Information Security Consultant

Responsibilitiesprovide
Woking, UK
2 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£80,000.0
Working hours
Regular working hours

Tech stack

Software System Penetration Testing Cyber Security Software Engineering Vulnerability Analysis

Job description

The Opportunity:We are seeking an experienced and proactive Information Security Consultant to join our client’s team. This is a hybrid position based in Newcastle, offering the opportunity to work with a diverse portfolio of clients, helping them strengthen their security posture and manage risk in an evolving threat landscape. You will play a key role in delivering security advisory services, conducting assessments, and supporting organisations in aligning with industry standards and best practices. The role will also involve supporting clients with modern security challenges, including threat modelling, secure-by-design practices and emerging AI security considerations. Key ResponsibilitiesProvide expert guidance on information security strategies, frameworks and best practices.Conduct security risk assessments, gap analyses and audits.Support clients in achieving and maintaining compliance with standards and regulations such as ISO 27001, NIST and GDPR.Develop and review security policies, procedures and documentation.Perform vulnerability assessments and coordinate remediation efforts.Deliver threat modelling workshops and support secure solution design activities.Deliver security awareness training and workshops.Assist with incident response planning and post-incident reviews.Collaborate with technical and non-technical stakeholders to embed security into business processes.

Requirements

Required Skills & ExperienceProven experience working as an Information Security Consultant or in a similar role.Strong understanding of security frameworks including ISO 27001, NIST and CIS Controls.Experience conducting threat modelling exercises and risk-based security assessments.Strong client-facing and stakeholder management skills.Experience working within a consultancy or advisory environment. Desirable Qualifications & ExperienceProfessional certifications such as CISSP, CISM, CRISC or ISO 27001 Lead Implementer/Auditor.Experience in consultancy or client-facing roles.Exposure to penetration testing or security engineering.Knowledge of secure software development practices and DevSecOps.Understanding of emerging security challenges, including AI security.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:22 min

Understanding software engineering as more than just coding

Lilia Gargouri Lilia Gargouri · World Congress 2026 Europe

3:17 min

Embedding automated vulnerability analysis within CircleCI workflows

Milecia Mcgregor · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all