Security Onboarding Specialist
Why This Role Stands Out
This role offers a significant opportunity to shape security integration for critical digital services, appealing to detail-oriented professionals who excel in risk assessment and compliance. You will thrive here if you possess strong analytical skills and a proactive approach to ensuring robust security frameworks, making a tangible impact on high-profile projects. Apply now to leverage your expertise in a dynamic and influential position.
Quick Overview
Job Description
Role: Security Onboarding Specialist
Location: London (Hybrid - Once in a month onsite)
Type: Contract (Inside IR35)
Duration: 9 Months
Clearance Required: Active SC
Role Overview
We are seeking an experienced Security Onboarding Specialist to join a high-profile digital services programme. This role will be responsible for ensuring that external partner organisations meet the required security, assurance and trust framework standards before integrating with secure digital services.
Acting as the primary security contact for partner onboarding activities, you will assess security controls, perform gap analyses, review evidence submissions, and provide assurance recommendations to support onboarding decisions. You will play a key role in maintaining consistency of security assessments while ensuring compliance with evolving trust framework and organisational requirements.
Key Responsibilities
- Lead security assurance and onboarding assessments for external partners and suppliers.
- Perform gap analyses against Trust Framework requirements, security standards, policies and controls.
- Review and evaluate security documentation, policies, procedures and evidence submitted by partner organisations.
- Identify control deficiencies, security risks and compliance gaps, providing clear remediation recommendations.
- Act as the primary security point of contact throughout the partner onboarding life cycle.
- Produce security assessment reports, recommendations and onboarding assurance outcomes.
- Work closely with security, architecture, delivery and governance teams to support onboarding decisions.
- Monitor and track remediation activities through to completion.
- Ensure consistent application of security assurance processes and assessment criteria.
- Maintain awareness of changes to Trust Frameworks, security policies and regulatory requirements, updating assessment approaches where required.
- Support ongoing assurance activities and periodic reviews of onboarded partners.
- Proven experience in Security Assurance, Security Governance, Risk & Compliance (GRC), Third-Party Risk Management, or Information Security.
- Strong understanding of security control frameworks and assurance methodologies.
- Experience conducting security assessments, compliance reviews and gap analyses.
- Ability to review and assess security evidence and documentation against defined requirements.
- Knowledge of information security principles, risk management and security governance practices.
- Strong stakeholder management skills with the ability to engage effectively with both technical and non-technical audiences.
- Experience producing clear, concise assessment reports and risk-based recommendations.
- Excellent communication, analytical and problem-solving skills.
- Experience working within government, public sector or highly regulated environments.
- Knowledge of Digital Identity and Trust Frameworks.
- Familiarity with standards and frameworks such as:
- ISO 27001
- NIST Cyber Security Framework
- Cyber Essentials/Cyber Essentials Plus
- Supplier and Third-Party Assurance frameworks
- Experience supporting digital identity, authentication or secure digital services programmes.
- Security-related certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Auditor or equivalent.
- Security Assurance
- Governance, Risk & Compliance (GRC)
- Third-Party Risk Management
- Security Assessments
- Risk Analysis
- Stakeholder Management
- Information Security
- Audit & Compliance
- Trust Framework Compliance
- Security Governance
Skills
Similar jobs
Infrastructure Security Engineer
COMPUTACENTER (UK) LIMITED · Hatfield, United Kingdom
3 hours agoProduct Cyber Security Engineer
Hackajob Ltd · Bristol, United Kingdom
3 hours ago£68k/yrSenior Cyber Security Engineer - Cloud Tech
I3 Resourcing Limited · United Kingdom
3 hours ago£70k - £75k/yrSecurity Analyst, Cyber Security, CompTia CySA+, ISO27001, Belfast
Carrington Recruitment Solutions Limited · City, United Kingdom
3 hours agoSecurity Engineer
Anson Mccade · Newcastle Upon Tyne, United Kingdom
3 hours ago£60k - £75k/yrSenior Information Security Analyst (ISO, SOC2, PCI DSS)
Spectrum It Recruitment Limited · City, United Kingdom
3 hours ago