Information Security Consultant

CYBERFORT LIMITED
UK
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Microsoft Word Microsoft Excel Artificial Intelligence Cyber Security Microsoft Office RSA Archer Platform Gsuite

Job description

About the Role: Information / Cyber Security Consultant

As a Security Consultant, you will support client engagements across a range of security frameworks, helping organisations assess, improve, and evidence their security posture. You’ll work independently and alongside senior consultants to deliver gap analyses, remediation plans, and assurance activities across ISO standards, NIST, CAF, Cyber Essentials, CSA CCM and related frameworks.

This role combines structured advisory work with hands-on delivery, offering exposure to varied industries and maturity levels while developing your consulting and technical security skills.

The Impact You’ll Make

  • Support delivery of security assessments and improvement programmes across ISO, NIST, CAF, Cyber Essentials, CSA CCM and similar frameworks
  • Conduct gap analysis aligned to client risk appetite, sector expectations, and regulatory context
  • Assist with risk assessments using recognised methodologies (e.g. ISO 27005, NIST RMF, FAIR or equivalents)
  • Draft, review, and maintain information security documentation including policies, standards, procedures, and guidance
  • Support implementation of technical, administrative, and physical controls mapped to applicable frameworks such as ISO 27001:2022
  • Contribute to internal audits, external assurance activities, and certification readiness engagements
  • Assist clients in tracking security metrics, evidence, and ongoing compliance obligations
  • Help deliver workshops, awareness sessions, and practical guidance to embed good security practices, Cyber Security Consultant Locations Remote Remote status Fully Remote

Requirements

  • Hands-on experience working with one or more security frameworks such as ISO 27001, NIST CSF, CAF, Cyber Essentials or CSA CCM
  • A solid understanding of information security principles, risk management, and control design
  • Experience contributing to security assessments, audits, or compliance initiatives
  • Strong written and verbal communication skills, with confidence working directly with clients
  • A proactive, structured approach to problem-solving and documentation
  • Relevant certifications or working towards them (e.g. ISO 27001 Implementor or auditor)
  • Familiarity with AI Risk Management Frameworks and Ethical use of AI protocols (e.g. NIST AIRMF, ISO42001)
  • Familiarity with tooling for risk registers, audit management, or GRC platforms e.g. Vanta / OneTrust
  • Working knowledge of M365, Google workspace environments
  • Strong MS office capabilities specifically Excel and Word

Benefits & conditions

  • Purpose-Driven Work - Help protect businesses and communities from evolving cyber threats.
  • Growth & Development - Access mentoring, apprenticeships, graduate schemes, and continuous learning platforms.
  • Inclusive Culture - We champion diversity through our Women’s Network, Neurodiversity Awareness, and Inclusion Committee.
  • Flexible Working - Hybrid and remote options to support work-life balance.
  • Top-Tier Benefits - Competitive salary, private healthcare, wellbeing support, generous holiday allowance, and more.

About the company

At Cyberfort, we’re securing the digital future. As a leading UK provider of cybersecurity solutions, we deliver cutting-edge services in Managed Detection & Response (MDR), Penetration Testing, Security Operations, and Strategic Consulting.

We’re large enough to offer exciting opportunities, yet agile enough to ensure every voice is heard. At Cyberfort, you’re not just joining a company, you’re becoming part of a mission-driven team.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on uk.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:58 min

Mitigating diverse browser quirks and unsupported clipboard metadata formats

Markus Over Markus Over

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all