Information Security Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
We are looking for an experienced Information Security Consultant to work closely with technical and Information Security teams to deliver effective security solutions and help organisations continuously improve their security posture.
You will provide strategic Information Security guidance, support and roadmaps, identifying areas for improvement and overseeing a range of security projects. This will include supporting the implementation of security controls, assessing organisations against recognised industry good practice, producing detailed assessment reports and presenting findings to senior leadership teams., * Identify opportunities to improve an organisation’s security position and create practical roadmaps for continuous improvement, including maximising existing Microsoft security capabilities.
- Assess organisations against recognised frameworks and standards, including Cyber Essentials, NCSC CAF and ISO 27001.
- Own or oversee key Information Security processes and procedures.
- Manage and oversee security monitoring and detection services.
- Develop and implement general and role-specific Information Security training and awareness programmes.
- Raise, investigate and manage or support Information Security incidents, ensuring appropriate follow-up actions are completed.
- Provide Information Security support to business functions, including digital teams, IT infrastructure and IT service desk functions.
- Oversee ongoing programmes of security testing, reviews and audits.
- Produce clear, concise Information Security reports and present findings and recommendations to key stakeholders.
- Provide strategic advice and practical guidance to stakeholders to support ongoing security improvement.
Requirements
This is a customer-facing role requiring excellent communication skills, a keen eye for detail and the ability to explain complex security concepts clearly to both technical and non-technical audiences, including senior leadership and board-level stakeholders., * Strong knowledge and experience of technology, Information Security and data protection-related compliance, legal and regulatory frameworks and standards, including Cyber Essentials, ISO 27001
- Strong knowledge and practical experience of the Microsoft technology stack. Experience with Microsoft Purview would be beneficial.
- Expert knowledge and understanding of Information Security principles and industry good practice.
- Experience working with both technical and non-technical personnel at different levels of an organisation.
- The ability to articulate security risks, recommendations and technical concepts in a clear and appropriate way for different audiences.
- Strong understanding of Information Security principles, concepts and technical security controls.
- Previous consulting experience, particularly supporting small and medium-sized organisations, would be advantageous.
- A positive, proactive and can-do attitude, with the ability to work independently and use your own initiative.
- Relevant Information Security certifications such as CISSP or CISM would be beneficial. But you will at least need the desire to want to complete one/both of these
- Microsoft certifications, particularly those within the SC certification series, such as SC-400 or SC-401, would also be advantageous.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
9 Ways to Make Money Hacking
The 12 Best Jobs for Software Engineers