Our Mission
We’re not your average benefits platform; we’re the unordinary force that uplifts people’s lives. Our technology is the link that connects the entire benefits ecosystem, creating better outcomes for employers, employees, brokers, and providers.
Your Mission
You will be Ben’s Security Lead, owning security end‑to‑end across product, cloud infrastructure, internal systems, and trust/compliance. In the same week you might review a pull request, harden AWS IAM controls, and sit opposite a prospect’s CISO explaining how Ben handles their data. You’ll work closely with the CTO on priorities and direction, but day‑to‑day you’re the one making the calls.
Ben is ISO 27001:2022 certified with established controls across product, AWS, and corporate IT. This role is about strengthening, scaling, and ensuring security is a reason enterprise customers choose Ben.
Responsibilities
- Act as Ben’s security lead in enterprise customer and prospect conversations, questionnaires, due diligence calls, and trust centre content.
- Own and improve Ben’s security controls across identity, endpoint, cloud infrastructure, product security, and corporate IT.
- Lead monitoring, detection, incident response, and continuous improvement across the environment.
- Maintain and mature our ISO 27001‑certified ISMS, conducting risk assessments, vendor reviews, and policy/control maintenance to keep our control environment effective and audit‑ready.
- Embed secure‑by‑design into the development lifecycle – threat modelling, architecture reviews, secure code review, and CI/CD hardening.
- Over time, lead a pragmatic SOC 2 implementation alongside the existing ISMS, and provide input on GenAI governance as Ben ships AI features into production.
Requirements
- Hands‑on security experience in a SaaS, cloud‑first, or product‑led environment – 4‑6 years, looking to own a security function for the first time.
- Strong working knowledge of identity and access management in both corporate and product contexts. Experience with Microsoft’s security ecosystem (Entra, Intune, Defender) preferred.
- Experience securing AWS environments and embedding security into product development through threat modelling, code review, and CI/CD controls.
- Experience with endpoint and corporate security – EDR, MDM, ZTNA, or similar tooling.
- Familiarity with compliance frameworks such as ISO 27001 or SOC 2, and the ability to translate technical controls into audit‑ready evidence.
- Confidence in enterprise customer conversations – ability to explain security clearly to technical and non‑technical audiences.
- Comfort with ambiguity and context‑switching – owning the answer across a wide remit rather than specialising in one domain.
Why Join Us?
- You’ll own the security function – priorities, architecture, tooling, controls, and how they are communicated to customers.
- Security at Ben is an enabling function directly tied to revenue. Enterprise customers choose us partly because of how we handle their data, and you’ll be the person in those conversations.
- The foundation is already built – ISO 27001:2022 certified, established AWS controls, and a functioning ISMS. Your role is to strengthen and scale this as the company grows.
Compensation & Benefits
- Competitive base salary + equity, so you own what you build.
- £100 monthly personal Ben Balance – increases by £50 each year until £250.
- Weekly lunch provided in office.
- 28 days of holidays a year plus bank holidays, option to buy or sell 2 days per year; entitlement increases to 30 days after the 3rd year.
- Day off for your birthday.
- Work‑from‑abroad scheme.
- Enhanced parental leave and workplace nursery scheme.
- Comprehensive private medical insurance.
- Funded life assurance cover (option to increase) with an annual health check.
- Comprehensive and tailored mental health support and professional coaching.
Diversity and Culture
We are organically growing a brilliantly diverse, inclusive and respectful team. All applications are very much welcome. If you need any adjustments to support you with your application, just let us know by emailing jobs@thanksben.com.
#J-18808-Ljbffr…
