At a Glance
- Tasks: Lead and innovate Geordie's security programme, ensuring trust as we scale.
- Company: Join a fast-growing AI security company shaping the future of secure technology.
- Benefits: Competitive salary, flexible work environment, and opportunities for professional growth.
- Other info: Join a collaborative team that values kindness and innovation.
- Why this job: Be at the forefront of AI security, making a real impact in a dynamic industry.
- Qualifications: Experience in cloud security, application security, and building security functions.
The predicted salary is between 70000 - 90000 £ per year.
We are seeking a Head of Security to build and own the security program that enables Geordie to move incredibly quickly without compromising trust through its next stage of growth. You’ll be joining a rapidly growing team and product that is already serving some of the world’s largest enterprises. You'll combine modern security engineering, thoughtful governance and AI-first operations to ensure our customers, employees and partners can confidently rely on Geordie as we scale.
With SOC 2 Type II and ISO 27001 already in place, your mission is to build an effective AI-native security programme that keeps certifications healthy as a byproduct of how we already operate. Initially, you'll be a hands-on individual contributor owning security end-to-end. This includes both product security for the platform our customers trust to govern their agents, and the internal security program that keeps Geordie itself defensible. You'll own security strategy, engineering, governance and compliance while partnering closely with Engineering, our Internal Systems & AI Lead, and the wider leadership team.
You'll also be Customer Zero for Geordie. Working closely with our Product and Engineering teams, you'll own the implementation of our platform, ensuring Geordie is the best example of secure AI adoption, thereby shaping the future of the product and industry best practice.
What You'll Do
- Product Security
- Own product security for the Geordie platform, with secure by design, threat modelling and security architecture review embedded throughout the SDLC, enabling rapid development safely.
- Drive vulnerability management, penetration testing, and remediation across the product.
- Act as the stakeholder for product security requirements for authn/authz, tenant isolation, and privileged access.
- Immerse yourself in the agent security domain our customers are focused on: prompt injection, agent supply chain, mcp permissions, and non-human identities.
- Security Engineering & Operations
- Own security across Geordie's cloud infrastructure and internal environments.
- Own the company's security roadmap, risk management approach and overall security governance.
- Own security policy and technical requirements across identity, endpoints, cloud infrastructure and SaaS applications.
- Partner closely with our Internal Systems & AI Lead, who owns identity platforms, endpoint management, device provisioning and SaaS administration, ensuring security controls are designed, implemented and continuously improved.
- Lead incident preparedness and response, ensuring Geordie can respond rapidly and effectively when required.
- Continuously improve monitoring and detection capabilities across the business.
- AI Native Risk, Governance & Trust
- Build one of the industry's best AI-native security programs through thoughtful use of AI and automation, growing security leverage through AI rather than manual process.
- Develop AI-powered workflows that automate investigations, governance, policy enforcement and repetitive security operations.
- Own Geordie's Information Security Management System (ISMS), automating evidence collection, control monitoring and questionnaire response so that ISO 27001, SOC 2 and audit-readiness are continuously maintained rather than periodically assembled.
- Partner with Solutions Engineering on customer security questionnaires, due diligence and enterprise security reviews.
- Ensure the business maintains the operational maturity and trust required to support the world’s largest enterprises.
- Customer Zero
- Own Geordie’s implementation of our product, making us the best example anywhere of the product deployed well and an effective agent security programme.
- Validate new capabilities in production before they reach customers, and provide real operator experience to our product engineering teams.
- Act as an external reference for customers and prospects, showing how a security team actually runs Geordie, and what good agentic governance looks like in practice.
- Building the Security Function
- Grow a lean, high-performing security team as the complexity of the business demands it, with automation and AI multiplying what each person can cover.
- Build a strong security culture through practical guidance and enablement, helping the company adopt AI confidently with clear guardrails rather than unnecessary restrictions.
- Keep security an accelerator for innovation rather than a blocker.
Ideal Background
- You've been through the journey of scaling security at a high-growth B2B SaaS or technology company, having led it, or as a senior member of the team who is now ready to own it.
- Strong hands-on background across cloud security, application security and security engineering.
- Comfortable operating as a hands-on individual contributor while building security functions from first principles.
- Experience maintaining security programs aligned to frameworks such as ISO 27001 and SOC 2.
- Strong understanding of modern software development, cloud infrastructure and secure engineering practices.
- Experience partnering closely with engineering organisations to build secure-by-design systems.
- Curious about AI and excited by the opportunity to build one of the industry's most AI-native security programs.
- Highly proactive, pragmatic and comfortable operating independently in a fast-moving environment.
Why This Role
Security is entering one of the most significant periods of change in its history. AI is fundamentally changing how software is built, how businesses operate and how attackers behave. Traditional approaches to security will not be enough. At Geordie, we believe security should enable organisations to adopt AI with confidence rather than slow them down. We also believe the best way to build that future is to live it ourselves. This role offers the opportunity to build Geordie's security program from the ground up, creating a modern, engineering-led security function that enables the business to move quickly while maintaining the trust of our customers. Along the way, you'll help shape the future of one of the fastest-growing AI security companies.
Our Values
- Solve What Matters: We listen intently and stay focused on what truly matters to our customers. If it doesn't help them navigate real-world agentic adoption and risk, it's probably not worth building.
- Build, Learn, Iterate: We favour momentum over perfection; testing, learning, and evolving through action. It's how we move fast and get better, together.
- Kind, Not Comfortable: We're honest, respectful, and unafraid to challenge each other. We believe doing great work should feel good, too. Kindness makes that possible.
Head of Security in London employer: Geordie AI
At Geordie AI, we pride ourselves on fostering a dynamic and inclusive work culture that empowers our employees to thrive. As a Senior Account Executive, you'll enjoy competitive compensation, comprehensive benefits, and ample opportunities for professional growth in the rapidly evolving field of AI governance and security. Join us in our vibrant location where innovation meets collaboration, and be part of a team that's shaping the future of technology.
StudySmarter Expert Advice🤫
We think this is how you could land Head of Security in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Geordie AI, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Geordie AI
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Geordie AI. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Head of Security in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Geordie AI insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Geordie AI that you’re committed to staying ahead in the game.
How to prepare for a job interview at Geordie AI
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Geordie AI to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Geordie AI.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.