Information Security Consultant
Information Security Consultant (GRC / Technical)
Overview
Our client is a specialist cyber security consultancy delivering high-impact security work across enterprise environments. They have recently secured a major engagement with a FTSE 100 organisation in the energy sector and are looking to hire two Information Security Consultants to support this work.
This is a hands-on role combining governance, risk, and compliance with practical security delivery. It is not a purely advisory position.
The Role
You will work closely with client stakeholders, supporting the identification, assessment, and remediation of security risks within live environments.
Key responsibilities include:
- Leading triage of security issues and tickets within client systems
- Conducting risk assessments, threat modelling, and security impact assessments
- Supporting remediation of vulnerabilities and driving resolution of findings
- Providing clear, actionable security guidance to technical and business teams
- Delivering GRC activities, including ISO 27001 and compliance assessments
- Maintaining risk registers and supporting governance processes
- Contributing to security policies, standards, and frameworks
What They’re Looking For
- Experience in information security consulting or security engineering
- Strong grounding across both GRC and technical security
- Hands-on experience with risk assessment, vulnerability management, and security triage
- Ability to operate within live client environments and take ownership of delivery
- Broad understanding of application, infrastructure, and cloud security
- Must be CISSP Qualified as a client requirement
This role would suit someone who can bridge the gap between governance and technical delivery, rather than a purely advisory consultant.
Environment & Culture
Our client places strong emphasis on practical delivery and collaboration. They are looking for individuals who are:
- Personable and comfortable in client-facing roles
- Able to communicate effectively with both technical and non-technical stakeholders
- Pragmatic and solutions-focused
Logistics & Package
- Fully remote, with occasional team meetups in London
- Rare requirement for client site visits
- No sponsorship available
- 20 days holiday + bank holidays
- 3% + 5% pension
- Up to £5,000 training budget for certifications
Interview Process
- Initial intro call
- Technical task and debrief
- Final in-person interview in London