tide logo

Head of Product and Identity Security

tide
Germany, DEOn-site

About the Role

About Tide

At Tide, we help SMEs save time and money in the running of their businesses by not only offering business accounts and related banking services, but also a comprehensive set of highly usable and connected administrative solutions, from invoicing to accounting. Tide is transforming the small business banking market and now supports over 2 million members globally across the UK, India, Germany and France.

About the Team

The Tide Security Engineering team is made up of three core areas: Product Security, Identity, and Threat Detection & Response.

Product Security consists of application and cloud security experts. Their mission is to protect the products we build, covering everything from secure design reviews to threat modelling and penetration testing.

Identity is responsible for managing Tide's staff identity platform, ensuring that access to systems and infrastructure is secure, seamless, and aligned with modern security practices, using strategies like zero trust, multi-factor authentication, and granular role-based access controls.

Threat Detection & Response focuses on protecting the company by building a robust detection and automation platform.

As the Head of Product and Identity Security, you'll own two of those three areas, reporting directly to the CISO. The remit spans application security, penetration testing, cloud security, AI security, secure architecture, identity, and vulnerability operations. You'll lead a global team across the UK, Eastern Europe, and India in a player-manager role.

About the Role

  • Defining the product and identity security strategy in conjunction with the CISO and operationalising it into a funded, sequenced roadmap
  • Leading, coaching, and growing a global team across the UK, Eastern Europe, and India
  • Owning application security end-to-end, from secure design reviews and threat modelling through to secure coding standards, tooling, and remediation of findings
  • Running the penetration testing programme across web, mobile and infrastructure, including internal testing and the management of external partners
  • Owning cloud security posture across our cloud estate, covering configuration, workload protection, and detection coverage
  • Setting the approach to AI and agentic security, covering how models, agents and ML pipelines are designed, deployed, monitored and defended
  • Owning secure architecture so that security requirements are embedded from the ground up in new products, platforms, and integrations
  • Owning Tide's staff identity platform and the wider IAM roadmap, including zero trust, MFA, RBAC, and joiner/mover/leaver processes
  • Standing up and running a rapid-response vulnerability operations capability

Tidean Ways of Working

At Tide, we champion a flexible workplace model that supports both in-person and remote work. While remote work is supported, we believe in the power of face-to-face interactions to foster team spirit and collaboration.

Job Overview

100% EnglishNo German required
tideHiring Company
Sep 19, 2026Date Posted