Senior Security Consultant in Governance, Risk & Assurance advising clients on information security. Leading engagements and delivering complex security programs while mentoring teams.
Responsibilities
Lead cyber governance, risk and compliance engagements
Engage with clients to understand their threat landscape and business context
Conduct risk and compliance assessments against recognised frameworks (e.g. ISO 27001, NIST, SOC 2)
Design, review and advise on the implementation and adoption of information security policies, standards, procedures and frameworks
Lead cyber and third-party risk assessments and evaluate supplier security posture
Produce clear, concise risk and compliance reports for executive and C-suite stakeholders
Contribute to thought leadership and continuous improvement
Requirements
Extensive experience of designing, leading and delivering cyber governance, risk and assurance outcomes
Strong knowledge of recognised cyber security frameworks and standards, including ISO/IEC 27001, NIS Directives, NIST
Demonstrable experience aligning security controls to MOD requirements such as DEFSTAN 05-138, JSP 440, JSP 604 and Defence Cyber Resilience policies
Experienced in applying UK Government security and assurance frameworks, including GovAssure, Cyber Assessment Framework (CAF), Defence Cyber Certification (DCC) and Government Standard (GovS) 007
Hold relevant academic or professional qualifications, such as an MSc in cyber security or related specialism, CISM, CISSP, PCIRM or ISO/IEC 27001 Lead Implementer or Lead Auditor certification
Eligible to work in the UK and able to obtain and maintain UK security clearances
Hold, or are actively working towards, Principal or Chartered Cyber Security Professional (ChCSP) status
Benefits
A collaborative and supportive environment in which you can grow and develop your career
The tools and opportunity to do work you can be proud of
A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience
Hybrid working – we empower you to make smart choices about when and where to work to achieve great results
AI Enterprise Security Architect focusing on AI Security architectural standards and integrating security measures into AI development lifecycle. Leading a global team in securing AI systems.
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.