Cyber Security Risk Consultant
Cyber Security Risk Consultant

Cyber Security Risk Consultant

Bristol Full-Time 43200 - 72000 £ / year (est.) No home office possible
Go Premium
Q

Understand and advise on cyber security vulnerability, risks, audit & compliance in a business or operational context and cyber security threat environment

Key Accountabilities

Cyber Risk Advisor/Consultant
1. Create business risk models and associated material, in support of operational cyber security and business planning across a range of different domains or sectors using established frameworks (e.g. NIST, UK Government)
2. Undertake cyber security audit processes in support of operational and business planning activity across a range of different domains or sectors against recognised standards (e.g. ISO27001, UK Government)
3. Undertake cyber security vulnerability analysis to provide a rich picture of organisational maturity and risk exposure to cyber security, in support of operational and business planning activity across a range of different domains or sectors using established frameworks (e.g. NIST, MITRE ATT&CK, UK Government)
4. Identify mitigations for cyber risk in a given business or operational scenario and threat environment
5. Support development of cyber security risk cases in a given business or operational context

Key Capabilities/Knowledge

• Understand relevant NIST frameworks and ISO27001 standards and how to apply in practice
• Knowledge of MITRE ATT&CK
• Understands the impact of cyber risk, security accreditation and certification on business or operational outcomes
• Able to articulate regulatory requirements and devise courses of action to meet these appropriate to the business or operational context.
• Able to devise effective and creative risk mitigation strategies that enhance business outcomes
• Understand cyber risk and mitigations put in place and can provide evidence to help refine risk mitigation approaches
• Able to identify, document and articulate security risk and mitigation approaches, against technology solutions and business processes
• Able to engage and communicate effectively with customers
• Able to engage and communicate effectively with stakeholders at all levels
• Good awareness of digital technology (in particular computer and computer network)
• Awareness of how architects and designers employ the technology to build systems of interest
• Demonstrate good judgement in relation to cyber risk and vulnerability assessment
• Able to articulate evidenced and convincing arguments for recommended courses of action
• Government, defence, CNI market understanding
• Able to work independently and seek guidance on own initiative for unusual or complex situations

Experience & Qualifications

Essential
• STEM degree or equivalent and relevant experience in cyber security role
• Digitally literate (including fluency in Microsoft Office tools)
• Minimum of 2-3 years of experience in security vulnerability, risk, audit & compliance
Desirable
• Experience applying/work to relevant NIST and ISO27001 frameworks and standards in different sectors and domains including defence, wider UK Government, critical national infrastructure.
• Experience guiding successful security audit preparation and outcomes
• Membership of CIISec or equivalent

Role Purpose

Understand and advise on cyber security vulnerability, risks, audit & compliance in a business or operational context and cyber security threat environment

Key Accountabilities

Cyber Risk Advisor/Consultant
1. Create business risk models and associated material, in support of operational cyber security and business planning across a range of different domains or sectors using established frameworks (e.g. NIST, UK Government)
2. Undertake cyber security audit processes in support of operational and business planning activity across a range of different domains or sectors against recognised standards (e.g. ISO27001, UK Government)3. Undertake cyber security vulnerability analysis to provide a rich picture of organisational maturity and risk exposure to cyber security, in support of operational and business planning activity across a range of different domains or sectors using established frameworks (e.g. NIST, MITRE ATT&CK, UK Government)
4. Identify mitigations for cyber risk in a given business or operational scenario and threat environment
5. Support development of cyber security risk cases in a given business or operational context

Key Capabilities/Knowledge

• Understand relevant NIST frameworks and ISO27001 standards and how to apply in practice
• Knowledge of MITRE ATT&CK
• Understands the impact of cyber risk, security accreditation and certification on business or operational outcomes• Able to articulate regulatory requirements and devise courses of action to meet these appropriate to the business or operational context.
• Able to devise effective and creative risk mitigation strategies that enhance business outcomes
• Understand cyber risk and mitigations put in place and can provide evidence to help refine risk mitigation approaches
• Able to identify, document and articulate security risk and mitigation approaches, against technology solutions and business processes
• Able to engage and communicate effectively with customers
• Able to engage and communicate effectively with stakeholders at all levels
• Good awareness of digital technology (in particular computer and computer network)
• Awareness of how architects and designers employ the technology to build systems of interest
• Demonstrate good judgement in relation to cyber risk and vulnerability assessment
• Able to articulate evidenced and convincing arguments for recommended courses of action
• Government, defence, CNI market understanding
• Able to work independently and seek guidance on own initiative for unusual or complex situations

Experience & Qualifications

Essential
• STEM degree or equivalent and relevant experience in cyber security role
• Digitally literate (including fluency in Microsoft Office tools)• Minimum of 2-3 years of experience in security vulnerability, risk, audit & compliance
Desirable
• Experience applying/work to relevant NIST and ISO27001 frameworks and standards in different sectors and domains including defence, wider UK Government, critical national infrastructure.
• Experience guiding successful security audit preparation and outcomes
• Membership of CIISec or equivalent

About the company

79250 Qinetiq is a British multinational defence technology company headquartered in Farnborough, Hampshire, England.

Notice

Talentify is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Talentify provides reasonable accommodations to qualified applicants with disabilities, including disabled veterans. Request assistance at accessibility@talentify.io or 407-000-0000.

Federal law requires every new hire to complete Form I-9 and present proof of identity and U.S. work eligibility.

An Automated Employment Decision Tool (AEDT) will score your job-related skills and responses. Bias-audit & data-use details: www.talentify.io/bias-audit-report . NYC applicants may request an alternative process or accommodation at aedt@talentify.io or 407-000-0000.

#J-18808-Ljbffr

Cyber Security Risk Consultant employer: QinetiQ

Qinetiq is an exceptional employer, offering a dynamic work environment in the heart of Farnborough, Hampshire, where innovation meets defence technology. Employees benefit from a strong culture of collaboration and continuous learning, with ample opportunities for professional growth and development in the rapidly evolving field of cyber security. With a commitment to diversity and inclusion, Qinetiq ensures that every team member's voice is heard, making it a rewarding place to build a meaningful career.
Q

Contact Detail:

QinetiQ Recruiting Team

Cyber Security Risk Consultant
QinetiQ
Location: Bristol
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

Q
  • Cyber Security Risk Consultant

    Bristol
    Full-Time
    43200 - 72000 £ / year (est.)
  • Q

    QinetiQ

    1000-5000
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>