At a Glance
- Tasks: Lead security strategy and engineering for cutting-edge data products at Cognism.
- Company: Cognism, a leading provider of B2B data and sales intelligence.
- Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
- Other info: Join a diverse team committed to innovation and excellence in security.
- Why this job: Shape the future of security in a fast-paced tech environment and make a real impact.
- Qualifications: Proven experience in building security programmes and strong technical foundation in AppSec.
The predicted salary is between 100000 - 150000 £ per year.
WHO ARE WE
Cognism is the leading provider of European B2B data and sales intelligence. Ambitious businesses of every size use our platform to discover, connect, and engage with qualified decision‑makers faster and close more deals. Headquartered in London with global offices, Cognism’s contact data and contextual signals are trusted by thousands of revenue teams to eliminate the guesswork from prospecting.
The Role
At Cognism, the security of our data, our systems and our clients’ systems is a business priority. Information security is embedded in the way we work, and we are driving a culture where the fastest path is the securest path. As the function continues to mature, we are now hiring for a Director of Security Engineering & Operations to report directly to our CISO. In this role you will own and drive the technical security strategy for Cognism’s web and data products, as well as our corporate environment. You will be responsible for designing a security programme that protects our most sensitive assets: our data, our data fusion engine and the logic that powers it. As a trusted partner to our R&D leadership team you will help to define and drive the long‑term security engineering maturity roadmap, driving alignment across engineering leaders, product leadership and IT. If you’re energised by the idea of shaping measurable security processes and controls, from the ground up, aligning engineering around secure‑by‑design principles, and elevating operational excellence, then this is the role for you. This is a rare opportunity to define the technical security vision for a data‑intensive product at a moment where AI, scale, and engineering velocity are creating new and exciting challenges. You will shape how Cognism builds securely for the next decade.
What success looks like
- Delivered a unified security engineering roadmap aligned with engineering leadership.
- Matured secure SDLC adoption across Web and Data engineering.
- Improved MTTD/MTTR through stronger SOC operations.
- Invested in and mentored a team with clear ownership, KPIs, and engineering trust.
- Reduced engineering friction by creating pragmatic, developer-friendly guardrails.
What You’ll Own
Security Strategy & Engineering IntegrationDefine and own Cognism’s technical security strategy that seeks to embed security‑by‑design within our web and data products, our data fusion engine and pipelines, and our corporate landscape. You will drive a strategy that is pragmatic, risk‑ranked, and aligned to engineering velocity. Work directly with product and technology leadership as a strategic partner. You will drive ownership and accountability, clearly agreeing ways of working between your team and product and technology teams. Set and direct a secure SDLC strategy that engineers engage with, coaching and mentoring our application security engineer with running our threat modelling program, embedding security in CI/CD, and iteratively improving our vulnerability management processes. Partner with engineering leadership to ensure risk‑driven supply chain management across our product, ensuring what we bring in doesn’t undermine what we protect. Work directly with our Director of IT operations to ensure our corporate security posture is mitigating risk and empowering our employees to be as secure as possible, through guardrails that protect unacceptable risk but don’t stifle innovation.
Data & AI SecurityPartner with our VP of Data Engineering to strengthen the security of our enrichment engine, data pipelines, and warehouse ecosystems. Direct a strategy that considers security across the full data stack — from ingestion through to the warehouse — with a focus on access governance, data classification, and secrets management as non‑negotiables. Define how Cognism embeds AI securely as LLMs and agentic workflows move deeper into the product and our technology teams’ operations. Partner with our CISO to shape and implement an AI security posture that is embedded in strong security foundations, helping us stay ahead of the threat landscape rather than reacting to it.
Detection, Response & SOC PartnershipOwn the strategic relationship with our 24/7 outsourced SOC holding them to a high standard on threat hunting, threat intelligence utilisation, and automated response, not just SLA compliance. Ensure Cognism has a holistic, well‑maintained SIEM that reflects how we operate and improves continuously as the threat landscape evolves. Build the internal team into a trusted escalation layer, with clear incident response playbooks, rehearsed escalation paths, and a feedback loop that sharpens detection over time.
Team & CultureLead a team of application and infrastructure security engineers, setting the standard for technical excellence and deep partnership with their engineering counterparts. Build a security culture where developers raise security questions early, understand threat models, and own remediations, not because policy requires it, but because the culture makes it natural. Be the security leader Cognism’s engineers want in the room: credible enough to be trusted, collaborative enough to be included, and strategic enough to make it count.
What We Need
Leadership & influenceDemonstrated experience building security programmes from scratch or transforming them significantly in a product‑led, engineering‑first company. A track record of influencing engineering culture and earning trust, not enforcing it. Experience managing external security partners, (e.g 24/7 Security Operations Centre, penetration testing 3rd parties) and raising their performance through clear accountability, not just contract reviews. Able to communicate risk in business terms to exec and board audiences, and technical terms to engineers, without losing precision in either direction.
Technical foundationStrong AppSec expertise (OWASP, API security, SAST/DAST, SDLC) with practical threat modelling experience – enough to challenge and coach our most senior application security engineers. Hands-on understanding of data security, cloud data warehouses, and pipeline integrity – enough to ensure we are driving the right programme of work across our technology department. Cloud security fluency with working knowledge of container and Kubernetes security, IAM design, and cloud‑native security tooling – enough to clearly identify, prioritise and challenge solutions for implementing security in our cloud environment. Working knowledge of AI/LLM security risks: enough depth to assess integrations, define guardrails, and evolve the programme as the technology does.
MindsetRisk‑based by instinct: prioritises based on both technical and business impact. Builder mentality: energised by creating structure where there isn’t any, pragmatic about sequencing, and focused on outcomes over coverage. Genuinely curious about AI, not just its security risks, but its potential to improve how security is done.
At Cognism, we are committed to fostering an inclusive, diverse, and supportive workplace. We welcome applications from individuals typically underrepresented in tech, so if this role excites you but you’re unsure if you meet every requirement, we encourage you to apply!
Director, Security Engineering & Operations employer: Dormont Manufacturing Co
Cognism is an exceptional employer that prioritises the security of data and systems while fostering a culture of innovation and collaboration. Located in the vibrant city of London, employees benefit from a dynamic work environment that encourages professional growth through mentorship and clear ownership of projects. With a commitment to inclusivity and diversity, Cognism offers unique opportunities to shape the future of security engineering in a rapidly evolving tech landscape.
StudySmarter Expert Advice🤫
We think this is how you could land Director, Security Engineering & Operations
✨Tip Number 1
Network like a pro! Get out there and connect with people in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works at Cognism. Building relationships can open doors that applications alone can't.
✨Tip Number 2
Show off your skills! If you have a portfolio or any projects related to security engineering, make sure to highlight them during interviews. We love seeing practical examples of your work and how you tackle real-world challenges.
✨Tip Number 3
Prepare for the interview by understanding our culture and values. At Cognism, we value collaboration and innovation, so think about how you can demonstrate these qualities in your responses. Be ready to share how you've influenced engineering culture in your past roles.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining our team at Cognism. Don’t miss out on this opportunity!
We think you need these skills to ace Director, Security Engineering & Operations
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the role of Director, Security Engineering & Operations. Highlight your experience in building security programmes and your technical expertise in AppSec, cloud security, and AI risks. We want to see how your background aligns with our needs!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how you can contribute to Cognism's mission. Be sure to mention specific experiences that demonstrate your leadership and influence in security engineering.
Showcase Your Achievements:When detailing your past roles, focus on measurable achievements. Did you improve MTTD/MTTR or enhance secure SDLC adoption? Quantify your successes to show us the impact you've made in previous positions. Numbers speak volumes!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows us you’re keen on joining the Cognism team!
How to prepare for a job interview at Dormont Manufacturing Co
✨Know Your Stuff
Make sure you brush up on your AppSec expertise, especially around OWASP and API security. Be ready to discuss your hands-on experience with threat modelling and how you've influenced engineering culture in previous roles.
✨Show Your Leadership Skills
Prepare examples of how you've built or transformed security programmes in a product-led environment. Highlight your ability to communicate risk effectively to both technical teams and executive audiences.
✨Understand the Business
Familiarise yourself with Cognism's business model and how security integrates into their operations. Be prepared to discuss how you can align security strategies with engineering velocity and business goals.
✨Cultural Fit Matters
Cognism values a collaborative culture, so think about how you can demonstrate your ability to build trust and influence without enforcing policies. Share stories that showcase your approach to fostering a security-first mindset among developers.