Security Governance - Lead Consultant (hybrid/remote)
Security Governance - Lead Consultant (hybrid/remote)

Security Governance - Lead Consultant (hybrid/remote)

London Full-Time 48000 - 72000 £ / year (est.) Home office (partial)
A

At a Glance

  • Tasks: Lead cybersecurity governance projects and mentor team members while ensuring compliance with regulations.
  • Company: Allstate has over 90 years of experience protecting families and innovating in the insurance industry.
  • Benefits: Enjoy flexible working, generous leave, healthcare, pension plans, and discounts on gym memberships.
  • Why this job: Join a diverse team that values your skills and encourages you to challenge the status quo.
  • Qualifications: 5+ years in security/technology audit; knowledge of NIST standards; strong communication skills required.
  • Other info: This role is hybrid/remote, promoting work-life balance and internal career development.

The predicted salary is between 48000 - 72000 £ per year.

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. For more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs.

Your role in the team:

The Security Governance Lead Consultant develops and evaluates compliance with programs, processes, and procedures to mitigate cybersecurity risk and ensure protection of company information and assets; researches and develops interpretations of industry and government regulations, standards, and contract requirements for application to assigned area of operations.

Key responsibilities:

  • Provides leadership and mentoring for less experienced team members on assigned projects and in area of expertise.
  • Reviews and validates with Legal resources and communicates interpretations of regulatory, contract, and industry requirements for business and technical managers for cybersecurity governance and suggests application to assigned area; oversees the creation, organization, and maintenance of required filings and documentation.
  • Performs ongoing and forensic audits of governance process and procedure compliance; tracks metrics, analyzes results, and develops recommendations for changes and enhancements; communicates to business and technical leadership.
  • Works with business and technical leaders to develop governance plan and metrics for assigned area; develops, communicates, and executes programs and processes that provide guidance and promote cybersecurity risk awareness and management in alignment with operational needs.

This job does not have supervisory responsibilities.

Essential Skills:

  • All applicants must demonstrate they have a legal right to work in the UK for employment at Allstate. Allstate is not providing sponsorship for this vacancy.
  • 5+ years of security/technology audit experience, including development of control test plans/scripts.
  • Working knowledge of NIST CSF 2.0 and/or NIST 800.53 rev. 5.
  • Experience in automating control testing processes.
  • Experience managing multiple assignments and projects at once.

Desirable Skills:

  • 8+ years of security/technology audit experience, including development of control test plans/scripts.
  • CISA, CRISC, CISSP, CISM, or other relevant certifications (preferred).
  • Experience communicating effectively with resources of all levels (analyst to executive).
  • Proven experience challenging ideas, asserting your expertise, and being comfortable making recommendations in a professional manner.
  • Experience working in a role that requires strong attention to detail.

Supervisory Responsibilities:

This job does not have supervisory duties.

What we offer:

As Digital DNA’s Workplace of the Year 2020 & 2022 winners, we offer a generous benefits package that includes flexible annual leave entitlement, dental and healthcare insurance, an attractive pension package and discounts on gym memberships, public transport and parking. Allstate invests heavily in your development, as an employee you will have access to multiple world-class learning platforms and courses from our award-winning in-house Learning & Development team. We pride ourselves in providing clear career paths and opportunities for internal mobility allowing you to further develop within the organisation. We encourage a better work-life balance and you’ll have the opportunity to apply for various flexible working arrangements.

Statement on Fair Employment and Equal Opportunities:

Allstate NI wishes to ensure equal opportunity is given to all job applicants. This company will not discriminate on the grounds of race, gender (including gender reassignment status), sexual orientation, religious belief, political opinion, marital status, age or disability. We are an equal opportunities employer. We welcome applications from all suitably qualified persons. However, as women are currently under-represented in our workforce, we would particularly welcome applications from women. All appointments will be made on merit. Applicants should note Allstate NI complete AccessNI background checks on all candidates offered a position.

Security Governance - Lead Consultant (hybrid/remote) employer: Allstate

At Allstate, we foster a collaborative and inclusive work culture that empowers our employees to grow and excel in their careers. With a strong commitment to professional development, we offer access to world-class learning resources and clear career progression paths, all within a flexible environment that prioritises work-life balance. Our generous benefits package, including healthcare, pension plans, and discounts, further enhances the rewarding experience of being part of a company recognised for its dedication to diversity and community impact.
A

Contact Detail:

Allstate Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Security Governance - Lead Consultant (hybrid/remote)

✨Tip Number 1

Familiarise yourself with NIST CSF 2.0 and NIST 800.53 rev. 5, as these are crucial for the role. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to cybersecurity governance.

✨Tip Number 2

Showcase your experience in automating control testing processes. Be prepared to discuss specific examples of how you've implemented automation in past roles, as this is a key aspect of the position.

✨Tip Number 3

Highlight your ability to communicate effectively with various stakeholders, from analysts to executives. Prepare anecdotes that illustrate your experience in conveying complex information clearly and persuasively.

✨Tip Number 4

Emphasise your leadership and mentoring skills, even if you haven't held a supervisory role. Discuss how you've guided less experienced team members or contributed to their professional development in previous positions.

We think you need these skills to ace Security Governance - Lead Consultant (hybrid/remote)

Security and Technology Audit Experience
Development of Control Test Plans/Scripts
Knowledge of NIST CSF 2.0
Knowledge of NIST 800.53 rev. 5
Experience in Automating Control Testing Processes
Project Management Skills
Effective Communication Skills
Attention to Detail
Analytical Skills
Ability to Challenge Ideas and Assert Expertise
Mentoring and Leadership Skills
Compliance and Regulatory Knowledge
Risk Management Skills
Metrics Tracking and Analysis

Some tips for your application 🫡

Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the Security Governance Lead Consultant position. Tailor your application to highlight relevant experience in cybersecurity governance and compliance.

Highlight Relevant Experience: In your CV and cover letter, emphasise your 5+ years of security/technology audit experience. Include specific examples of how you've developed control test plans or automated control testing processes, as these are key aspects of the role.

Showcase Your Skills: Mention any relevant certifications such as CISA, CRISC, CISSP, or CISM. Also, demonstrate your ability to communicate effectively with various stakeholders, as this is crucial for the position.

Craft a Strong Cover Letter: Use your cover letter to express your passion for cybersecurity and your commitment to protecting company information. Discuss how your skills align with Allstate's mission and values, and why you're excited about the opportunity to work with them.

How to prepare for a job interview at Allstate

✨Understand the Role and Responsibilities

Before the interview, make sure you thoroughly understand the key responsibilities of the Security Governance Lead Consultant. Familiarise yourself with compliance programs, cybersecurity risk management, and how to communicate regulatory requirements effectively.

✨Showcase Your Experience

Be prepared to discuss your 5+ years of security or technology audit experience in detail. Highlight specific projects where you've developed control test plans or automated testing processes, as this will demonstrate your expertise and relevance to the role.

✨Prepare for Technical Questions

Expect technical questions related to NIST CSF 2.0 and NIST 800.53 rev. 5. Brush up on these frameworks and be ready to explain how you've applied them in past roles, as well as any challenges you faced and how you overcame them.

✨Demonstrate Leadership and Mentoring Skills

Since the role involves providing leadership and mentoring, think of examples where you've guided less experienced team members. Be ready to discuss your approach to fostering a collaborative environment and how you handle challenging situations professionally.

Security Governance - Lead Consultant (hybrid/remote)
Allstate
A
  • Security Governance - Lead Consultant (hybrid/remote)

    London
    Full-Time
    48000 - 72000 £ / year (est.)

    Application deadline: 2027-06-20

  • A

    Allstate

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>