Quick Overview
Job Description
Security Consultant
7 Month contract initially + Extensions
Based: Remote
Rate - £450 - £550 (Flexible) p/d via Umbrella
We have a great opportunity with a world leading organisation where you will be provided with all of the support and development to succeed. A progressive organisation where you can really make a difference. We have a great opportunity for a Security Consultant on a long term program of work.
Key responsibilities:
* Act as the primary Security Assurance Consultant for projects and technology initiatives within the Economic Crime domain.
* Conduct security assessments of new systems, material changes, integrations and technology solutions.
* Provide pragmatic security advice that balances risk, regulatory expectations, customer protection and business delivery objectives.
* Determine whether required preventative, detective and responsive controls are present and operating as intended.
* Assess the likelihood and business impact of identified security risks & track them through to remediation, mitigation or formal acceptance.
* Assess solutions against applicable security frameworks, policies and control requirements including NIST CSF 2.0, ISO/IEC 27001, organisational security guardrails.
* Define and enforce security policies, standards, and best practices ensuring Ensure compliance with financial regulations (eg, PCI DSS, ISO 27001, GDPR).
* Provide security assurance and guidance regarding IAM and PAM, Network Security, Penetration Testing Results, Vulnerability Scans etc.
* Challenge solutions constructively where required security controls have not been implemented or have been implemented inadequately.
* Maintain traceability between identified risks, security requirements, controls, evidence and residual risks.
Key Skills & Experience:
* Proven experience performing security assurance or security consultancy within complex enterprise environments.
* Demonstrable experience applying Secure by Design principles.
* Proven understanding of security risk assessment methodologies.
* Experience managing security risks, exceptions and remediation activities.
* Experience and proven knowledge of working with NIST Cybersecurity Framework, ISO/IEC 27001, Zero Trust, OWASP Top 10 etc
* Good understanding of Access Management, Data Security, Cloud Security, Network security guardrails
* Confident enough to challenge architects, engineers and project leadership where security requirements are not adequately addressed.
* Works collaboratively with delivery teams to find secure solutions instead of acting solely as an approval or governance function.
Desirable skills/knowledge/experience:
* Previous experience of working in UK Financial Services or similar highly regulated industry.
* Have a relevant professional qualification (or be working towards certification), such as CISM/CISSP.
* Knowledge/experience of PCI-DSS, NIST CSF, OWASP Top 10, ISO 27001
* Knowledge/experience of Data privacy and GDPR;
* Experience with regulatory compliance frameworks specific to financial organizations.
* Excellent interpersonal and communication skills.
* Able to differentiate between theoretical security concerns and material business risks, ensuring security decisions remain proportionate.
This is an excellent opportunity on a great project of work, If you are looking for your next exciting opportunity, apply now for your CV to reach me directly, we will respond as soon as possible.
LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance.
A multiple award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over consecutive years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience.
Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
Similar jobs
- LO
Cyber Threat Analyst - SC Cleared
NewLorien
Reading, Berkshire🇬🇧On-site1 hour agoLESSTechnology - AD
Cloud Security Consultant x3 (SC Cleared) UK Wide
NewAdecco
United Kingdom🇬🇧£70 - £100/hrHybrid1 hour agoZero TrustTechnology - DR
Senior OT Security Analyst
NewDragos
United Kingdom🇬🇧Hybrid15 hours agoTCP/IPBashDNS+2Technology - IF
Cyber Resilience Analyst
NewIceland Food Group
Deeside, Flintshire🇬🇧Hybrid6 hours agoTechnology - TJ
Fire & Security Engineer
NewTeam Jobs - Commercial
Farringdon, Central London🇬🇧£50k/yrOn-siteYesterdayTechnology - ER
Security Service Engineer
NewERP Limited
Farringdon, Central London🇬🇧£40k - £45k/yrHybridYesterdayAdministrative