- Security Assessments: Conduct in-depth security reviews, risk assessments, and control evaluations for client environments.
- Solution Design: Architect and advise on the implementation of security controls and technologies tailored to specific organisational needs.
- Compliance & Standards: Ensure alignment with key regulatory and security frameworks including ISO 27001, NIST, GDPR, Cyber Essentials, and NIS Directive.
- Incident Response: Develop and deliver incident response plans, guide investigation activities, and run tabletop exercises.
- Security Training: Design and deliver cyber awareness sessions for client teams and internal stakeholders.
- Stakeholder Engagement: Communicate risk and remediation strategies effectively to both technical and non-technical audiences.
- Documentation & Reporting: Produce clear and professional reports, playbooks, and client deliverables articulating findings, priorities, and next steps.
- 3+ years of experience in a cyber security consulting role
- Strong working knowledge of information security risk management, governance, and compliance
- Familiarity with key frameworks such as ISO 27001, NIST, Cyber Essentials, and GDPR
- Proven experience delivering client engagements from start to finish, including stakeholder presentation and technical delivery
- Excellent communication skills, including the ability to write detailed reports and present to senior audiences
- Strong organisational skills with the ability to manage multiple engagements in parallel
- Professional certifications (CISSP, CISM, CEH, or equivalent) are highly desirable