ll drive the design, optimisation, and security of our hybrid infrastructure across cloud and on-prem environments. You’ll take ownership of delivering scalable, resilient, and high-performing systems that support business-critical operations. You will also play a key role in advancing our Zero Trust strategy, enhancing cyber resilience, and ensuring robust compliance with industry frameworks such as PCI DSS, NIST, and ISO 27001.
Job Responsibility
Act as a hands-on technical lead, driving continuous improvement across infrastructure and security
Design, implement, and optimise secure, scalable environments across servers, cloud, storage, and networks
Support and enhance a hybrid Microsoft ecosystem including Azure, Microsoft 365, Intune, Entra ID, SCCM, and SQL Server
Manage and maintain virtualised environments (VMware vSphere, ESXi, vCenter)
Ensure performance, resilience, and security of the Cisco Meraki network
Manage security tooling including SIEM platforms, endpoint protection, and identity access controls
Lead vulnerability assessments, penetration testing, and remediation activities
Strengthen cyber defence through proactive threat detection, incident response, and forensic analysis
Drive adoption of Zero Trust principles and secure identity management (RBAC, MFA)
Enhance security posture across Azure using tools such as Microsoft Defender for Cloud and Sentinel
Maintain compliance with regulatory and security frameworks (PCI DSS, ISO, NIST, GDPR)
Design and implement secure device deployments using Intune and Autopilot
Ensure consistent, secure configurations across retail, hospitality POS, and corporate devices
Manage patching, updates, and endpoint security across a complex estate
Lead disaster recovery planning, testing, and execution
Maintain backup solutions and ensure high availability of services
Partner with internal teams and third-party providers to deliver secure, high-performing services
Act as a trusted subject matter expert and advisor across the business
Mentor team members and promote a security-first culture
Ensure robust documentation, standards, and best practices are in place
Requirements
Strong experience with Microsoft infrastructure (Windows Server, Active Directory, Azure, Microsoft 365)
Deep understanding of networking technologies (LAN/WAN/WiFi, TCP/IP, firewalls, routing, switching – Cisco)
Experience with cloud security, IAM, and Azure environments
Knowledge of virtualisation technologies (VMware)
Scripting experience (PowerShell)
Familiarity with monitoring tools (e.g., SolarWinds, PRTG, Zabbix)
Experience in incident response, vulnerability management, and endpoint security
Understanding of backup, disaster recovery, and storage solutions
Nice to have
Certifications: CCNA/CCNP/CCIE, Azure (AZ-104, AZ-500), Microsoft certifications (MS-102, MCSA)
Knowledge of Zero Trust architecture and hybrid cloud environments
Experience with automation tools (Terraform, Azure CLI)
Familiarity with ITIL practices and service management tools
Experience managing third-party vendors and security compliance
What we offer
Competitive salary
Up to 40% store and restaurant discount
25 days holiday + your birthday off
Subsidised staff restaurant using Fortnum’s own ingredients
Excellent pension scheme
Ongoing development and career progression opportunities