At a Glance
- Tasks: Build and enhance security assurance processes for cutting-edge AI technology.
- Company: Join Wayve, a leader in Embodied AI technology with a collaborative culture.
- Benefits: Competitive salary, inclusive environment, and opportunities for professional growth.
- Other info: Dynamic team environment with a focus on continuous improvement and innovation.
- Why this job: Shape the future of automated driving while making a real impact on security.
- Qualifications: Experience in security assurance and strong communication skills required.
The predicted salary is between 72000 - 88000 £ per year.
About us
Founded in 2017, Wayve is the leading developer of Embodied AI technology. Our advanced AI software and foundation models enable vehicles to perceive, understand, and navigate any complex environment, enhancing the usability and safety of automated driving systems. Our vision is to create autonomy that propels the world forward. Our intelligent, mapless, and hardware-agnostic AI products are designed for automakers, accelerating the transition from assisted to automated driving. In our fast-paced environment big problems ignite us—we embrace uncertainty, leaning into complex challenges to unlock groundbreaking solutions. We aim high and stay humble in our pursuit of excellence, constantly learning and evolving as we pave the way for a smarter, safer future. At Wayve, your contributions matter. We value diversity, embrace new perspectives, and foster an inclusive work environment; we back each other to deliver impact. Make Wayve the experience that defines your career!
About the role
As Wayve grows, so do the expectations of our customers and stakeholders. We need a scalable approach to validating our controls and providing confidence that our security programme is operating as intended. As our Security Assurance Manager, you’ll join the Security team to establish Wayve’s security assurance capability. You’ll design and operate the processes, methodologies, and relationships that enable continuous validation of our security controls, supporting certifications such as TISAX and ISO 21434, meeting customer contractual commitments, and strengthening trust across the organisation. This is an opportunity to build a security assurance capability from the ground up. As a fast-growing engineering organisation, you’ll shape how assurance evolves as we scale. You’ll work closely with teams across Wayve to evolve assurance from periodic, manual testing towards continuous, data-driven validation.
We’d love to hear from you if you’re motivated by helping engineering teams build stronger security through objective evidence, collaboration, and continuous improvement.
Key responsibilities
- Build our security assurance capability
- Design, implement, and continuously improve Wayve’s security assurance capability.
- Develop pragmatic, risk-based assurance methodologies that provide confidence our security controls are operating effectively.
- Define testing approaches, assurance plans, and reporting that support our security programme as it continues to mature.
- Build trusted relationships across Wayve to embed assurance into the way we operate.
- Help establish a culture where assurance is recognised not as a burden, but as a source of insight that helps us improve our security posture.
Validate control effectiveness
- Perform ongoing assurance activities to validate the design and operating effectiveness of security controls across the organisation.
- Produce objective, evidence-based assessments of control effectiveness and clearly communicate findings to stakeholders.
- Independently assess controls while working collaboratively with teams to strengthen security outcomes and improve control maturity.
- Track assurance findings through remediation, validating that issues have been effectively addressed.
- Support external assessments, certifications, and customer assurance activities by providing trusted assurance evidence.
Drive continuous assurance
- Partner with the Security Analytics Engineer to automate evidence collection and evolve assurance from periodic assessments to continuous validation.
- Identify opportunities to replace manual assurance activities with scalable, data-driven approaches.
- Develop repeatable testing methodologies that increase consistency, quality, and coverage as the programme matures.
- Contribute to the ongoing evolution of Wayve’s security control framework by identifying opportunities to improve control design, measurability, and assurance.
About you
Essential
- Experience designing, building, or operating security assurance or controls assurance within organisations with modern tech stacks.
- Strong understanding of security controls and how to evaluate both design and operating effectiveness.
- Experience working in cloud-native, SaaS-heavy environments and collaborating closely with engineering teams.
- Experience developing assurance methodologies, performing control testing, and communicating assurance outcomes to technical and non-technical stakeholders.
- Ability to independently challenge control effectiveness while building collaborative relationships that help teams improve.
- Strong communication skills, with the ability to influence stakeholders across our business.
- A pragmatic mindset, balancing strong governance with the realities of a fast-moving engineering-led organisation.
Desirable
- Experience supporting security assurance programmes for frameworks such as TISAX, ISO 21434, ISO 27001, SOC 2, or similar.
- Experience helping organisations evolve from periodic assurance towards continuous assurance.
- Familiarity with assurance techniques in cloud-native and software engineering environments.
- Professional certifications such as CISA, ISO 27001 Lead Auditor, or similar.
What success looks like
During your first year you will:
- Establish Wayve’s security assurance capability and embed it into the Security programme.
- Implement an ongoing assurance process that provides confidence key security controls are operating effectively.
- Build strong partnerships across internal teams that enable assurance to become a collaborative activity rather than a point-in-time exercise.
- Deliver independent, evidence-based assurance over controls supporting TISAX, ISO 21434, and customer security commitments.
- Introduce automation into selected assurance activities through partnership with the Security Analytics Engineer.
- Help establish a culture where assurance is recognised as a source of insight that enables Security to continuously improve.
Wayve is committed to creating an inclusive interview experience. If you require any accommodations or adjustments to participate fully in our interview process, please let us know. We understand that everyone has a unique set of skills and experiences and that not everyone will meet all of the requirements listed above. If you’re passionate about self-driving cars and think you have what it takes to make a positive impact on the world, we encourage you to apply.
At Wayve we're committed to creating a diverse, fair and respectful culture that is inclusive of everyone based on their unique skills and perspectives, and regardless of sex, race, religion or belief, ethnic or national origin, disability, age, citizenship, marital, domestic or civil partnership status, sexual orientation, gender identity, veteran status, pregnancy or related condition (including breastfeeding) or any other basis as protected by applicable law.
GRC Assurance Manager in London employer: Wayve
Wayve is an exceptional employer that fosters a dynamic and innovative work culture, where software engineers can thrive while contributing to cutting-edge AI solutions. With a strong emphasis on employee growth, Wayve offers opportunities for professional development and collaboration in a hybrid work environment, allowing for flexibility and work-life balance. Located in a vibrant tech hub, employees benefit from a supportive community and access to industry-leading resources.
StudySmarter Expert Advice🤫
We think this is how you could land GRC Assurance Manager in London
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Wayve, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Wayve
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Wayve. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace GRC Assurance Manager in London
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Wayve insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Wayve that you’re committed to staying ahead in the game.
How to prepare for a job interview at Wayve
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Wayve to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Wayve.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.