Information Security & SOC Consultant

Information Security & SOC Consultant

Full-Time 70000 - 80000 £ / year (est.) No working from home possible
Academia Ltd t/a Smartdesc

At a Glance

  • Tasks: Deliver strategic security solutions and improve clients' security posture.
  • Company: Join a forward-thinking company focused on information security.
  • Benefits: Enjoy gym contributions, health plans, hybrid work, and extra annual leave.
  • Other info: Dynamic role with opportunities for professional growth and development.
  • Why this job: Make a real impact in the world of information security while working with diverse clients.
  • Qualifications: Experience in information security and strong communication skills are essential.

The predicted salary is between 70000 - 80000 £ per year.

Based: Field-based, predominantly in the London area

Type: Full-time

Salary: £70-80k

Eligibility: You must be eligible to work in the UK

About the Role

As the Smartdesc Information Security Consultant, you will be working with the Information Security team and technical delivery team to deliver security solutions to our customers. You will work with Smartdesc customers providing strategic Information Security guidance, support and roadmaps, driving continuous improvement in their security posture. This will include identifying and overseeing a variety of security projects, including helping our customers to implement security controls, assessing against industry good practice, creating assessment reports to deliver to Senior Leadership Teams and improving organisations' security position. The role offers a wide range of work, from strategic Information Security governance and risk management to guiding our non-profit customers to get best value from the Microsoft Business Premium, E3 and E5 security offerings. You will also need to be confident presenting security information at all levels, from part-time volunteers to boards. This role will be customer facing requiring a keen eye for detail and proven ability of delivering Information Security good practice.

You will be responsible for:

  • Identifying steps that organisations need to take to improve their security position and creating roadmaps for continuous improvement, often maximising the use of existing Microsoft licensing and supporting them through the process.
  • Alignment of good practice frameworks and standards such as Cyber Essentials, NCSC CAF and ISO 27001.
  • Ownership or oversight of key Information Security processes and procedures.
  • Ownership of the Smartdesc MDR management service.
  • Implementation and ownership of Information Security Risk Management programmes.
  • Identifying and managing remediation actions to reduce risks.
  • Ownership or oversight of Information Security Policies.
  • Development and Implementation of general and role/function specific Information Security Training and Awareness programmes.
  • Raising, investigating and managing or supporting IT Security incidents ensuring any necessary follow up actions.
  • Providing IT security support to business functions including digital teams, IT infrastructure and IT Service Desk.
  • Development and ownership of the Information Security Internal Audit programmes.
  • Oversight of rolling programmes of security tests, reviews and audits.
  • Writing Information Security reports and delivering the findings to key stakeholders.

Key Skills:

  • Knowledge and experience with technology, security and DP related compliance, legal & regulatory frameworks and standards, including Cyber Essentials, ISO27001, PCI DSS, OWASP, GDPR etc.
  • Knowledge and experience of the Microsoft stack. Purview experience is beneficial.
  • Ability to demonstrate expert knowledge and understanding of information security good practice.
  • Experience in working with technical and non-technical business personnel at various levels, articulating security risks in a manner appropriate to the stakeholders.
  • Strong attention to detail.
  • Knowledge of Information Security principles and concepts and knowledge of technical security controls.
  • Previous consulting experience to SMEs, non-profits or educational settings would be preferred.
  • A positive can-do attitude and a self-starter who can work under their own initiative.
  • Information Security certifications such as CISSP or CISM are beneficial as are Microsoft certifications especially from the SC series such as the SC-400/401.

Benefits:

  • Gym membership contribution
  • Health Cash Plan
  • Increased annual leave with length of service
  • Free annual leave on your birthday
  • Length of service bonus
  • Hybrid working
  • Free Will Writing service
  • And more!

Information Security & SOC Consultant employer: Academia Ltd t/a Smartdesc

At Academia Ltd t/a Smartdesc, we pride ourselves on being an excellent employer that fosters a collaborative and innovative work culture. Our London-based team enjoys flexible hybrid working arrangements, comprehensive professional development opportunities, and the chance to make a meaningful impact in the field of Information Security. Join us to be part of a supportive environment where your expertise is valued and your growth is encouraged.

Academia Ltd t/a Smartdesc

Contact Details:

Academia Ltd t/a Smartdesc Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Information Security & SOC Consultant

Tip Number 1

Network like a pro! Get out there and connect with folks in the Information Security field. Attend meetups, webinars, or even local events in London. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements in Information Security. This is a great way to demonstrate your expertise and make a lasting impression on potential employers.

Tip Number 3

Prepare for interviews by practising common questions related to Information Security. Think about how you would explain complex concepts to non-technical stakeholders. We want you to shine when it comes to presenting your knowledge!

Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive and engaged with our company.

We think you need these skills to ace Information Security & SOC Consultant

Information Security Governance
Risk Management
Cyber Essentials
ISO 27001
PCI DSS
OWASP
GDPR

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Information Security & SOC Consultant role. Highlight relevant experience and skills that match the job description, especially your knowledge of security frameworks like Cyber Essentials and ISO 27001.

Craft a Compelling Cover Letter:Your cover letter should tell us why you're the perfect fit for this role. Share specific examples of how you've improved security postures in previous roles and your experience working with both technical and non-technical teams.

Showcase Your Certifications:If you have any relevant certifications like CISSP or CISM, make sure to mention them prominently. These can really set you apart from other candidates and show us your commitment to the field of Information Security.

Apply Through Our Website:We encourage you to apply through our website for a smoother application process. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates!

How to prepare for a job interview at Academia Ltd t/a Smartdesc

Know Your Security Frameworks

Make sure you brush up on key security frameworks like Cyber Essentials, ISO 27001, and GDPR. Be ready to discuss how you've applied these in past roles or how you would implement them in a new environment.

Showcase Your Communication Skills

Since this role involves presenting to various stakeholders, practice explaining complex security concepts in simple terms. Think of examples where you've successfully communicated security risks to non-technical audiences.

Demonstrate Your Problem-Solving Skills

Prepare to discuss specific security challenges you've faced and how you overcame them. Highlight your ability to create actionable roadmaps for improving security posture, especially in a customer-facing context.

Be Ready for Scenario Questions

Expect scenario-based questions that test your knowledge and decision-making skills. Think about how you would handle IT security incidents or develop training programmes, and be prepared to share your thought process.