- Company Name
- Carbon3.ai - Building the UK's AI Solution Platform
- Job Title
- VP - Information Security
- Job Description
-
**Job title:** VP – Information Security
**Role Summary:** Lead the establishment and ongoing management of Carbon3.ai’s security posture across all physical, digital, and operational assets. Drive security strategy, operations, and governance while partnering with executive leadership and customers to ensure compliance, risk mitigation, and secure design practices in AI, HPC, and cloud environments.
**Expectations:**
- Build and scale a security operating model from inception, including tooling, metrics, and reporting.
- Deliver enterprise-level security architecture for AI/HPC platforms, zero‑trust networking, and data sovereignty controls.
- Maintain a cyber risk management framework, audit readiness, and compliance with UK data protection and sovereign AI mandates.
- Serve as the primary security authority to customers, partners, regulators, and internal stakeholders.
- Shape a pragmatic security culture and roadmap as the organization expands.
**Key Responsibilities:**
- Own the end‑to‑end security program for infrastructure, platforms, networks, and data.
- Design and implement secure‑by‑design principles and zero‑trust architectures across GPU, Kubernetes, and orchestration layers.
- Oversee monitoring, incident response, key management, threat detection, and physical to digital boundary security.
- Develop security governance, metrics, and executive‑level reporting.
- Maintain a cyber risk register, conduct threat modeling, and manage risk mitigation.
- Lead audit, certification, and customer due diligence preparation.
- Ensure compliance with UK data protection, sovereign AI expectations, and customer requirements.
- Represent security in engagements with customers, partners, and regulators.
- Advise CTO/COO on risk, priorities, and trade‑offs; support sales, onboarding, and assurance.
- Provide senior‑level security counsel and leadership without a large existing team.
**Required Skills:**
- Senior security leadership in infrastructure, cloud, platform, or regulated environments.
- Proven ownership of security architecture and operations.
- Deep knowledge of cloud, network, identity, monitoring, and incident response.
- Experience with AI, HPC, GPU platforms, or large‑scale infrastructure.
- Expertise in secure‑by‑design, zero‑trust, and data sovereignty controls.
- Ability to translate security risk into clear business decisions.
- Familiarity with sovereign, defense, critical‑infrastructure contexts and sustainability‑led technology.
- Strong technical credibility, hands‑on leadership, and delivery focus.
**Required Education & Certifications:**
- Current or previously held UK security check clearance (or higher).
- Relevant security certifications (e.g., CISSP, CISM, CSP, CEH, or equivalent).
- Bachelor’s degree in Computer Science, Information Security, or related field (preferred).