Information Security Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The Opportunity:We are seeking an experienced and proactive Information Security Consultant to join our client’s team. This is a hybrid position based in Newcastle, offering the opportunity to work with a diverse portfolio of clients, helping them strengthen their security posture and manage risk in an evolving threat landscape. You will play a key role in delivering security advisory services, conducting assessments, and supporting organisations in aligning with industry standards and best practices. The role will also involve supporting clients with modern security challenges, including threat modelling, secure-by-design practices and emerging AI security considerations. Key ResponsibilitiesProvide expert guidance on information security strategies, frameworks and best practices.Conduct security risk assessments, gap analyses and audits.Support clients in achieving and maintaining compliance with standards and regulations such as ISO 27001, NIST and GDPR.Develop and review security policies, procedures and documentation.Perform vulnerability assessments and coordinate remediation efforts.Deliver threat modelling workshops and support secure solution design activities.Deliver security awareness training and workshops.Assist with incident response planning and post-incident reviews.Collaborate with technical and non-technical stakeholders to embed security into business processes.
Requirements
Required Skills & ExperienceProven experience working as an Information Security Consultant or in a similar role.Strong understanding of security frameworks including ISO 27001, NIST and CIS Controls.Experience conducting threat modelling exercises and risk-based security assessments.Strong client-facing and stakeholder management skills.Experience working within a consultancy or advisory environment. Desirable Qualifications & ExperienceProfessional certifications such as CISSP, CISM, CRISC or ISO 27001 Lead Implementer/Auditor.Experience in consultancy or client-facing roles.Exposure to penetration testing or security engineering.Knowledge of secure software development practices and DevSecOps.Understanding of emerging security challenges, including AI security.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Understanding and Mitigating Common Web Vulnerabilities
IT Salaries in UK
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
The 12 Best Jobs for Software Engineers