Technical Cyber Security Consultant - SC cleared
Technical Cyber Security Consultant - SC cleared
Location: Remote / UK based (Quarterly - UK travel) Contract Type: Full-time, Permanent
Salary: Competitive + Benefits
About the Role
The Cyber Security Consultant will support the organisation's digital security risk management capability through the identification, assessment, analysis, logging and ongoing monitoring of information and cyber security risks. The role is responsible for delivering effective control assurance, validating that security control objectives are met across people, process and technology, and support the business in making well-informed, risk-based decisions.
Working collaboratively with business, technology and delivery teams, the role provides independent challenge, expert advice and pragmatic guidance to ensure security risks are understood, managed and remediated in line with organisational risk appetite and recognised best practice frameworks (e.g. ISO 27001, NIST, CIS Controls).
Key Responsibilities
- Deliver security risk identification, assessment, analysis and logging activities, ensuring risks are clearly articulated, consistently scored and recorded in approved Information Security Risk Management (ISRM) tools.
- Perform control assurance activities to validate how control objectives are being met in practice, working closely with technical delivery teams to understand design and implementation.
- Identify and document control gaps, assess residual risk, and clearly articulate outcomes within control and assurance artefacts.
- Support the delivery, rollout and continuous improvement of Information Security Risk Management methodologies, including the discovery, review and transformation of historic risk assessments into an updated, consistent approach.
- Manage allocated assignments end-to-end, ensuring all control, assurance and risk outputs are delivered accurately and in a timely manner.
- Maintain oversight of risk remediation activities, tracking actions through to implementation and ensuring ongoing risk treatment and control effectiveness.
- Provide advice, guidance and intelligent challenge on enterprise control alignment during reviews of solution designs, security documentation and architecture artefacts.
- Lead and facilitate collaborative control and risk workshops with business and technical stakeholders to drive shared understanding, surface key risks and agree appropriate outcomes.
- Contribute to post-incident and remedial assurance activities, ensuring lessons learned are captured and embedded into control improvements.
- Provide input into formal scoping, ensuring key security risks are reflected in test scope and that critical controls are robustly assessed against expected security outcomes.
- Prepare clear, concise risk summary statements and assurance outputs for senior stakeholders and risk owners, translating technical issues into business-focused language to enable effective information risk decisions.
- Present assurance findings and risk positions at governance forums and stakeholder meetings, representing the security assurance function with credibility.
- Ensure effective knowledge transfer on key assignments, building capability and understanding across business and technical stakeholders.
- Contribute to the continuous improvement of assurance practices, maintaining awareness of emerging threats, vulnerabilities and industry best practice.
Experience & Capabilities
- Proven experience in cyber / information security risk management and control assurance roles.
- Strong analytical skills with the ability to evaluate technical, procedural and design evidence.
- Excellent written and verbal communication skills, with experience presenting to senior and non-technical audiences.
- Experience working collaboratively with multidisciplinary teams across business and technology functions.
- Familiarity with recognised security frameworks and standards (ISO 27001, NIST, CIS Controls).
- Highly organised with strong attention to detail and a commitment to high-quality, auditable documentation.
- Candidates must hold government security vetting at SC level and be able to meet UK residency requirements.
What's in it for You
- Flexible Working: Remote-first with travel as needed.
- Career Development: Continuous learning and professional growth.
- Benefits Package: Includes Private Health Care, Cash Back Plan, Buy/Sell Holiday Options, Life Assurance, and more.
Interested?
Submit your application to learn more about this exciting opportunity.
Reasonable Adjustments:
Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.
If you need any help or adjustments during the recruitment process for any reason , please let us know when you apply or talk to the recruiters directly so we can support you.