We are seeking an experienced Security Consultant to support organizations in the Critical National Infrastructure (CNI) sector. This contract role will focus on risk management, compliance, and strengthening security postures, with an emphasis on frameworks such as CAF, NIS/NIS2, and ISO 27001.
Key Responsibilities:
Develop and implement security policies and frameworks aligned with CAF, NIS/NIS2, ISO 27001, NIST CSF, and CIS.
Conduct risk assessments and audits to identify vulnerabilities and compliance gaps.
Provide guidance on regulatory compliance for CNI sectors (Energy, Transport, Water, Telecoms, Government).
Assist in incident response planning, supply chain security, and resilience strategies.
Enhance security governance and risk management processes.
Key Requirements:
Experience in GRC, cybersecurity, or consulting within CNI sectors.
Strong knowledge of CAF, NIS/NIS2, ISO 27001, NIST CSF, and risk assessment methodologies.
Familiarity with supply chain and operational technology (OT) security challenges.
Relevant certifications (e.g., CISM, CRISC, CISSP, ISO 27001 Lead Auditor) are a plus.
Seniority level
Mid-Senior level
Employment type
Contract
Job function
Information Technology
Industries
Computer and Network Security, Technology, Information and Media, and Government Administration