Senior Cyber Security Consultant (Security Operation & Vulnerability Management)

Methods
London, UK
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Cyber Security Software Vulnerability Management Microsoft Sentinel CIS Benchmarks Qualys

Job description

Working closely with senior stakeholders, technical teams and operational security functions, you’ll assess existing capabilities, identify opportunities for improvement and design pragmatic solutions that enhance Vulnerability Management and Security Operations. You’ll bring experience gained across multiple organisations, allowing you to recommend best practice while tailoring solutions to each client’s operating model and technology landscape.

You’ll primarily work across modern cloud and enterprise IT environments.

  • Lead discovery activities to understand current Vulnerability Management and Security Operations capabilities.

  • Assess existing processes, procedures and policies, identifying opportunities to improve operational effectiveness and cyber resilience.

  • Review and enhance Vulnerability Management operating models, governance and day-to-day operational processes.

  • Review and improve Security Operations (SOC) processes, procedures, policies and operational workflows.

  • Design practical, scalable improvements that align with client objectives and existing technologies.

  • Lead the design and implementation of strategic improvements, influencing stakeholders and driving the successful adoption of new operating models, processes and controls.

  • Establish and maintain trusted advisor relationships with technical, operational and executive stakeholders, providing authoritative guidance and influencing decision-making.

  • Lead workshops, planning sessions and design activities with operational teams and executive stakeholders, shaping strategy and securing alignment on transformation initiatives.

  • Provide leadership, mentoring and quality assurance across consulting workstreams, taking accountability for the successful delivery of outcomes and the development of junior consultants.

  • Take ownership of reporting, delivery governance and risk management activities, ensuring stakeholders are informed and business objectives remain aligned to delivery outcomes.

  • Work across complex hybrid technology environments including cloud platforms, enterprise infrastructure and modern digital services.

Requirements

  • Significant experience delivering Vulnerability Management improvements from both:

  • Process, procedure and policy perspectives.

  • Operational delivery and implementation.

  • Experience improving Security Operations (SOC) capabilities, including:

  • Operating models.

  • Processes and procedures.

  • Governance and policy.

  • Operational effectiveness.

  • Previous consulting experience across multiple clients or organisations.

  • Exceptional stakeholder management and influencing skills, with experience advising and challenging technical teams, operational security functions, senior leadership and executive stakeholders.

  • Experience leading discovery and assessment engagements, translating findings into strategic roadmaps, business cases and prioritised improvement plans.

  • Strong planning, facilitation and organisational skills.

  • Experience working within complex cloud and enterprise IT environments.

  • Ability to operate at both strategic and tactical levels, taking ownership of outcomes while providing authoritative advice and direction.

  • Excellent written, verbal and presentation skills.

Desirable Experience:

  • Experience within UK Government or other highly regulated environments.

  • Knowledge of Microsoft Defender Vulnerability Management, Qualys, Tenable or Rapid7.

  • Experience with Microsoft Sentinel or similar Security Operations platforms.

  • Familiarity with security frameworks such as:

  • NCSC Cyber Assessment Framework (CAF)

  • NIST Cybersecurity Framework

  • CIS Controls

  • ISO/IEC 27001

This role will require you to have or be willing to go through Security Clearance. As part of the onboarding process candidates will be asked to complete a Baseline Personnel Security Standard; details of the evidence required to apply may be found on the government website Gov.UK. If you are unable to meet this and any associated criteria, then your employment may be delayed, or rejected . Details of this will be discussed with you at interview

Methods is passionate about its people; we want our colleagues to develop the things they are good at and enjoy.

Benefits & conditions

  • Autonomy to develop and grow your skills and experience
  • Be part of exciting project work that is making a difference in society
  • Strong, inspiring and thought-provoking leadership
  • A supportive and collaborative environment

Development - access to LinkedIn Learning, a management development programme, and training

Wellness - 24/7 confidential employee assistance programme

Flexible Working - including home working and part time

Social - office parties, breakfast Tuesdays, monthly pizza Thursdays, Thirsty Thursdays, and commitment to charitable causes

Time Off - 25 days of annual leave a year, plus bank holidays, with the option to buy 10 extra days each year

Volunteering - 2 paid days per year to volunteer in our local communities or within a charity organisation

About the company

Since our establishment in 1990, Methods has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK.

Our mission is to improve and safeguard public-facing services. We apply digital thinking to ensure the future of our public services is centred around our citizens.

Our human touch sets us apart from other consultancies, system integrators and software houses - we have a customer-centric value system whereby we focus on delivering what is right for our clients.

We passionately support our clients in the success of their projects while working collaboratively to share skill sets and solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them.

Methods are experts in delivering secure, resilient cyber and information services - keeping systems and data safe. We help reduce risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on apply.workable.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · WWC 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all