Enable job alerts via email!

Cyber Security Consultant

Medirest Signature

Cardiff

Hybrid

GBP 45,000 - 65,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in the health sector seeks a Security Consultant to join their Security Risk and Governance team. The role involves ensuring the secure delivery of projects, protecting sensitive data, and complying with Information Security standards. Candidates should have strong technical acumen and recognized security certifications, along with skills in risk management and stakeholder engagement. This position offers a hybrid work arrangement, allowing flexibility in working locations.

Qualifications

  • Recognised professional certification such as CISSP, CISM, CISA, CRISC.
  • Good familiarity with NIST Cybersecurity Framework and ISO27001.
  • Experience delivering Security assurance services.

Responsibilities

  • Ensure security is embedded in projects, protecting customer data.
  • Review IT/Business change documentation and provide direction.
  • Scope and support penetration testing.

Skills

Communication
Risk Management
Stakeholder Engagement
Cybersecurity Knowledge

Education

CISSP
CISM
CISA
CRISC
ISO27001

Job description

What you’ll be responsible for

The Security Consultant works within the Security Risk and Governance team and is responsible for working with project teams, including architects, analysts, technical designers, programme managers and business users to ensure that projects are delivered securely, protecting customer, company and employee data and ensuring compliance with the Information Security policies and standards.

Responsibilities:

  1. Provide end to end engagement on a wide range of business projects ensuring that security is built in and customer, company and employee data is protected
  2. Attend project meetings and represent Information Security, providing direction as required
  3. Review and consult on IT / Business change documentation including Business Requirements, Design Documents, Detailed Designs, Network Diagrams, etc
  4. Provide the relevant people, process and technology requirements to ensure projects deliver secure solutions
  5. Ensure that relevant security policies and standards are applied to specific projects by adopting a hands-on approach where needed
  6. Articulate risk in technical and non-technical terminology so that it can be interpreted by Information Technology and business teams
  7. Scope, arrange and support penetration testing and vulnerability testing and track remediation to a close
  8. Carry out Information Security impact assessments to meet Policies, NIS D obligations and GDPR requirements on projects where appropriate
  9. Contribute and to and review security elements in supplier contracts
  10. Undertaking any other requirements as outlined by the line manager
Who you’ll work with

Internal

  • CISO
  • Security Architecture
  • Business Sponsors
  • Project & Programme Managers
  • Head of Procurement
  • Head of Legal
  • DPO
  • IT & OT Architects

External

  • Outsource IT providers
  • Cloud Service Providers
  • Significant suppliers to Welsh Water
  • External Auditors
  • Regulators
About you

Knowledge, Skills & Experience

  • Recognised professional certification such as; CISSP, CISM, CISA, CRISC
  • Good familiarity with the NIST Cybersecurity Framework, CIS Critical Security controls, and ISO27001
  • Experience of understanding of a Security governance frameworks and Security risk management
  • Experience of delivering Security assurance services to significant Business projects within a large complex business
  • Experience of engaging consultatively and openly with internal & external stakeholders to ensure good collaboration and positive working relationships
  • Strong technology grounding – familiarity with its implementation and use within the corporate environment, and the potential vulnerabilities that could arise
  • Experience of delivering “end to end” Information Security Assurance and achieving optimal risk management outcomes
  • Effective communicator with strong written and verbal communication skills – capable of writing clear concise reports and presenting to senior stakeholder groups
  • Demonstrable Security risk management knowledge and experience
  • Wide ranging knowledge of Information Security and IT Security frameworks (NIST CSF, CIS Critical Security Controls, ISO27001 etc.), standards and application of Security best practice
Good to know
  • This role includes hybrid working.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Security Consultant

JR United Kingdom

Cardiff

Remote

GBP 50,000 - 80,000

5 days ago
Be an early applicant

Cyber Security Consultant

JR United Kingdom

Gloucester

Remote

GBP 50,000 - 70,000

11 days ago

Cyber Security Incident Response Consultant

JR United Kingdom

Cardiff

Remote

GBP 55,000 - 85,000

5 days ago
Be an early applicant

Robotic Process Automation Developer

JR United Kingdom

Cardiff

Remote

GBP 45,000 - 65,000

5 days ago
Be an early applicant

Software Implementation Consultant

JR United Kingdom

Cardiff

Remote

GBP 50,000 - 50,000

5 days ago
Be an early applicant

Cyber Security Consultant

JR United Kingdom

West Midlands Combined Authority

Remote

GBP 40,000 - 70,000

5 days ago
Be an early applicant

Cyber Security Pre-Sales Consultant

JR United Kingdom

Cardiff

Remote

GBP 45,000 - 70,000

11 days ago

Cyber Security Consultant

JR United Kingdom

Peterborough

Remote

GBP 50,000 - 80,000

5 days ago
Be an early applicant

Cyber Security Consultant

JR United Kingdom

Southampton

Remote

GBP 50,000 - 80,000

5 days ago
Be an early applicant