Cyber Security Consultant - Risk Advisory / GRC
Cyber Security Consultant - Risk Advisory / GRC

Cyber Security Consultant - Risk Advisory / GRC

City of London Full-Time 43200 - 72000 £ / year (est.) No home office possible
5

At a Glance

  • Tasks: Lead and manage diverse cyber security projects, enhancing clients' security postures.
  • Company: Join a fast-growing, inclusive cybersecurity consulting firm that values your expertise.
  • Benefits: Enjoy flexible remote work, generous training budgets, and a collaborative culture.
  • Why this job: Experience rapid career growth in a dynamic environment, far from corporate rigidity.
  • Qualifications: 2+ years in information security consulting with GRC frameworks experience required.
  • Other info: Opportunity to mentor and uplift team capabilities while working on impactful projects.

The predicted salary is between 43200 - 72000 £ per year.

Join a fast-growing, inclusive, and collaborative cybersecurity consulting firm where your expertise is valued and your career can thrive! Our client, a specialised Cyber Security Consulting firm, is expanding rapidly. They’re looking for an ambitious and driven Senior Cyber Security Consultant to join their Cyber GRC Risk Advisory team.

About the role: As a Senior Cyber Security Consultant, you’ll play a key role in Governance, Risk, and Compliance (GRC), helping clients across a number of sectors strengthen their security posture. You’ll work with industry-leading frameworks like Cyber Essentials (CE), Cyber Essentials Plus (CE+), NIST 2, ISO 27001/223001, DORA, and more. This is the perfect opportunity if you’re looking for more autonomy, rapid career growth, and a dynamic environment—far from the rigid structures of large corporate consultancies.

As a Senior Cyber Security Consultant, what will you be doing?

  • Offer consultancy services to a wide range of clients with varying needs across different industries and regions. This may involve working as part of a team or taking the lead on projects. The role is expected to independently manage small to medium-sized engagements, collaborating with senior and principal consultants as needed.
  • Lead and contribute to diverse security projects, including third-party risk management, mergers and acquisitions, security policy development, ISO 27001 implementation, audits and compliance (NIS 2, DORA), risk assessments, remediation programs, and more.
  • Lead, manage, and deliver full cyber security engagements end-to-end, including preparing for and conducting Cyber Essentials Plus assessments, advising on required technical controls, and assisting with any required external audits.
  • Support clients in establishing and enhancing third-party and supplier risk management processes, conducting maturity assessments, and advising on industry best practices.
  • Identify target security operating models and maturity, helping senior client management to define and transform their security postures.
  • Collaborate internally to strengthen and expand consulting capabilities in line with industry trends and client needs.

What You Bring as a Senior Cyber Security Consultant:

  • 2+ years of information security consulting experience of Governance, Risk, and Compliance (GRC) frameworks such as ISO 27001, ISO 223001, NIST, DORA and other regulatory standards.
  • Experience conducting Cyber Essentials and Cyber Essentials Plus assessments and guiding clients through the certification process, with a strong understanding of the technical and governance requirements.
  • Experience with risk assessments, gap analyses, and creating security operating models tailored to client needs.
  • Confidence in client-facing roles, delivering actionable insights and security advice to stakeholders at all levels.
  • A commitment to knowledge sharing, with the ability to mentor and uplift team capabilities.
  • Excellent communication skills, with the ability to clearly explain and document concepts and solutions for both technical and non-technical audiences.
  • Strong adaptability to juggle multiple projects simultaneously while ensuring client needs and deadlines are met.

What’s in It for You?

  • Flexible Working – Mostly remote with occasional client-site visits. Office available for those who prefer hybrid working.
  • Training & Certifications – Generous annual training budget to support your professional development.
  • Collaborative Culture – Work in a diverse, supportive and fun environment with networking opportunities and access to industry events.

Ready for the next step in your Cyber Security career? Apply now to join an innovative team shaping the future of cyber risk advisory!

Cyber Security Consultant - Risk Advisory / GRC employer: 55 Exec Search

Join a dynamic and rapidly expanding cybersecurity consulting firm that prioritises inclusivity and collaboration, offering you the chance to thrive in your career as a Senior Cyber Security Consultant. With flexible working arrangements, a generous training budget for professional development, and a supportive culture that encourages knowledge sharing and networking, this is an excellent opportunity for those seeking autonomy and meaningful work in the field of Governance, Risk, and Compliance.
5

Contact Detail:

55 Exec Search Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Consultant - Risk Advisory / GRC

✨Tip Number 1

Familiarise yourself with the specific GRC frameworks mentioned in the job description, such as ISO 27001 and NIST. Being able to discuss these frameworks confidently during your interview will demonstrate your expertise and readiness for the role.

✨Tip Number 2

Network with professionals in the cybersecurity field, especially those who work in GRC roles. Attend industry events or webinars to make connections and gain insights that could help you stand out as a candidate.

✨Tip Number 3

Prepare to discuss real-world examples of how you've successfully managed risk assessments or compliance projects in the past. This will showcase your practical experience and problem-solving skills, which are crucial for this position.

✨Tip Number 4

Showcase your adaptability by being ready to discuss how you've handled multiple projects simultaneously. Highlighting your ability to manage competing priorities will resonate well with the dynamic nature of the role.

We think you need these skills to ace Cyber Security Consultant - Risk Advisory / GRC

Governance, Risk, and Compliance (GRC) expertise
ISO 27001 and ISO 22301 knowledge
NIST framework familiarity
Cyber Essentials and Cyber Essentials Plus assessment experience
Risk assessment and gap analysis skills
Security policy development
Third-party risk management
Client-facing communication skills
Ability to deliver actionable insights
Project management capabilities
Technical understanding of security controls
Mentoring and knowledge sharing
Adaptability to manage multiple projects
Strong documentation skills for technical and non-technical audiences

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in Cyber Security, particularly in Governance, Risk, and Compliance (GRC) frameworks like ISO 27001 and NIST. Use specific examples to demonstrate your expertise in conducting assessments and managing projects.

Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for Cyber Security and your understanding of the role. Mention your experience with Cyber Essentials and how you can contribute to the firm's growth and client success.

Highlight Soft Skills: In your application, emphasise your communication skills and adaptability. Provide examples of how you've successfully managed multiple projects or mentored team members, as these are key attributes for the role.

Showcase Continuous Learning: Mention any relevant training or certifications you have completed, especially those related to Cyber Security. This demonstrates your commitment to professional development and staying updated with industry trends.

How to prepare for a job interview at 55 Exec Search

✨Showcase Your GRC Knowledge

Make sure to brush up on your understanding of Governance, Risk, and Compliance frameworks like ISO 27001 and NIST. Be prepared to discuss how you've applied these in past roles, as this will demonstrate your expertise and relevance to the position.

✨Prepare for Technical Questions

Expect questions related to Cyber Essentials and Cyber Essentials Plus assessments. Be ready to explain the technical controls required for compliance and share any experiences you have guiding clients through certification processes.

✨Demonstrate Client-Facing Skills

Since the role involves delivering insights to stakeholders, practice articulating complex security concepts in a clear and concise manner. Think of examples where you've successfully communicated with both technical and non-technical audiences.

✨Highlight Adaptability and Project Management

The ability to juggle multiple projects is crucial. Prepare to discuss specific instances where you've managed various engagements simultaneously, ensuring client needs were met while maintaining high standards of work.

Cyber Security Consultant - Risk Advisory / GRC
55 Exec Search
5
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>