Enable job alerts via email!

STARA(R) – Enterprise Security Threat and Risk Consultant

Nuclearinst

London

Hybrid

GBP 50,000 - 90,000

Full time

17 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as an Enterprise Security Threat and Risk Consultant, where you will lead advanced threat assessments across multiple domains. This role involves collaborating with diverse stakeholders to shape security strategies in a hybrid threat environment. You'll leverage your expertise in risk analysis and cyber security frameworks to provide actionable insights and recommendations. The company values diversity and fosters an inclusive culture, empowering you to make a real difference while enjoying a flexible work environment. If you're passionate about security and ready to tackle complex challenges, this opportunity is perfect for you.

Benefits

Competitive Pension Scheme
Employee Share Plan
Flexible Health Benefits
Private Health Plans
Shopping Discounts
Annual Incentive

Qualifications

  • 5+ years in security or intelligence roles focusing on risk and threat analysis.
  • Strong knowledge of cyber risk frameworks and ability to apply them.

Responsibilities

  • Lead and support Security Threat and Risk Assessments across various domains.
  • Develop comprehensive risk assessment reports with clear mitigation recommendations.

Skills

Risk Analysis
Threat Assessment
Cyber Security
Critical Thinking
Communication Skills
Counterintelligence
Human Intelligence
Physical Security

Tools

NIST 800-53
ISO/IEC 27001
NCSC CAF

Job description

Location(s): UK, Europe & Africa : UK : Gloucester || UK, Europe & Africa : UK : Guildford || UK, Europe & Africa : UK : Leeds || UK, Europe & Africa : UK : London || UK, Europe & Africa : UK : Manchester

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.

Job Title: STARA(R) – Enterprise Security Threat and Risk Consultant

Location: London – Guildford, Gloucester, London, Manchester, Leeds (Hybrid working)

Grade: GG10-GG13

Referral Bonus: 5000

What You’ll Be Doing

As an Enterprise Security Threat and Risk Consultant, you will lead and deliver advanced threat and risk assessments across physical, personnel, cyber, and governance domains. Working on mission-critical programmes in government, financial, CNI, and defence, your role will shape how organisations understand and manage threats in the context of a hybrid threat environment and evolving adversary tactics. You’ll collaborate with internal and external stakeholders, advise on strategic risk posture, and ensure delivery of high-impact STARA engagements.

Responsibilities

  1. Lead, deliver and support Security Threat and Risk Assessments (STARA) across ICT, Operational Technology, physical, and personnel security.
  2. Analyse threats including cyber, insider, physical and hybrid actors, using counterintelligence and HUMINT principles where relevant.
  3. Evaluate security risk across full-spectrum domains, integrating inputs from technical testing, behavioural analysis, and environmental factors.
  4. Develop and present comprehensive risk assessment reports, including clear recommendations for mitigation and investment.
  5. Apply frameworks such as NIST 800-53, ISO/IEC 27001, and NCSC CAF to assess current controls and identify improvement opportunities.
  6. Contribute to the development of organisational threat models and security postures aligned to national security objectives.
  7. Provide guidance on the implementation of physical and technical security controls based on STARA findings.
  8. Collaborate with cyber, intelligence, and engineering teams to integrate threat-informed risk management.
  9. Lead and mentor high-performing teams, and support the professional growth of junior consultants.

Skills & Experience:

  1. You have at least 5 years’ experience in a security, defence, government, or intelligence role involving risk, threat, or vulnerability analysis.
  2. You understand modern threat landscapes, including hybrid attack vectors and blended threat actors.
  3. You can apply critical thinking to complex and ambiguous environments, making informed decisions under pressure.
  4. You have strong knowledge of cyber risk frameworks (e.g. NIST, ISO27001, NCSC CAF) and experience in applying them.
  5. You’re experienced in one or more of: counterintelligence, human intelligence and security, physical security assessments, operational technology, supply chain security, military platforms assessments, or penetration testing, OSINT, Insider Risk, Security Culture and Behaviour Change.
  6. You’re a confident communicator, able to build trusted relationships and influence senior stakeholders.
  7. You thrive when solving difficult problems and bring structure and clarity to risk management challenges.
  8. You hold or are eligible for high-level security clearance.

The team

We work hard and often go the extra mile, but we recognise people’s efforts and that everyone has a life outside of work. We encourage people to speak up if they want to rotate to a new project.

Benefits

As well as a competitive pension scheme, BAE Systems also offer employee share plan, an extensive range of flexible discounted health, wellbeing and lifestyle benefits including a green care scheme, private health plans and shopping discounts – you may also be eligible for an annual incentive.

Why BAE Systems?

This is a place where you’ll be able to make a real difference. You’ll be part of an inclusive culture which values diversity, rewards integrity and merit, and where you’ll be empowered to fulfil your potential. We welcome candidates from all backgrounds and particularly from sections of the community who are currently under-represented within our industry including women, ethnic minorities, people with disabilities and LGBTQ+ individuals.

We also want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.

Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions such as your nationality, any nationalities which you previously may have held and your place of birth can restrict the roles you are able to perform within the organisation.

All applicants must as a minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.

Life at BAE Systems Digital Intelligence

We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.

By embracing technology, we can interact, collaborate and create together, even when we’re working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.

Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Manager Wholesale IRB Credit Risk Consultant

Carnegie Consulting Limited

Greater London

Remote

GBP 60,000 - 100,000

4 days ago
Be an early applicant

Senior Group Risk Consultant

JR United Kingdom

Greater London

Remote

GBP 40,000 - 80,000

4 days ago
Be an early applicant

Senior Manager, Real World Evidence

JR United Kingdom

London

Remote

GBP 60,000 - 100,000

4 days ago
Be an early applicant

User Experience Researcher

JR United Kingdom

London

Remote

GBP 50,000 - 90,000

Yesterday
Be an early applicant

Head of Risk - Remote (UK/EUR)

Bitfinex

London

Remote

GBP 80,000 - 150,000

2 days ago
Be an early applicant

Head of Governance, Compliance and Risk

DEMENTIA UK

London

Remote

GBP 70,000 - 75,000

8 days ago

Head of Risk - Remote (UK/EUR) | London, UK

Bitfinex

London

Remote

GBP 80,000 - 150,000

8 days ago

User Experience Researcher

Harvey Nash

Greater London

Remote

GBP 50,000 - 80,000

12 days ago

Risk Management Specialist

TN United Kingdom

London

Remote

GBP 40,000 - 70,000

8 days ago