Senior Cyber Security Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Experteer Overview Senior Cyber Security Consultant at The AA to shape security across the organisation, embedding security into technology change across cloud, digital platforms and major programmes. You will partner with Technology, Engineering and the business to influence design, governance and risk management. You’ll lead risk assessments, assurance activities and tests to mitigate cyber risks before go-live, while aligning with ISO 27001, NIST and PCI DSS. Expect a broad, high-impact remit with hybrid London work and CISO reporting. Pay / Benefits * Act as cyber security SME across technology and business change, delivering pragmatic security guidance through the project lifecycle * Lead security risk assessments, control assurance activities and penetration testing to mitigate risks before go-live * Maintain and evolve the Information Security Management System, aligning with ISO 27001, NIST and PCI DSS * Partner with Architecture, Engineering, Technology and third-party suppliers to embed security controls * Produce security documentation, risk reports and recommendations for informed decisions and regulatory compliance * Contribute to security awareness initiatives and continuously improve governance, policies and assurance processes Tasks * Proven experience in Information Security Consultant, Cyber Security Consultant, Security Architect or Cyber GRC roles in a complex tech environment * Strong knowledge of ISO 27001, PCI DSS, NIST or equivalent * Experience conducting security risk assessments, assurance activities and advising on secure design across projects * Understanding of cloud security, enterprise infrastructure, networks, SaaS and modern applications * Excellent stakeholder management and communication skills; ability to influence technical and non-technical audiences * Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor or PCI DSS advantageous Key requirements * annual bonus * cash-car allowance * private medical insurance * 25 days annual leave plus bank holidays * pension with up to 7% employer contribution * life assurance
Requirements
as to embed security controls * Produce security documentation, risk reports and recommendations for informed decisions and regulatory compliance * Contribute to security awareness initiatives and continuously improve governance, policies and assurance processes Tasks * Proven experience in Information Security Consultant, Cyber Security Consultant, Security Architect or Cyber GRC roles in a complex tech environment * Strong knowledge of ISO 27001, PCI DSS, NIST or equivalent * Experience conducting security risk assessments, assurance activities and advising on secure design across projects * Understanding of cloud security, enterprise infrastructure, networks, SaaS and modern applications * Excellent stakeholder management and communication skills; ability to influence technical and non-technical audiences * Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor or PCI DSS advantageous Key requirements * annual bonus * cash-car allowance * private medical a policies * 25 days annual leave plus bank holidays * pension with up to 7% employer contribution * life assurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on eu.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary in the UK
Software Engineer Salary London
Top-Paying Tech Jobs (with Salaries)