Principal Security Architect

Principal Security Consultant

Location: UK Remote / Hybrid

Security Clearance: SC Cleared, eligible for DV

An exciting opportunity for an experienced Cyber Security and Information Assurance professional to join a growing consultancy delivering complex security programmes across Defence, Government and other highly regulated sectors.

This is a senior client facing role focused on Governance, Risk and Compliance (GRC), Security Assurance and Defence security frameworks. You will lead complex engagements, provide strategic security advice to senior stakeholders and help organisations navigate demanding security, assurance and accreditation requirements.

Working within a highly collaborative consulting environment, you will support critical programmes while helping shape security strategy, governance and risk management activities.

Key Responsibilities

  • Lead the delivery of cyber security, information assurance and GRC engagements.
  • Provide trusted security advice to senior client stakeholders.
  • Deliver Security Assurance and Accreditation activities within Defence and Government environments.
  • Support and implement Secure by Design principles across programmes and systems.
  • Conduct cyber security assessments, gap analysis and compliance reviews.
  • Assess organisations against recognised standards and frameworks, including:
  • ISO 27001
  • NIST
  • Cyber Assessment Framework (CAF)
  • Secure by Design (SbD)
  • Conduct cyber risk assessments and support ongoing risk management activities.
  • Perform Security Assurance Co-ordinator (SAC) responsibilities where required.
  • Collaborate with engineering, architecture and delivery teams to ensure secure outcomes.

Required Experience

  • Significant experience delivering Cyber Security and Information Assurance consultancy services.
  • Previous experience as a Security Assurance Co-ordinator (SAC).
  • Experience operating within Defence or highly regulated environments.
  • Strong understanding of Security Assurance and Accreditation processes.
  • Experience working with JSP440 and JSP604.
  • Practical application of Secure by Design principles.
  • Experience implementing or assessing against:
  • ISO 27001
  • NIST 800 Series
  • CAF
  • Experience conducting cyber risk assessments and managing risk treatment activities

Qualifications Preferred

  • CISSP
  • CISM
  • CRISC
  • CISMP
  • ISO 27001 Lead Implementer
  • ISO 27001 Lead Auditor
  • NIST Foundation
  • NIST Practitioner

Job Details

Company
Experis UK
Location
England, United Kingdom
Hybrid / Remote Options
Posted