Security Consultant
Role details
Job location
Tech stack
Job description
BAE Systems are seeking an experienced Security Consultant to join our growing security capability. Roles at BAE consist of delivery of high-quality security consulting services across a diverse range of high profile clients and customers. Successful candidates will work closely with technical teams, business leaders, and specialists within both BAE Systems and our client organisations, to identify risks, design effective security solutions and support implementation of robust security strategies. Responsibilities:
- Provide security consulting and advisory services to support clients and internal stakeholders in managing their cyber risk.
- Conduct security assessments, risk reviews and gap analysis to identify security weaknesses, develop mitigation strategies and implement security improvements.
- Contribute to the design and review of secure architectures, systems and technology solutions.
- Support the development and implementation of security policies, standards and governance frameworks.
- Communicate security risk and recommendations clearly through reports, presentations and stakeholder discussions.
- Facilitate workshops, risk reviews, and security discussions with both technical and non-technical audiences.
- Support assurance activities such as audits, compliance reviews and supplier or third-party risk assessments.
Requirements
Do you have experience in NIST standards?, * Strong understanding of cybersecurity principles, risk management and security best practice.
- Knowledge across key and emerging security domains such as cloud security, infrastructure security, identity and access management and application security.
- Experience of working with recognised security frameworks and standards (ISO27001, NIST 800-53, CIS).
- Ability to translate technical security risks into business impact with an ability to make recommendations to technical audiences, business leaders and senior stakeholders.
- Excellent written and verbal communication skills.
- Strong analytical and problem-solving abilities.
- Self-motivated, collaborative, and capable of managing multiple priorities.
- Relevant degree or equivalent professional experience.
- Recognised industry certifications such as CISSP, CISM, CISA or comparable cybersecurity qualifications are desirable.