Job Search and Career Advice Platform

Enable job alerts via email!

Security Consultant

Stott and May

Greater London

On-site

GBP 80,000 - 100,000

Full time

30+ days ago

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

An established industry player is looking for a skilled Security Consultant to enhance security postures in the Critical National Infrastructure sector. This exciting contract role involves developing security policies, conducting risk assessments, and ensuring compliance with frameworks like ISO 27001 and NIS2. The ideal candidate will possess a strong background in cybersecurity and GRC, along with relevant certifications. Join a forward-thinking organization dedicated to improving security governance and resilience strategies. If you are passionate about making a difference in the security landscape, this opportunity is for you!

Qualifications

  • Experience in GRC, cybersecurity, or consulting within CNI sectors.
  • Strong knowledge of risk assessment methodologies and security frameworks.

Responsibilities

  • Develop and implement security policies aligned with compliance frameworks.
  • Conduct risk assessments and audits to identify vulnerabilities.

Skills

GRC
cybersecurity
risk assessment
regulatory compliance
incident response planning

Education

Relevant certifications (e.g., CISM, CRISC, CISSP)

Tools

CAF
NIS/NIS2
ISO 27001
NIST CSF
CIS
Job description

Job Title: Security Consultant (SC Cleared)

Start: ASAP

Duration: 6-12 months

* Candidates must hold an active SC Clearance *

About the Role:

We are seeking an experienced Security Consultant to support organizations in the Critical National Infrastructure (CNI) sector. This contract role will focus on risk management, compliance, and strengthening security postures, with an emphasis on frameworks such as CAF, NIS/NIS2, and ISO 27001.

Key Responsibilities:
  1. Develop and implement security policies and frameworks aligned with CAF, NIS/NIS2, ISO 27001, NIST CSF, and CIS.
  2. Conduct risk assessments and audits to identify vulnerabilities and compliance gaps.
  3. Provide guidance on regulatory compliance for CNI sectors (Energy, Transport, Water, Telecoms, Government).
  4. Assist in incident response planning, supply chain security, and resilience strategies.
  5. Enhance security governance and risk management processes.
Key Requirements:
  1. Experience in GRC, cybersecurity, or consulting within CNI sectors.
  2. Strong knowledge of CAF, NIS/NIS2, ISO 27001, NIST CSF, and risk assessment methodologies.
  3. Familiarity with supply chain and operational technology (OT) security challenges.
  4. Relevant certifications (e.g., CISM, CRISC, CISSP, ISO 27001 Lead Auditor) are a plus.
Seniority level

Mid-Senior level

Employment type

Contract

Job function

Information Technology

Industries

Computer and Network Security, Technology, Information and Media, and Government Administration

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.