> Markdown version of [/jobs/ext/2856999-it-security-manager](https://www.wearedevelopers.com/jobs/ext/2856999-it-security-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT & Security Manager - **Company:** Wayve - **Location:** London, UK (Remote available) - **Salary:** £86,187.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, IEEE 802.1X, Microsoft Windows, Artificial Intelligence, Macintosh Computers, Software as a Service, Cyber Security, Linux, Zero Trust Network Access, S Interface, Security Assertion Markup Language (SAML), Software Vulnerability Management, Tisax, Scripting, Okta, Microsoft InTune, Patch Management, Casper Suite - **Published:** September 12, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5879915648 ## About the Role * Experience leading an IT, security or infrastructure team, including hiring, performance management and developing engineers. * Deep hands-on background in corporate IT platforms: identity (Okta or Entra), endpoint management at fleet scale (Iru, Jamf, Intune or equivalent), and SaaS administration. * Hands-on Linux fleet management alongside Mac and Windows. * Practical security operations experience: endpoint hardening, vulnerability and patch management, incident response, access reviews, and privileged access or zero-trust access delivery. * Delivered against a security certification or audit (TISAX, ISO 27001, SOC 2 or equivalent) on the implementation and evidence side. * Scripting or infrastructure-as-code ability, enough to set the standard and review your team's work. * Experience scaling a corporate estate through fast growth and multi-site expansion. * Holds a clear boundary with peer managers, and is honest about risk upward as well as downward. Desirable * Experience of a supplier-security assessment in an automotive or OEM supply chain. * Has stood up a corporate security capability from scratch rather than inheriting a mature one. * Hands-on with 802.1x and certificate-based device posture from the identity and endpoint side. * Exposure to offices, labs, garages and test facilities rather than offices alone, or to AI development environments. ## Description * Own the operation of our corporate security controls: endpoint hardening, identity and access, privileged access, vulnerability and patch management, and access reviews. * Partner with our central Security team on policy, vulnerability management and incident response. They own those processes; you make them real in the IT environment. * Own Okta and everything on it: application onboarding, SSO and SAML migration, group and attribute automation, the application catalogue, and the automation that grants and revokes access. Our Helpdesk Lead runs the joiner, mover and leaver process itself; you own the platform it runs on and the evidence that access was revoked. * Own endpoint management across a genuinely mixed Mac, Windows and Linux fleet, covering enrolment, baselines, patching and compliance reporting. * Own device and asset lifecycle and SaaS and licensing, including records, reconciliation, audit process, inventory accuracy, tenant administration and vendor relationships. * Lead, grow and hire a distributed team across three countries and several time zones, and develop engineers into domain owners with clear standards behind each domain. * Partner with the Helpdesk Lead on what gets automated away, with the Network Manager on work that crosses both lines such as 802.1x and device posture, and act as the function's interface to compliance on identity, endpoint and asset controls. * Turn certification requirements into implemented controls, and into evidence the platform produces on demand. In order to set you up for success as a Corporate Security Engineering Manager at Wayve, we are looking for the following skills and experience. ## Related Videos - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Discover the open source trio you didn’t expect: .NET and PostgreSQL on Linux](https://www.wearedevelopers.com/videos/2042-discover-the-open-source-trio-you-didn-t-expect-net-and-postgresql-on-linux) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Should Tech Managers Be Developers First? Pros and Cons](https://www.wearedevelopers.com/magazine/327-should-tech-managers-be-developers-first-pros-and-cons)