Digital Trust - Consultant
Role details
Job location
Tech stack
Job description
At Capgemini Invent, we believe difference drives change. As inventive transformation consultants, we blend our strategic, creative and scientific capabilities, collaborating closely with clients to deliver cutting-edge solutions. Join us to drive transformation tailored to our client's challenges of today and tomorrow. Informed and validated by science and data. Superpowered by creativity and design. All underpinned by technology created with purpose. YOUR ROLE
The Invent Digital Trust (DT) practice focuses on ensuring secure business outcomes for our clients, providing Cybersecurity advisory and transformation consulting in areas such as security strategy, risk management, human risk management, data and identity security, secure intelligent industry, Gen-AI risk, and security operations modernisation.
Our security specialists and innovators enable our clients to evaluate cyber risks, redesign Cybersecurity operating models, modernise digital identity capabilities, lead programmes to drive security culture change, and transform security and compliance regimes to make them efficient, effective, sustainable, and resilient.
For this role, we are looking for individuals with experience in Cybersecurity to help embed security culture and practices. We continuously recruit across a range of experienced hire grades for our DT practice. Depending on experience, you will be comfortable with exploring ambiguity with a business outcome mindset while applying business analysis and enabling skills including communications and stakeholder engagement as a key delivery contributor, a subject matter expert (SME) in the team and/or manager of a workstream of consultants and client staff.
We are looking to grow our diverse team at the Consultant grade with those who have demonstrated expertise and experience in one of the following domains:
- Security Assurance - Delivering robust security frameworks such as ISO 27001, NIST, and Cyber Essentials to clients, ensuring their systems and processes meet industry standards and are resilient to threats and tailoring it to our client's environment, risk profile, and regulatory requirements.
- Generative AI - Enabling the secure design and adoption of Gen AI for business, IT and/or security functions in alignment with the evolving regulatory landscape (e.g. EU AI Act, GDPR, DPA 2018, etc.).
- Security Architecture - Improving the security posture of the Enterprise and/or applications through the assessment, design or implementation of effective and secure architectural patterns that align with industry standards (e.g. CIS L1/2, NIST, ISO27001, COBIT, etc.).
As a security consultant you'll help to grow our business, model our values and behaviours, and coach and develop junior members of the team. Key expectations from this role include:
- Engaging in projects for our clients which transform their Cybersecurity and Architecture capabilities to reduce business and technology risk.
- Providing expertise in the strategic, organisational, and human aspects of Cybersecurity. For example, security strategy definition, which is often the first step in engaging our clients, helping to influence the board and CxO with top-down buy-in and understanding.
- Providing insight for threat modelling, risk management and security overlay approaches by conducting security maturity assessments.
- Providing a business understanding of technical domains and tailoring these to help clients maximise value and leverage quick wins on their transformation journey.
- Engaging with clients in business, IT and/or security to positively influence the board and senior stakeholders to the required outcomes.
- Collaborating with teams and stakeholders to deliver security strategy, governance, security testing, identity & access management (IAM), security architecture, privacy, and cyber data analytics.
As part of your role, you will also have the opportunity to contribute to the business and your own personal growth, through activities that form part of the following:
- Business Development - Contributing to proposals, RFPs, bids, proposition development, client pitch contribution, client hosting at events.
- Internal Contribution - Campaign development, internal think-tanks, whitepapers, practice development (operations, recruitment, team events & activities), offering development.
- Learning & Development - Training to support your career development and the skills demand within the company, certifications etc.
Requirements
Do you have experience in Software development?, * Experience in one or more Cybersecurity domains. (e.g., Security & Risk Management, Security Architecture, Asset Security, Security Engineering, Communications & Network Security, Identity & Access Management, Security Education and Awareness, Security Assessment & Testing, Security Operations, or Software Development Security).
- Desired Cybersecurity experience is as follows: Working with SOC teams, OT Security, Security Architecture, Security Op Model Transformation projects and Cybersecurity Assessments.
- Familiarity with core Cybersecurity frameworks and industry frameworks (e.g., NIST CSF, ISO27001, CIS Critical Controls), regulations (e.g., NIS2) and financial regulations (e.g., DORA, FCA, Bank of England, etc.).
- Have an understanding of the future of Gen AI and the impact on cyber security.
- Relevant Cybersecurity qualifications such as CompTIA Security+, AWS Cloud Practitioner, Azure Fundamentals, CISMP preferred.
- Currently working in an established Consulting firm, and/or in industry but having a Consulting background.
- Proven ability to be successful in a matrixed organisation, and to enlist support and commitment from peers in selling and delivering consulting solutions.
- Experience of proposition building and delivery.
- Cross-sector or SME sector experience in core Capgemini sectors. (e.g., Financial Services; Public Sector; Energy, Utilities & Chemicals; Consumer Products Retail Distribution; Manufacturing, Automotive & Life Sciences; Telco, Media & Technology).
- Bring excellent communication skills and the confidence to influence senior stakeholders to the role.
- Experience of proposition building and delivery.
- Have approximately 2 years of experience in delivery of Cybersecurity projects
- SC cleared (or above), or eligible.