
Senior Security Consultant – GRA
FSP
full-time
Posted on:
Location Type: Hybrid
Location: Glasgow • United Kingdom
Visit company websiteExplore more
Job Level
Tech Stack
About the role
- Lead cyber governance, risk and compliance engagements
- Engage with clients to understand their threat landscape and business context
- Conduct risk and compliance assessments against recognised frameworks (e.g. ISO 27001, NIST, SOC 2)
- Design, review and advise on the implementation and adoption of information security policies, standards, procedures and frameworks
- Lead cyber and third-party risk assessments and evaluate supplier security posture
- Produce clear, concise risk and compliance reports for executive and C-suite stakeholders
- Contribute to thought leadership and continuous improvement
Requirements
- Extensive experience of designing, leading and delivering cyber governance, risk and assurance outcomes
- Strong knowledge of recognised cyber security frameworks and standards, including ISO/IEC 27001, NIS Directives, NIST
- Demonstrable experience aligning security controls to MOD requirements such as DEFSTAN 05-138, JSP 440, JSP 604 and Defence Cyber Resilience policies
- Experienced in applying UK Government security and assurance frameworks, including GovAssure, Cyber Assessment Framework (CAF), Defence Cyber Certification (DCC) and Government Standard (GovS) 007
- Hold relevant academic or professional qualifications, such as an MSc in cyber security or related specialism, CISM, CISSP, PCIRM or ISO/IEC 27001 Lead Implementer or Lead Auditor certification
- Eligible to work in the UK and able to obtain and maintain UK security clearances
- Hold, or are actively working towards, Principal or Chartered Cyber Security Professional (ChCSP) status
Benefits
- A collaborative and supportive environment in which you can grow and develop your career
- The tools and opportunity to do work you can be proud of
- A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience
- Hybrid working – we empower you to make smart choices about when and where to work to achieve great results
- Industry leading coaching and mentoring
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cyber governancerisk assessmentscompliance assessmentsinformation security policiessecurity controlscyber security frameworkssupplier security posturerisk and compliance reportsthreat landscape analysiscontinuous improvement
Soft Skills
leadershipclient engagementcommunicationthought leadershiporganizational skillsanalytical skillsproblem-solvingattention to detailcollaborationstrategic thinking
Certifications
MSc in cyber securityCISMCISSPPCIRMISO/IEC 27001 Lead ImplementerISO/IEC 27001 Lead AuditorPrincipal Cyber Security Professional (ChCSP)Chartered Cyber Security Professional (ChCSP)