At a Glance
- Tasks: Assess and improve security controls across cloud environments and applications.
- Company: Join an award-winning tech company with a strong focus on employee wellbeing.
- Benefits: Enjoy flexible working, competitive salary, and generous holiday allowance.
- Other info: Opportunities for career growth and professional development in a supportive environment.
- Why this job: Make a real impact in cybersecurity while working with top global brands.
- Qualifications: Experience in cloud security, application security, and strong consulting skills required.
The predicted salary is between 63000 - 77000 £ per year.
Company Description
Version 1 has celebrated 30 years in business and continues to be trusted by global brands to deliver technology and transformation solutions that drive customer success.
Our deep expertise enables our customers to navigate the rapidly evolving technology landscape.
We foster strong partnerships with global technology leaders including Microsoft, AWS, Oracle, Red Hat, Out Systems, Snowflake, ensuring that our customers are provided with the highest quality solutions and services.
We’re an award‑winning employer reflecting how our employees are at the very heart of what we do:
- UK & Ireland's premier AWS, Microsoft & Oracle partner
- 3300+ strong, €350/£300m revenue business
- 10+ years as a Great Place to Work in Ireland & UK
- Best Workplace for Women in the UK & Ireland by GPTW
- Best Workplace for Wellbeing in the UK by GPTW
We’re a core values driven company, we hire people who share our values, and we reward those who display and foster them, it’s deeply embedded within our DNA.
Invest in us and we’ll invest in you!.
Job Description
We are seeking a hands‑on Security Consultant who can combine deep technical delivery capability with strong client‑facing consulting skills.
The ideal candidate will be comfortable assessing, designing, improving and governing security controls across cloud environments, applications, APIs, infrastructure and enterprise security domains.
This role requires someone who can challenge customer security assumptions, influence stakeholders, and lead difficult but constructive conversations to drive secure outcomes.
Key Responsibilities
- Assess current‑state security maturity, identify control gaps, and define pragmatic remediation roadmaps aligned to business priorities.
- Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains.
- Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements.
- Challenge weak security assumptions with confidence, using evidence‑based recommendations and clear communication with technical and non‑technical stakeholders.
- Design and review secure cloud landing zones, network segmentation, identity models, logging/monitoring patterns, and guardrails.
- Partner with engineering, platform, Dev Ops and operations teams to embed security into delivery pipelines and infrastructure as code practices.
- Support threat detection, incident response readiness, use‑case tuning, and post‑incident improvement activities.
- Contribute to security standards, policies, patterns, reusable accelerators, and client‑facing deliverables including assessments, risk registers and executive summaries.
- Required Hands‑On Experience
- 1. Cloud Security (preferably AWS)
- Hands‑on experience securing cloud environments, preferably AWS, including core services, networking, identity, logging, encryption and security monitoring.
- Experience reviewing or implementing secure cloud architectures, landing zones, account/project structures, and preventative/detective controls.
- Knowledge of cloud‑native security services and best practices for workload, storage, network and platform protection.
- 2. Application / API Security
- Experience identifying and mitigating application and API security risks across the software delivery lifecycle.
- Understanding of secure design principles, common web/API vulnerabilities, authentication/authorization models, secrets management and secure SDLC practices.
- Ability to work with development teams to improve application security posture and shift security left.
- 3. SIEM Experience
- Hands‑on experience with SIEM platforms for log onboarding, correlation rule creation, alert triage, dashboarding and use‑case tuning.
- Ability to improve visibility, reduce noise, and align SIEM content to relevant threats and business risks.
- 4. Organisation / General Security
- Broad understanding of enterprise security domains including policy, governance, risk, compliance, awareness, third‑party risk and operational security.
- Experience translating business and regulatory requirements into practical security controls and improvement plans.
- 5. Identity & Access Management (IAM)
- Hands‑on experience with identity and access management principles including RBAC, least privilege, privileged access, federation/SSO, MFA and access governance.
- Experience reviewing entitlement models, service identities and access control weaknesses across enterprise and cloud platforms.
- 6. Data Protection
- Experience implementing or advising on data classification, encryption, key management, secrets handling, tokenisation/masking, backup security and data lifecycle protection.
- Understanding of how to secure sensitive data in transit, at rest and in use across modern platforms.
- 7. Infrastructure Security
- Experience securing operating systems, virtual machines, containers/Kubernetes, networks and platform services using hardening, segmentation, vulnerability management and secure configuration practices.
- Ability to assess infrastructure risks and recommend practical remediation approaches.
- 8. Threat Detection & Incident Response
- Experience in threat detection engineering, incident triage, investigation support, response coordination and lessons‑learned improvement activities.
- Ability to map telemetry and controls to attack paths, detection scenarios and response playbooks.
- 9. Infrastructure as Code (Ia C)
- Hands‑on experience with infrastructure as code and automation, including reviewing templates/modules for security risks and embedding policy/compliance checks into delivery pipelines.
- Ability to apply security guardrails to repeatable platform provisioning and change delivery.
- 10. Strong Consulting Skills
- Strong consulting and stakeholder management skills, with the confidence to challenge customer assumptions and lead difficult security conversations when needed.
- Ability to balance risk, delivery timelines, business context and technical constraints to provide credible, pragmatic recommendations.
- Strong written and verbal communication skills, including workshops, assessments, reports and executive‑level briefings.
- Core Skills & Competencies
- Cloud security architecture and control design
- Security assessments, gap analysis and remediation planning
- Stakeholder engagement and client advisory
- Security architecture documentation and reporting
- Risk‑based decision making and prioritisation
- Cross‑functional collaboration with engineering, operations and leadership teams
- Strong analytical, investigative and problem‑solving capability
- Preferred Qualifications
- Experience working in consulting, professional services, or customer‑facing transformation programmes.
- Relevant certifications in cloud, security, architecture or incident response are advantageous.
- Exposure to regulated environments and security frameworks is beneficial.
- Experience with Dev Sec Ops, CI/CD security integration and security automation is desirable.
- Additional Information
- Share in our success with our Quarterly Performance‑Related Profit Share Scheme, where employees collectively benefit from a share of the company’s profits.
- Strong Career Progression & mentorship coaching through our Strength in Balance & Leadership schemes with a dedicated quarterly Pathways Career Development programme.
- Flexible/remote working, Version 1 is tremendously understanding of life events and people’s individual circumstances and offers flexibility to help achieve a healthy work life balance.
- Financial Wellbeing initiatives including Pension, Private Healthcare Cover, Life Assurance, Financial advice and an Employee Discount scheme.
- Employee Wellbeing schemes including Gym Discounts, Bike to Work, Fitness classes, Mindfulness Workshops, Employee Assistance Programme and much more.
Generous holiday allowance, enhanced maternity/paternity leave, marriage/civil partnership leave and special leave policies.
- Educational assistance, incentivised certifications, and accreditations, including AWS, Microsoft, Oracle and Red Hat.
- Reward schemes including Version 1’s Annual Excellence Awards & ‘Call‑Out’ platform.
- Environment, Social and Community First initiatives allow you to get involved in local fundraising and development opportunities as part of fostering our diversity, inclusion and belonging schemes.
Version 1 is an equal opportunities employer.
We are committed to building a diverse, inclusive and respectful workplace where everyone feels valued and able to thrive.
We welcome applications from people of all backgrounds, identities and lived experiences, and we value the different perspectives people bring including those shaped by disability and neurodiversity.
We want every candidate to have a positive and accessible recruitment experience.
If you need reasonable adjustments at any stage of the process, please contact your recruiter at Version 1.
We will consider all requests carefully, respectfully and confidentially.
- #LI-SS1
- #J-18808-Ljbffr
Security Consultant employer: 慨正橡扯
At 慨正橡扯, we pride ourselves on being an exceptional employer that champions innovation and collaboration in the field of Behavioral Economics and Retirement Research. Our hybrid working model not only offers flexibility but also nurtures a vibrant work culture where employees are encouraged to grow and develop their skills through meaningful projects and leadership opportunities. Join us in Europe, where your expertise will directly contribute to enhancing investor outcomes and shaping impactful business strategies.
StudySmarter Expert Advice🤫
We think this is how you could land Security Consultant
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including 慨正橡扯, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through 慨正橡扯
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at 慨正橡扯. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Security Consultant
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at 慨正橡扯 insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to 慨正橡扯 that you’re committed to staying ahead in the game.
How to prepare for a job interview at 慨正橡扯
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at 慨正橡扯 to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at 慨正橡扯.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.