This company is using AI to speed up the discovery of new medicines. The work moves fast, and the teams need to keep pace, so security has to enable that pace rather than slow it down.
You would sit on the corporate side of security, protecting the workforce, the identity systems, and the sensitive data behind the science.
The role:
- Design and support the corporate IAM setup, including group structures, identity integrations, and clean onboarding and offboarding
- Audit corporate systems and run the tooling behind them, from logging and monitoring to DLP and data labelling
- Improve data governance across Google Workspace, Confluence, Jira, and Slack by learning what people actually need and building workable models around it
- Work with the Detection and Response team to triage alerts and help lead the response when something goes wrong
- Build security into everyday operations, like onboarding new tools, setting up data transfers, and handling external integrations
- Run vendor and software audits, and tighten up SaaS security posture across the estate
- Use AI and automation to take the routine work off your plate and speed up triage
- Be the friendly point of contact who helps teams stay secure without adding friction
About you:
- Comfortable navigating complex, multi-org corporate systems and the workflows behind them
- Strong grounding in corporate systems security and IAM, with hands-on SSO, user lifecycle, and directory or group experience
- Can write basic code (Python) across internal tools like Slack and Google Workspace.
- Know your way around SaaS Security Posture Management and can spot misconfigurations, ideally with tools like AppOmni or Adaptive Shield
- Have worked with DLP controls, data classification, and corporate data governance
- Have run or executed standardised vendor security assessments
- Have supported incident response and daily alert triage
- Lean towards automation and enjoy bringing AI into security workflows
- Communicate well with technical and non-technical people alike
- Experience in high-growth tech, or within a regulated industry such as life sciences.
- Familiarity with the OWASP and other security frameworks.
- Built or integrated AI-driven automation or agentic workflows for security
- Understanding of security patterns for HPC environments
- Familiar with GitHub Enterprise security settings and secret scanning
- Know GDPR and ISO 27001, and hold something such as Security+, CISSP, CISA, or GSEC
What can you expect?
Market-leading salary plus equity, bonus, and benefits
Hybrid, three days a week in the office. (Central London)