Senior Information Security Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Experteer Overview As Senior Information Security Consultant, you will shape the future of cyber security across The AA and embed security into technology change from day one. You’ll work across cloud, digital platforms and major transformation programmes to enable innovation while managing cyber risk. Reporting to the CISO, you’ll influence solution design, strengthen governance and ensure regulatory compliance across the technology estate. This role offers the chance to impact a well-known brand while advancing security at scale. Pay / Benefits * Act as cyber security subject matter expert across technology and business change throughout the project lifecycle * Lead security risk assessments, control assurance activities and penetration testing to mitigate risks before go-live * Maintain and evolve Information Security Management System aligned with ISO 27001, NIST and PCI DSS * Partner with Architecture, Engineering, Technology and third-party suppliers to embed security controls * Produce security documentation, risk reports and recommendations for business decisions and regulatory compliance * Contribute to security awareness initiatives and governance, policies and assurance processes Tasks * Proven experience in an Information Security Consultant, Cyber Security Consultant, Security Architect or Cyber GRC role in a complex tech environment * Strong knowledge of ISO 27001, PCI DSS, NIST or equivalent standards * Experience conducting security risk assessments and advising on secure design across multiple projects * Good understanding of cloud security, enterprise infrastructure, networks, SaaS and modern applications * Excellent stakeholder management and communication skills with ability to influence technical and non-technical audiences * Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor or PCI DSS would be advantageous Key requirements * annual bonus * cash-car allowance * private medical insurance * 25 days annual leave plus bank holidays * pension with up to 7% employer contribution * employee assistance programme
Requirements
Produce security documentation, risk reports and recommendations for business decisions and regulatory compliance * Contribute to security awareness initiatives and governance, policies and assurance processes Tasks * Proven experience in an Information Security Consultant, Cyber Security Consultant, Security Architect or Cyber GRC role in a complex tech environment * Strong knowledge of ISO 27001, PCI DSS, NIST or equivalent standards * Experience conducting security risk assessments and advising on secure design across multiple projects * Good understanding of cloud security, enterprise infrastructure, networks, SaaS and modern applications * Excellent stakeholder management and communication skills with ability to influence technical and non-technical audiences * Professional certifications such as CISSP, CISM, ISO 27001 Lead Implementer/Auditor or PCI DSS would be advantageous Key requirements * annual bonus * cash-car allowance * private medical insurance * 25 days annual leave aay _ bank holidays * pension with up to 7% employer contribution * employee assistance programme
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on eu.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Software Engineer Salary London
9 Ways to Make Money Hacking
Top-Paying Tech Jobs (with Salaries)