Overview
In this role you will own the corporate security platform and controls that underpin Wayve’s global operations, leading a distributed security engineering team. You will build and own end-to-end security foundations—identity, endpoints, and asset lifecycle—across multiple sites, partnering with central security and engineering teams. The role combines platform ownership with hands-on security operations and automation to scale with Wayve’s growth. This is a high-impact opportunity to shape how we secure a fast-expanding, hybrid-work organization.
Pay / Benefits
- hybrid working policy
- London office
- inclusive culture
Responsibilities
- Operate the corporate security controls stack (endpoint hardening, identity and access, privileged access, vulnerability/patch management, access reviews)
- Collaborate with the central Security team on policy, vulnerability management and incident response
- Own Okta and its ecosystem (onboarding, SSO/SAML migration, group/attribute automation, app catalog, access automation)
- Oversee enterprise endpoint management across Mac, Windows, Linux (enrolment, baselines, patching, compliance reporting)
- Manage device and asset lifecycle, SaaS and licensing (records, reconciliation, inventory accuracy, vendor relations)
- Lead and grow a distributed team across UK, Germany, US, developing engineers into domain owners
- Coordinate with Helpdesk Lead and Network Manager on automation and cross-function work; interface with compliance on identity, endpoints and assets
- Translate certification requirements into implemented controls and demonstrable platform evidence
Key requirements
- Experience leading an IT, security or infrastructure team (hiring, performance management, coaching)
- Hands-on corporate IT platforms: identity (Okta/Entra), endpoint management at fleet scale (Iru, Jamf, Intune or equivalent), and SaaS administration
- Linux fleet management alongside macOS and Windows
- Practical security operations expertise: endpoint hardening, vulnerability/patch management, incident response, access reviews, privileged access or zero-trust delivery
- Delivered security certifications/audit implementations (TISAX, ISO 27001, SOC 2 or equivalent) with evidence generation
- Scripting or infrastructure-as-code ability to set standards and review team work
- Experience scaling a corporate estate during fast growth and multi-site expansion
- Clear boundary setting with peer managers and honest risk communication
- Leadership and people development
- Cross-functional collaboration
- Ownership mindset and accountability
- Okta or Entra administration
- Endpoint management tools (Jamf, Intune or equivalent)
- Linux fleet management
…
