Hybrid Cyber Security Consultant – Incident Management

Posted 1 hour ago

Apply now

About the role

  • Cyber Security Consultant focusing on incident management, governance, and risk management at a UK-based IT Services Consultancy. Supporting clients in designing and assuring incident response frameworks.

Responsibilities

  • Define and maintain incident response policies, playbooks, and escalation models
  • Ensure incidents are classified, handled, and closed in line with organisational risk appetite
  • Act as a governance point of contact during significant cyber incidents
  • Assess incidents for control failures, systemic risk, and regulatory impact
  • Map incident response activities to frameworks such as NIST, ISO/IEC 27001, and organisational risk policies
  • Support audits, assurance reviews, and post-incident evidence packs
  • Lead or support lessons-learned reviews and root-cause analysis
  • Translate technical findings into risk, control, and governance outcomes
  • Track remediation actions and ensure they are owned, prioritised, and delivered
  • Brief senior stakeholders on incident impact, response posture, and residual risk
  • Produce clear, defensible reporting suitable for boards, regulators, and auditors
  • Bridge the gap between SOC teams, technical specialists, risk, and leadership

Requirements

  • Cyber security, incident management, risk, assurance, or GRC background
  • Experience working with or alongside SOC / IR teams (without needing to live on shift)
  • Exposure to regulated or high-assurance environments (public sector, finance, critical services, etc.)
  • Strong understanding of incident response lifecycle from a governance perspective
  • Ability to translate technical incidents into business risk and control language
  • Familiarity with security and risk frameworks (NIST, ISO 27001, CAF, etc.)
  • Confident producing documentation that survives audit without inducing migraines
  • Calm under pressure, structured in chaos
  • Comfortable saying “this is a governance issue” when everyone else says “just fix it”
  • Naturally curious about why incidents happen
  • This role will require you to have or be willing to go through Security Clearance

Benefits

  • Autonomy to develop and grow your skills and experience
  • Be part of exciting project work that is making a difference in society
  • Strong, inspiring and thought-provoking leadership
  • A supportive and collaborative environment
  • Development – access to LinkedIn Learning, a management development programme, and training
  • Wellness – 24/7 confidential employee assistance programme
  • Flexible Working – including home working and part time
  • Social – office parties, breakfast Tuesdays, monthly pizza Thursdays, Thirsty Thursdays, and commitment to charitable causes
  • Time Off – 25 days of annual leave a year, plus bank holidays, with the option to buy 5 extra days each year
  • Volunteering – 2 paid days per year to volunteer in our local communities or within a charity organisation
  • Pension – Salary Exchange Scheme with 4% employer contribution and 5% employee contribution
  • Life Assurance – of 4 times base salary
  • Private Medical Insurance – which is non-contributory (spouse and dependants included)
  • Worldwide Travel Insurance – which is non-contributory (spouse and dependants included)
  • Enhanced Maternity and Paternity Pay
  • Travel – season ticket loan, cycle to work scheme

Job title

Cyber Security Consultant – Incident Management

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job