Information Assurance Consultant
Venn Group
Charing Cross, United Kingdom
8 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
Senior Compensation
£ 88KJob location
Remote
Charing Cross, United Kingdom
Tech stack
Microsoft Windows
Amazon Web Services (AWS)
Azure
Cloud Computing Security
Linux
OSI Models
Information Systems Security Architecture Professional
Sherwood Applied Business Security Architecture
Togaf
Job description
- Support security accreditation and assurance activities across multiple critical systems
- Specify, interpret and assess compliance with technical and organisational security controls
- Conduct and support cyber security risk assessments
- Apply the NCSC Cyber Assessment Framework and relevant government assurance standards
- Support GovAssure activities, including evidence gathering and compliance assessment
- Produce clear risk reports, assurance documentation and recommendations
- Assess security across Windows and Linux infrastructure, networks and cloud environments
- Work with technical and non-technical stakeholders to explain risks and required controls
- Take ownership of an allocated workstream while contributing to the wider assurance team
- Help clients make informed, risk-based security decisions
Requirements
This is not a hands-on engineering position. However, you must be technically credible and capable of understanding how systems operate, identifying security risks and assessing compliance with security controls across the full OSI model., * Strong experience in information assurance, cyber assurance or security risk consulting
- Previous responsibility for security accreditation or assurance activities
- Experience assessing compliance with security controls
- Broad technical understanding of Windows and Linux infrastructure
- Good knowledge of networks, infrastructure and the OSI model
- Experience conducting security risk assessments and producing risk reports
- Ability to understand complex system designs without being a hands-on engineer
- Current SC or DV clearance
- You will be customer facing
Desirable Experience
- Critical National Infrastructure, government, defence or national security experience
- NCSC Cyber Assessment Framework
- GovAssure
- Security accreditation methodologies and documentation
- Cloud security across Microsoft Azure or AWS
- Secure architecture and enterprise security frameworks
Useful qualifications may include:
- CISSP
- CISM
- SABSA
- TOGAF
- ISO 27001 Lead Auditor
- Microsoft Azure or AWS security certifications
Benefits & conditions
- Competitive salary
- Competitive (above standard) annual leave, increasing with service
- Funded professional training and certifications
- Opportunities to attend relevant industry conferences
- Electric vehicle salary-sacrifice scheme
- Work on nationally significant programmes
- Long-term professional development opportunities