Cybersecurity Assurance Consultant within Expleo's Cybersecurity Practice providing assurance on marine and defence engineering programmes. Integrating cybersecurity into programme controls and compliance while collaborating with engineering teams.
Responsibilities
Lead or support integrating cybersecurity assurance activities into engineering and programme delivery for marine and defence projects.
Develop, review, and maintain cybersecurity assurance artefacts, including risk assessments, assurance cases, control matrices, and evidence submissions.
Ensure alignment with applicable defence and industry standards and other MOD-aligned frameworks.
Engage with engineering and project teams to ensure cybersecurity is embedded into system design, technical planning, and programme governance.
Liaise with client representatives, suppliers, and accreditation authorities to support the assurance lifecycle and manage stakeholder expectations.
Support the preparation for and participation in technical reviews, audits, and risk acceptance activities.
Contribute to delivering security risk management processes, threat modelling sessions, and security design assessments.
Provide subject matter expertise on assurance requirements for secure communications, supply chain security, platform integration, and physical security interfaces.
Maintain accurate, high-quality documentation to support certification, regulatory compliance, and ongoing assurance requirements.
Contribute to internal knowledge sharing, continuous improvement of assurance methodologies, and development of Expleo’s marine and defence cyber capabilities.
Requirements
A degree (or equivalent experience) in Cybersecurity, Information Assurance, Systems Engineering, or a related technical or defence-focused discipline.
Recognised cybersecurity certifications: CompTIA, CISSP, CISM, CRISC, ISO 27001 Lead Auditor/Implementer, or equivalent.
Familiarity with MOD, maritime, or defence-specific frameworks: JSPs, DEFSTAN, NIST, IEC 62443, IMO or ISO/IEC 27001.
DV clearance (or eligibility to obtain DV as a minimum) is required.
Evidence of ongoing professional development aligned with cybersecurity assurance, defence sector standards, and engineering-led delivery models.
Benefits
Collaborative working environment – we stand shoulder to shoulder with our clients and our peers through good times and challenges
We empower all passionate technology loving professionals by allowing them to expand their skills and take part in inspiring projects
Expleo Academy - enables you to acquire and develop the right skills by delivering a suite of accredited training courses
Senior Security Engineer supporting security engineering and SIEM administration at Ardent. Focused on improving threat detection and response within vSOC environments in Washington, D.C.
Mainframe Support Engineer ensuring stability and performance of enterprise mainframe systems. Troubleshooting complex issues and collaborating with development, operations, and security teams for optimal system management.
IAM / IGA Security Engineer designing and implementing identity governance solutions. Collaborating with Security, IT, HR, and business stakeholders to ensure secure access governance.
Senior Consultant helping the Ministry of Defence with large - scale ICT projects and innovations in technology and security. Lead developments in networks and applications in cooperation with Defence Architects.
Software Security Engineer at Spectro Cloud focusing on securing Kubernetes - based platforms for AI infrastructure. Responsible for implementing security controls and managing incident responses across the platform.
Lead Information Security initiatives at Starling, the UK's leading digital bank. Manage policy frameworks, team performance, and ensure compliance with security standards.
Technical Operator handling ticket resolution and IT troubleshooting in a structured team environment for Managed Security Services. Interfacing with varied technical tools to support international clients.
Support Health, Safety, and Security processes at East West Rail. Coordinate training, manage budgets, and ensure compliance with regulatory standards.
AI Security Engineer focusing on adversarial machine learning and enterprise security architecture. Leading red team engagements and translating technical risk into governance frameworks.
AI Security Architect leading adversarial testing for enterprise AI products, integrating security findings into governance frameworks. Collaborating with engineering and compliance functions in a hybrid work environment.