Rodeo
Get started

Beam

Security Operations Lead

£90k – £100k/yr
Posted about 13 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

At Beam, we’re building AI that serves society.

We're a global team of ambitious, hardworking problem solvers, applying fast-moving startup energy to work that makes the world a better place. If you want to apply your talent to the biggest problems society faces, Beam is the place for you.

You’ll be part of a high-performance culture where you'll make a huge impact, rapidly progress your career, and truly enjoy your work.

Over 100,000 frontline workers already use Beam to take notes, provide live interpretation and handle phone calls, so they can focus on the people who need them most. This is just the beginning.

The opportunity at Beam

Beam builds AI tools for frontline public services in the UK, US, Australia and the EU: local authorities, health services, police forces, and state, federal and central government agencies. Our products handle some of the most sensitive data governments hold, and our customers' security teams hold us to the standards they hold themselves.

The Security Operations Lead is Beam's first dedicated operational security role. You run security operations across six deployments in four regions: detection and response, vulnerability management, penetration testing, cloud security posture, external attack surface, third-party security assessment and adversarial testing of our AI products. You are also the assurance owner for the platform security controls Engineering operates: you check they work, hold the evidence, and answer for them to auditors and customers in every region. You report to the Chief Information Risk Officer and support them on security incidents.

Day to day:

  • Tuning the SIEM and working with the MDR
  • Triaging vulnerability findings and holding remediation to SLA with Engineering
  • Scoping and running pen tests with our external partner
  • Reviewing Engineering's platform controls and gathering evidence
  • Running incident response exercises
  • Answering the security half of customer and auditor questions

What you’ll be doing

  • Running detection and response. Owning the SIEM and detection stack (a SIEM is in place but not deeply embedded; you decide whether it stays), owning detection rules, managing alert triage and noise, and selecting and managing the 24/7 MDR service so that out-of-hours compromise in any of our four regions is seen and acted on.
  • Owning the vulnerability programme end to end. Detection, triage, remediation to SLA with Engineering and IT Ops, and reporting that matches what we tell customers. Includes cloud security posture (GCP, AWS), configuration drift across deployments, and the external attack surface (domains, DNS, TLS, security ratings).
  • Scoping and coordinating penetration testing across all products and regions with our external partner, and owning the vulnerability disclosure programme.
  • Assuring Engineering-owned platform controls: encryption and key management, network segmentation, workload hardening, privileged and non-human identity, secrets lifecycle, supply-chain integrity, audit-trail integrity, and data residency across regions. You check they operate, hold the evidence, and answer for them in ISO 27001, SOC 2, FedRAMP and IRAP assessments.
  • Making Beam incident-ready. Incident response plans and runbooks, exercises with Engineering, forensics readiness, and hands-on support to the CIRO during security incidents.
  • Leading AI threat modelling and adversarial testing (prompt injection, jailbreak, data extraction, caller-side attacks on telephony products) with our red-team partner, and providing security assurance for new product surfaces (desktop clients, browser extensions, integrations, public API).
  • Running third-party security assessment of sub-processors and suppliers, delivering role-based security training to engineers and administrators, and reporting security metrics to the CIRO and leadership.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Who we’re looking for

  • A security operations lead who has built or run detection and response in a cloud-native environment. You have written and tuned detection rules, lived with the noise, and led incidents from first alert to post-incident review.
  • Experienced running a vulnerability management programme to SLA where remediation sat with engineering teams that did not report to you.
  • Comfortable in GCP and Kubernetes at the level needed to assess a control, read a configuration, and know when to dig deeper with Engineering.
  • Familiar with what auditors need. You have evidenced controls under ISO 27001, SOC 2 or NIST 800-53 and can tell a control that operates from one that is just documented.
  • Able to influence without authority. Engineers act on your findings because you have made the case in their terms, not because you escalated.
  • Precise about claims. You say what is true about the security posture, including when it is uncomfortable, and you do not let a customer answer overstate the control behind it.
  • Ideally, literate enough in application security to review an SDLC gate or a code-level finding; if not, clear about that boundary and ready to buy the depth in.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Compensation:

  • £90,000 - £100,000 base salary depending on experience and performance during interviews + equity and amazing benefits (see our careers page)

We're committed to advancing equity, diversity, and inclusion through our work as an organisation, and that starts with the team we build. 53% of the people we support are from ethnic minority backgrounds and 17% have disabilities. We believe we serve these people best when we’re a diverse and inclusive team. To that end, we particularly welcome applications from ethnic minority candidates and/or those who’ve experienced social disadvantage.

Application process

We take hiring seriously. We have a 4-stage and an optional 5th interview process, giving you plenty of time to learn about Beam while we get to know you.

About Beam

We’ve picked up an armful of awards for our work, including one from our former Queen. We've also been named by WIRED as one of London's 10 hottest startups and by LinkedIn as a Top 15 UK Startup. Meanwhile, we've been covered in the media literally thousands of times, including the likes of The FT, BBC, TechCrunch, Forbes and The Guardian.

We’re also proud to be backed by some of the world's leading tech investors and entrepreneurs, including the founders of Booking.com, Calm, Shazam and Dropbox.

Start your journey to a more impactful career today. We're excited to hear from you.

Reasonable adjustments:

Beam is committed to fostering an inclusive, diverse, and supportive work environment for all employees. This policy extends to our hiring practices.

We recognise that some candidates may need additional support during their hiring process to give them the best chance of being a success. To ensure that all candidates have an equitable opportunity during their process, we are committed to providing reasonable adjustments where required.

If you require a reasonable adjustment to be made during your process, please let your Talent Partner know. We encourage you to share this information, but there is no obligation to do so.

Please be reassured that any reasonable adjustment requests will not be taken into account when making a decision about your candidacy.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

United Kingdom

Sign up to applySee more jobs like this