At a Glance
- Tasks: Lead security management processes and develop an Information Security Management System.
- Company: Join a dynamic team focused on high-profile, impactful security services.
- Benefits: Enjoy fully remote work with flexible hours and competitive pay.
- Why this job: Make a difference in information security while working with cutting-edge frameworks.
- Qualifications: Experience in cyber security and relevant certifications like CISSP or ISO27001 required.
- Other info: Candidates must be eligible for SC clearance; start before clearance may be possible.
The predicted salary is between 60000 - 84000 £ per year.
Location: Fully Remote (UK-based candidates)
Contract Type: Contract – 3 to 6 months
Day Rate: £790 per day (inside IR35) via Umbrella company
Clearance: Candidates must be eligible for SC (Security Clearance) or hold active SC clearance. Subject to client approval, candidates may be permitted to start the role prior to clearance being fully completed.
Role Overview: We are seeking a highly experienced Senior Information Assurance Consultant to lead the development and implementation of security management processes for a new, high-profile service. This role will be instrumental in establishing and integrating a comprehensive Information Security Management System (ISMS) aligned with multiple industry standards and frameworks. This is a fully remote position, offering flexibility while working on a critical and impactful programme. As the role involves working with sensitive information, eligibility for SC clearance or holding active SC clearance is essential.
Key Responsibilities:
- Lead the design and implementation of security management processes for a new service offering.
- Develop and maintain a unified ISMS aligned with ISO/IEC 27001, NIST, PRISMA, and CoBIT frameworks.
- Conduct gap analyses and risk assessments to ensure compliance with relevant security standards and regulatory requirements.
- Collaborate with stakeholders across technical and business teams to embed security best practices throughout the service lifecycle.
- Provide expert guidance on information assurance, governance, and risk management strategies.
- Support audit and certification activities, ensuring documentation and controls are in place and effective.
Essential Skills & Experience:
- Proven experience in information assurance, cyber security, or risk management roles.
- Strong knowledge and practical experience with ISO27001, NIST, PRISMA, and CoBIT frameworks.
- Demonstrated ability to design and implement ISMS in complex, multi-stakeholder environments.
- Excellent communication and stakeholder engagement skills.
- Relevant certifications such as CISSP, CISM, ISO27001 Lead Implementer/Auditor, or equivalent.
- Eligibility for SC clearance or active SC clearance is required.
Contact Detail:
Undisclosed Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Information Assurance Consultant
✨Tip Number 1
Network with professionals in the information assurance and cyber security fields. Attend relevant webinars, conferences, or local meetups to connect with others who may have insights into the role or even know about opportunities at StudySmarter.
✨Tip Number 2
Familiarise yourself with the specific frameworks mentioned in the job description, such as ISO/IEC 27001 and NIST. Consider joining online forums or groups where these topics are discussed to deepen your understanding and show your commitment to the field.
✨Tip Number 3
Prepare to discuss your previous experience in designing and implementing ISMS during interviews. Think of specific examples where you successfully led projects or collaborated with stakeholders, as this will demonstrate your capability for the role.
✨Tip Number 4
Since SC clearance is essential, ensure you understand the process and requirements for obtaining it. If you already hold active clearance, be ready to highlight this in conversations, as it can set you apart from other candidates.
We think you need these skills to ace Senior Information Assurance Consultant
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in information assurance, cyber security, and risk management. Emphasise your familiarity with ISO27001, NIST, PRISMA, and CoBIT frameworks, as these are crucial for the role.
Craft a Compelling Cover Letter: Write a cover letter that specifically addresses the key responsibilities of the role. Discuss your previous experience in leading security management processes and how you have successfully implemented ISMS in past roles.
Highlight Relevant Certifications: Clearly list any relevant certifications such as CISSP, CISM, or ISO27001 Lead Implementer/Auditor in your application. These credentials are essential for demonstrating your expertise and eligibility for the position.
Showcase Communication Skills: Since excellent communication and stakeholder engagement skills are vital for this role, provide examples in your application of how you've effectively collaborated with technical and business teams in previous positions.
How to prepare for a job interview at Undisclosed
✨Showcase Your Expertise
Make sure to highlight your extensive experience in information assurance and cyber security. Be prepared to discuss specific projects where you've successfully implemented ISMS or worked with frameworks like ISO27001 and NIST.
✨Understand the Frameworks
Familiarise yourself with the key frameworks mentioned in the job description, such as PRISMA and CoBIT. Be ready to explain how you have applied these frameworks in past roles and how they can benefit the new service offering.
✨Demonstrate Stakeholder Engagement
Prepare examples of how you've collaborated with various stakeholders in previous positions. Effective communication is crucial, so be ready to discuss how you’ve engaged technical and business teams to embed security best practices.
✨Be Ready for Compliance Questions
Since the role involves compliance with security standards, expect questions about conducting gap analyses and risk assessments. Prepare to discuss your approach to ensuring compliance and how you handle audit and certification activities.