Quick Overview
Job Description
ABOUT TIDE
At Tide, we help SMEs save time and money in the running of their businesses by not only offering business accounts and related banking services, but also a comprehensive set of highly usable and connected administrative solutions, from invoicing to accounting.
Tide is transforming the small business banking market and now supports over 2 million members globally across the UK, India, Germany and France.
Using advanced technology, all solutions are designed with SMEs in mind. With quick onboarding, low fees and innovative features, we thrive on making data driven decisions to serve our mission: to help SMEs save time and money so they can get back to doing what they love.
Tide facts:
- Tide is available for UK, Indian, German and French SMEs
- Over 2 million members across UK and India
- Over $300 million raised in funding
- Over 2,800 Tideans globally
- Recognised with Great Place to Work certification three years in a row, and among India’s Top 50 Best Workplaces in Banking, Financial Services, and Insurance in 2026
- We have offices in Central London, with a member support and technology centre in Sofia, Bulgaria, technology centres in Serbia, Romania, Lithuania and Hyderabad and offices in Gurugram, New Delhi, Berlin, Paris and Luxembourg
ABOUT THE TEAM:
The Tide Security Engineering team is made up of three core areas: Product Security, Identity, and Threat Detection & Response.
Product Security (this role!) consists of application and cloud security experts. Their mission is to protect the products we build, covering everything from secure design reviews to threat modelling and penetration testing, ensuring security is embedded from the ground up.
Identity (this role!) is responsible for managing Tide's staff identity platform, ensuring that access to systems and infrastructure is secure, seamless, and aligned with modern security practices. The team uses strategies like zero trust, multi-factor authentication, and granular role-based access controls to safeguard our internal operations.
Threat Detection & Response focuses on protecting the company by building a robust detection and automation platform. We're proactive in our defence, constantly hacking ourselves to improve our security posture and staying ahead of emerging threats. Our goal is to make Tide resilient against the ever-evolving threat landscape.
While each area has its own focus, collaboration is key - it's why we share the same Slack channel and hold our standups together as one cohesive team, ensuring alignment and seamless communication across all security functions.
As the Head of Product and Identity Security, you'll own two of those three areas, reporting directly to the Chief Information Security Officer (CISO) and operating as a peer to the Head of Threat Detection & Response. The remit spans application security, penetration testing, cloud security, artificial intelligence (AI) security, secure architecture, identity, and vulnerability operations. You'll lead a global team across the UK, Eastern Europe, and India, and you'll stay close to the technology: this is a player-manager role, where credibility is earned by doing the work as well as directing it. This is a real opportunity to make an impact and have senior influence on the cyber resilience strategy at Tide.
ABOUT THE ROLE:
As a Head of Product and Identity Security you will:
- Defining the product and identity security strategy in conjunction with the CISO and operationalising it into a funded, sequenced roadmap that the team can execute against.
- Leading, coaching, and growing a global team across the UK, Eastern Europe, and India; setting clear objectives; running regular 1:1s; and supporting career growth and progression.
- Owning application security end-to-end, from secure design reviews and threat modelling through to secure coding standards, tooling, and remediation of findings.
- Running the penetration testing programme across web, mobile and infrastructure, including internal testing and the management of external partners, and staying hands-on where it counts.
- Owning cloud security posture across our cloud estate, covering configuration, workload protection, detection coverage in partnership with Threat Detection & Response, and the guardrails that keep engineering fast and safe.
- Setting the approach to AI and agentic security, covering how models, agents and machine learning (ML) pipelines are designed, deployed, monitored and defended, and keeping that approach current as the technology moves.
- Owning secure architecture so that security requirements are embedded from the ground up in new products, platforms, and integrations rather than retrofitted.
- Owning Tide's staff identity platform and the wider identity and access management (IAM) roadmap, including zero trust, multi-factor authentication, role-based access control, and joiner, mover, and leaver processes.
- Standing up and running a rapid-response vulnerability operations capability, with clear service levels for triage and remediation, and tight integration with security operations (SecOps) and engineering.
- Facing off directly with executives, product leaders, and engineering leadership across the business; articulating risk, trade-offs, and investment cases in language each audience can act on.
- Delivering the security enablement and security champions programmes so engineering teams can move quickly without security becoming a bottleneck.
- Acting as a senior escalation point for product and identity security issues, including during high-severity incidents, working alongside Threat Detection & Response.
- Recruiting and onboarding new team members as the function scales, and building technical capability across the team through mentoring and structured upskilling.
- Owning performance management for the team, including feedback, development plans, and, where needed, managing underperformance.
- Defining and reporting the metrics that demonstrate whether the programme is working, including vulnerability ageing and remediation, coverage of secure design reviews, and the reach and effect of enablement activity.
WHAT WE ARE LOOKING FOR:
- At least ten years of overall experience in cybersecurity, including at least five years in a comparable leadership role, ideally within a technology company or fintech.
- A background as a hands-on security engineer, ideally including application and/or mobile penetration testing, and the appetite to remain technical as a player-manager.
- Great knowledge of AI, agentic security, and ML, and a clear point of view on how to secure them in production.
- A strong grasp of threat modelling, and the ability to articulate risk credibly to both engineering and non-technical audiences.
- A proven track record of delivering successful security enablement and security champions programmes.
- Highly organized, with the ability to operationalize a programme and define strategy in conjunction with the CISO.
- Strong stakeholder management skills and the confidence to face off to executives in the business directly.
- Experience leading distributed teams across multiple countries and time zones.
- Excellent spoken and written communication skills.
Nice to have:
- Experience with identity providers (IdPs), privileged access management (PAM), and broader IAM tooling, such as Okta, Ping, and ConductorOne, or equivalents.
- Experience standing up a rapid-response vulnerability operations or remediation operations function and integrating it with SecOps.
WHAT YOU’LL GET IN RETURN:
- Competitive Compensation - competitive salary and share options
- Time Off – Generous annual leave on top of bank holidays.
- Parental Leave – Paid maternity, paternity, and adoption leave to support your family journey.
- Sabbatical – Extended unpaid and paid leave options after completing milestone years with Tide.
- Access to salary sacrifice benefits – like Nursery (could save up to 47% on fees!) and Cycle to Work discounts
- Health Insurance – Comprehensive Private family insurance plan.
- Life & Accident Cover – Comprehensive accidental and life insurance protection.
- Mental Wellbeing – Access to therapy sessions, courses, meditations, and workshops.
- Retirement Planning – Build your retirement fund faster with Tide’s pension scheme on eligible earnings.
- Volunteering & Development Days – Paid days annually for volunteering or personal growth.
- Learning & Development – Annual budget for books, courses, coaching, and more.
- WOO (Work Outside the Office) – Work from abroad for up to 90 days annually.
- Home Office Setup – Contribution towards setting up your home office
- Laptop Ownership – Keep your old laptop and get a new one when it’s time for a replacement.
- Snacks & Meals – Daily breakfast spread with all-day coffee, tea, and juices.
TIDEAN WAYS OF WORKING
At Tide, we champion a flexible workplace model that supports both in-person and remote work to cater to the specific needs of our different teams.
While remote work is supported, we believe in the power of face-to-face interactions to foster team spirit and collaboration. Our offices are designed as hubs for innovation and team-building, where we encourage regular in-person gatherings to foster a strong sense of community.
TIDE IS A PLACE FOR EVERYONE
At Tide, we believe that we can only succeed if we let our differences enrich our culture. Our Tideans come from a variety of backgrounds and experience levels. We consider everyone irrespective of their ethnicity, religion, sexual orientation, gender identity, family or parental status, national origin, veteran, neurodiversity or differently-abled status. We celebrate diversity in our workforce as a cornerstone of our success. Our commitment to a broad spectrum of ideas and backgrounds is what enables us to build products that resonate with our members’ diverse needs and lives.
We are One Team and foster a transparent and inclusive environment, where everyone’s voice is heard.
At Tide, we thrive on diversity, embracing various backgrounds and experiences. We welcome all individuals regardless of ethnicity, religion, sexual orientation, gender identity, or disability. Our inclusive culture is key to our success, helping us build products that meet our members' diverse needs. We are One Team, committed to transparency and ensuring everyone’s voice is heard.
- Tide does not charge any fees at any stage of the recruitment process.
- All official Tide job opportunities are listed exclusively on our Careers Page and applications should be submitted through this channel.
- Communication from Tide will only come from an official @tide.co email address.
- Tide does not work with agencies or recruiters without prior formal engagement, and we do not authorize third parties to make job offers on our behalf.
If you are contacted by anyone misrepresenting Tide or requesting payment, please treat it as fraudulent and report it to us immediately at talent@tide.co
Your safety and trust are important to us, and we are committed to ensuring a fair and transparent recruitment process.
Tide leverages AI to enhance our hiring experience. You can read more about how we use AI in our recruitment process in our AI Policy.
Your personal data will be processed by Tide for recruitment purposes and in accordance with Tide's Recruitment Privacy Notice.
Similar jobs
- PS
Engineer Supervisor
Pioneer Selection Ltd
Penrith, Cumbria🇬🇧£49.5k/yrHybrid3 weeks agoEngineering - VR
Software Engineering Manager
NewVerso Recruitment Group
Essex🇬🇧£80k - £90k/yrHybrid53 minutes agoStakeholder ManagementTechnology - VR
Software Engineering Manager
NewVerso Recruitment Group
Shinfield, Berkshire🇬🇧£80k - £90k/yrHybrid53 minutes agoStakeholder ManagementTechnology - PS
Site Engineering Manager
NewPioneer Selection Ltd
Ashby-De-La-Zouch, Leicestershire🇬🇧£63.8k/yrHybrid2 days agoEngineering - RT
Engineering Manager (Hybrid)
Rise Technical Recruitment Limited
Gloucester, Gloucestershire🇬🇧£70k - £85k/yrHybrid1 week agoEngineering - OD
Manufacturing Engineering Manager
Owen Daniels
Coventry, West Midlands🇬🇧Hybrid2 months agoRisk AssessmentManufacturing