Senior Cyber Security Consultant - Perm - SC Cleared
Quick Overview
Job Description
Senior Cyber Security Consultant
Clearance: SC
Salary: £65k - £80k + Package
Location: Remote first w occasional travel to customer site
The Role in a Nutshell:
In this role you'll work within the Consulting team, supporting new and existing clients across various sectors to define and implement security risk assessment and best practice solutions that match their requirements. You'll work in close partnership with clients to ensure the delivery of expert services by complementing their inhouse Information and Cyber Security resources combining expertise in information security, solution architecture and business advice.
As a Senior Cyber Security Consultant, you will be responsible for the identification of risks relating to Security Architecture, maintaining an awareness of published vulnerabilities and best practices across various platforms, especially cloud infrastructures. Working across the business and multiple technology platforms, you will play a key role in ensuring clients make the best use of their existing technology and make proportionate, risk-informed decisions, ensuring protection of client assets and transformation of their security architecture.
This role forms part of the wider Consultancy team and will work cross functionally with the Delivery Manager and others to support and assure project delivery through all phases of the agile workflow. As a team, we're always looking to raise the bar, learn new things and incorporate new technologies and you will too!
The Impact You'll Make
In this role, you'll be:
- Providing expert advice on cyber risk management, assessment principles and frameworks, such as ISO27005 and the NIST Risk Management Framework.
- Working with multi-disciplinary teams, helping to ensure that products are delivered in a secure manner that is aligned with the wider business risk appetite.
- Managing and supporting risk identification, assessment, remediation and risk treatment for digital systems, applications and infrastructure.
- Identifying and validating technical, procedural, physical and personnel security controls, making recommendations to address security vulnerabilities and control weaknesses.
- Facilitating cyber risk workshops and threat modelling to identify and assess risks that arise from solution architectures.
- Supporting the scoping of IT Health Checks, which will identify principal security concerns for service lines.
- Reviewing outcomes of the ITHC and providing advice and guidance, and where required production of an action plan for vulnerabilities identified with clear recommendations and outcomes to mitigate and address.
- Producing informative and succinct reporting that clearly articulates any identified vulnerabilities, associated risks, controls and risk treatment activity.
- Producing residual risk registers.
- Providing accurate and pragmatic remediation/risk management guidance/advice.
- Conducting Security gap analysis against security control frameworks, remediation planning and monitoring.
- Evaluating third-party suppliers to provide assurance of the effective design and operation of security controls.
- Producing security audit reports, checklists and briefings.
What You'll Bring to the Team and the Tools you'll need:
You'll bring:
- Strong analytical and problem-solving skills. Excellent communication and teamwork abilities, passion for cyber security and a desire to learn and grow within the field. Ability to adapt and thrive in a fast-paced, dynamic environment, Organisation skills and forward planning.
- Possess strong hands-on experience and working knowledge of:
- Security related legislation (e.g. GDPR, PCI DSS, ICO requirements).
- Security Control Frameworks such as NCSC Cyber Assurance Framework, ISO 27001, NIST CSF and CIS.
- HMG and NCSC security policies, standards and guidance.
- Have an understanding of cyber risk management in an agile delivery environment.
- Have a good understanding of modern IT technologies and services, such as Cloud Computing (Azure, M365, AWS, Google), Mobile Computing, IT Security, Infrastructure technologies, Zero Trust and demonstrate an understanding of security architecture.
- Be skilled in workshop facilitation particularly with respect to risk identification and assessment.
- As a team, we're always looking to raise the bar, learn new things and incorporate new technologies and you will too! You'll share your knowledge with the team, our clients and the wider Cyberfort community, contributing to Group blogs and undertaking research related to technology enhancements.
- Certifications That Set You Apart: Relevant certifications, e.g., CISSP, CISM, CRISC or other. Have achieved or be working towards Full Membership of CIISEC and UK Cyber Security Council professional registration at either Chartered or Principal for Cyber Security Governance & Risk Management.
What's in it for You?
You'll enjoy:
- Flexibility First: Work-life balance through hybrid/remote working options.
- Your Growth Journey: Continuous learning opportunities and professional development.
- Perks with a Purpose: Comprehensive benefits package to support your wellbeing, health, family and future, from Private Health Care, Cash Back Plan, Buy and Sell Holiday Options, Life Assurance.
Reasonable Adjustments:
Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.
If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.
Skills
Similar jobs
Penetration Testing Specialist
Hays · Newport, United Kingdom
2 minutes ago£71k - £82k/yrReliability Engineer - Condition Monitoring & Vibration Analysis
RecruitME · Doncaster, United Kingdom
2 minutes agoBoomi Integration Engineer (Hands-On)
Hays · Daventry, United Kingdom
2 minutes ago£47k/yrDevOps Infrastructure Engineer
Sterling Bridge Limited · Southampton, United Kingdom
2 minutes ago£70k - £90k/yrPrincipal Software Engineer - Test Environments - GCAP
Hackajob Ltd · Bracebridge, United Kingdom
2 minutes ago£54k - £70k/yrCloud Finops Engineer
GXO LOGISTICS · Cliftonville, United Kingdom
38 minutes ago£56k/yr