The Senior Security Consultant plays a crucial role as a trusted advisor in guiding clients through the complexities of cyber risk management and assurance. This role is responsible for helping organisations identify gaps, develop strategies, governance to ensure compliance with industry standards, frameworks and regulations.
YOUR ROLE
- Conduct comprehensive risk assessments to identify potential cyber threats, vulnerabilities, and the potential impact on client organisations. Develop risk mitigation strategies tailored to the client's specific needs.
Security Assurance
- Lead and oversee security assurance projects, ensuring that clients meet regulatory requirements and industry standards (e.g., ISO 27001, CPS234, ). Provide guidance on implementing security controls and policies.
- Serve as the primary point of contact for clients, offering expert advice on cybersecurity best practices, emerging threats, and risk management strategies. Build and maintain strong client relationships through regular communication and consultation.
Security Framework Development
- Assist organisations in developing and operationalising security control frameworks and Information Security Management Systems (ISMS) aligned to business objectives, regulatory requirements, and industry standards. Enable successful adoption through the creation of policies, risk frameworks, criticality assessments, governance artefacts, process documentation, and reporting mechanisms.
Manage Supply Chain Risk
- Help businesses to appreciate their supply chain risk and develop controls, policies and processes to repeatedly assess and manage this risk.
Regulatory Compliance:
- Stay up to date with changes in cybersecurity laws and regulations. Ensure clients are informed of new requirements and help them achieve and maintain compliance
- Adherence to company policies including information security and cyber security policies
QUALIFICATIONS & CLEARANCES
Education & Qualifications
- Bachelor's degree in Computer Science, Information Security, or related field.
Certifications & Training
- Industry certifications such as CISSP, CISM, CISA are highly desirable
Required Skills
- Extensive experience (typically 5+ years) in cybersecurity, with a focus on risk management, security assurance, and client advisory services
- Strong understanding of cybersecurity frameworks, threat modelling, vulnerability management, and security architecture. Familiarity with cloud security, network security, and incident response tools
- This role requires a blend of technical acumen, strategic thinking, and excellent communication skills to effectively manage client relationships and deliver high-impact solutions
- Excellent analytical, problem-solving, and communication skills, with the ability to effectively communicate complex technical concepts to non-technical stakeholders
- Proven ability to work independently and collaboratively in a fast-paced consulting environment, managing multiple clients, projects and priorities simultaneously
- Proven ability to lead and mentor less experienced team members
- Strong time management skills with the ability to manage multiple client engagements simultaneously
- High ethical standards and integrity, especially when dealing with sensitive information.
- Enthusiasm for staying updated with the latest security trends, technologies, and threats
- Ability to adapt to rapidly changing environments and threats
- Persistence in solving problems and a patient approach to dealing with complex issues
- Brings a consulting mindset which is client focused and considers growth opportunities for CSO
Police Check
Current police check no greater than 90 days old