Information Assurance Consultant

Venn Group
Charing Cross, United Kingdom
8 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
£ 88K

Job location

Remote
Charing Cross, United Kingdom

Tech stack

Microsoft Windows
Amazon Web Services (AWS)
Azure
Cloud Computing Security
Linux
OSI Models
Information Systems Security Architecture Professional
Sherwood Applied Business Security Architecture
Togaf

Job description

  • Support security accreditation and assurance activities across multiple critical systems
  • Specify, interpret and assess compliance with technical and organisational security controls
  • Conduct and support cyber security risk assessments
  • Apply the NCSC Cyber Assessment Framework and relevant government assurance standards
  • Support GovAssure activities, including evidence gathering and compliance assessment
  • Produce clear risk reports, assurance documentation and recommendations
  • Assess security across Windows and Linux infrastructure, networks and cloud environments
  • Work with technical and non-technical stakeholders to explain risks and required controls
  • Take ownership of an allocated workstream while contributing to the wider assurance team
  • Help clients make informed, risk-based security decisions

Requirements

This is not a hands-on engineering position. However, you must be technically credible and capable of understanding how systems operate, identifying security risks and assessing compliance with security controls across the full OSI model., * Strong experience in information assurance, cyber assurance or security risk consulting

  • Previous responsibility for security accreditation or assurance activities
  • Experience assessing compliance with security controls
  • Broad technical understanding of Windows and Linux infrastructure
  • Good knowledge of networks, infrastructure and the OSI model
  • Experience conducting security risk assessments and producing risk reports
  • Ability to understand complex system designs without being a hands-on engineer
  • Current SC or DV clearance
  • You will be customer facing

Desirable Experience

  • Critical National Infrastructure, government, defence or national security experience
  • NCSC Cyber Assessment Framework
  • GovAssure
  • Security accreditation methodologies and documentation
  • Cloud security across Microsoft Azure or AWS
  • Secure architecture and enterprise security frameworks

Useful qualifications may include:

  • CISSP
  • CISM
  • SABSA
  • TOGAF
  • ISO 27001 Lead Auditor
  • Microsoft Azure or AWS security certifications

Benefits & conditions

  • Competitive salary
  • Competitive (above standard) annual leave, increasing with service
  • Funded professional training and certifications
  • Opportunities to attend relevant industry conferences
  • Electric vehicle salary-sacrifice scheme
  • Work on nationally significant programmes
  • Long-term professional development opportunities

Apply for this position