Cyber Security Consultant

Experis - ManpowerGroup

Greater London

On-site

GBP 68,000 - 113,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Experis - ManpowerGroup is seeking a Cyber Security Consultant for Incident and Vulnerability Management. The role operates within a governance framework to align and oversee high-severity incidents and vulnerabilities across multiple suppliers, ensuring evidence-driven risk views and regulatory alignment.

It focuses on governance and coordination rather than hands-on SOC activity, with delivery against standardised processes and clear escalation and reporting to enable BAU handover.

Qualifications

  • Experience in security incident management and vulnerability management.
  • Strong governance knowledge across multi-supplier SIAM environments.
  • Ability to interpret outputs from SOC and vulnerability tooling without ownership.

Responsibilities

  • Governance and process alignment across suppliers for S3/S4 incidents and vulnerabilities.
  • Establish escalation thresholds, reporting, and evidence requirements.
  • Coordinate supplier activities to ensure consistent handling and BAU handover.
  • Provide assurance reporting and transition support to ISMS controls.

Skills

Security incident management
Vulnerability management
Governance & SIAM
Multi-supplier coordination
SOC output interpretation
Incidents lifecycle

Job description

Cyber Security Consultant - Incident and Vulnerability Management

Duration: 30/11/2026
Pay: up to £610 per day (umbrella)

Location: Preston, London or Birmingham UK, Hybrid - 30% office 70% home
CONTRACTOR MUST BE MOD SC CLEARED AND BE A SOLE UK NATIONAL

Role Summary

The Security Incident & Vulnerability Management Consultant operates within the Operational Integrator (OI) function to support the transition to a multi-supplier (SIAM) model within a Defence environment.

The role focuses on understanding, aligning and governing existing high-severity security incident management (S3/S4) and vulnerability management processes across suppliers. Ensuring a consistent, risk-based approach in line with client policy and regulatory requirements, supported by appropriate evidence.

The outcome is a coherent, evidence-driven view of security risk, covering both active incidents and underlying vulnerabilities, with processes standardised and ready for BAU handover.

This is a governance and coordination role, not a hands-on SOC, incident response, or vulnerability remediation function.

Key Responsibilities
  • Governance & Process Alignment
  • Review and align existing supplier processes for:
  • High-severity incident management (S3/S4)
  • Vulnerability management, across suppliers from existing processes

Ensure processes are:

  • Consistent across suppliers
  • Aligned to client policy and regulatory requirements

Establish and govern:

  • Incident severity classification and escalation thresholds
  • Vulnerability prioritisation approaches (e.g. CVSS, KEV, EPSS)
  • Exception and risk acceptance processes
  • Supplier Coordination (SIAM Model)
  • Coordinate multiple suppliers to ensure consistent handling of incidents and vulnerabilities
  • Act as the integration point across suppliers, aligning outputs without redesigning underlying processes into a common model
  • Identify and manage gaps in process maturity, coverage, data quality and Compliance with standards
  • Incident Management (S3/S4 Focus)
  • Govern the lifecycle of high-severity incidents, including escalation, coordination, communication and reporting
  • Ensure suppliers:
  • Detect and evolve incidents appropriately
  • Meet defined escalation and communication expectations
  • Maintain structured incident records
  • Define and agree the required level of visibility from SOC outputs, without requiring direct tooling access
  • Vulnerability Management (SOC-led)
  • Oversee the vulnerability lifecycle from identification through to closure
  • Ensure vulnerabilities are:
  • Prioritised consistently using agreed Client approaches
  • Tracked through remediation or formal risk acceptance

Validate, track and monitor:

  • Remediation timelines and SLA adherence
  • Handling of high risk vulnerabilities, exceptions and waiversIdentify risks relating to:
  • Incomplete asset coverage
  • Obsolescent, legacy or non-patchable systems

Evidence & Assurance

  • Define and align evidence requirements for both:
  • Incident management (event, escalation, response, closure)
  • Vulnerability management (identify, track, remediate, validate)
  • Ensure outputs are
  • Consistent across suppliers
  • Traceable to risks and controls
  • Audit ready
  • Provide assurance that both domains align with ISMS and control requirement
  • Reporting & Transition Support

Support domain-specific reporting for:

  • Major incidents (S3/S4)
  • Vulnerability risk and remediation status
  • Support governance forums with clear, evidence-based reporting
  • Establish a transition baseline that enables a clean handover of processes to BAU without redesign
Key Skills & Experience
Essential
  • Experience in security incident management, vulnerability management, or cyber governance roles
  • Strong understanding of:
  • Incident management lifecycle (detect, respond, recover)
  • Vulnerability lifecycle (identify, prioritise, remediate, validate)
  • Experience working in multi-supplier or SIAM environments
  • Ability to interpret outputs from SOC and vulnerability tooling without direct ownership
Desirable
  • Familiarity with NIST CSF, NCSC or UK Government security guidance
  • Experience in Defence sector or highly regulated environments
  • Exposure to audit, assurance or ISMS processes
  • ITIL alignment
Key Deliverables
  • Standardised and aligned incident and vulnerability management processes
  • Consistent supplier reporting and lifecycle governance
  • Evidence models supporting audit and assurance
  • Established transition baseline for BAU handover
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Consultant - Inside IR35 - SC
Cyber Security Consultant - Inside IR35 - SC

Sanderson Government & Defence • Greater London

Hybrid
GBP 107,000 - 111,000
Cyber Security Consultant
Cyber Security Consultant

Experis • Whitehall

Hybrid
GBP 150,000 - 180,000
Cyber Security Consultant
Cyber Security Consultant

Experis • Preston, Greater London, Birmingham

Hybrid
GBP 111,000 - 116,000
Security Operations Lead
Security Operations Lead

Experis - ManpowerGroup • Preston

On-site
GBP 94,000 - 124,000
Security Operations Lead
Security Operations Lead

Allscreens Nationwide Ltd • Preston

On-site
GBP 96,000 - 109,000
Security Operations Lead -
Security Operations Lead -

Sanderson Government & Defence • Inverness

On-site
GBP 92,000 - 111,000
SC Vulnerability Management Lead CGEMJP00351666
SC Vulnerability Management Lead CGEMJP00351666

Experis - ManpowerGroup • Preston

Hybrid
GBP 101,000 - 129,000
Vulnerability Management Lead
Vulnerability Management Lead

undisclosed • Preston

On-site
GBP 111,000 - 119,000
Vulnerability Management Consultant
Vulnerability Management Consultant

Searchability • Inverness

On-site
GBP 88,000 - 115,000
Security Assurance Specialist
Security Assurance Specialist

Experis - ManpowerGroup • Manchester

Hybrid
GBP 92,000 - 101,000