Information Security Consultant

Information Security Consultant

Full-Time 70000 - 80000 £ / year (est.) No home office possible
Academia the Technology Group

At a Glance

  • Tasks: Deliver strategic security solutions and improve clients' security posture.
  • Company: Join Smartdesc, a leading tech company transforming IT services.
  • Benefits: Enjoy gym contributions, health plans, flexible hours, and more perks.
  • Other info: Be part of a collaborative culture with growth opportunities.
  • Why this job: Make a real impact in the world of Information Security.
  • Qualifications: Previous consulting experience and knowledge of security frameworks required.

The predicted salary is between 70000 - 80000 £ per year.

As the Smartdesc Information Security Consultant, you will be working with the Information Security team and technical delivery team to deliver security solutions to our customers. You will work with Smartdesc customers providing strategic Information Security guidance, support and roadmaps, driving continuous improvement in their security posture. This will include identifying and overseeing a variety of security projects, including helping our customers to implement security controls, assessing against industry good practice, creating assessment reports to deliver to Senior Leadership Teams and improving organisations' security position.

The role offers a wide range of work, from strategic Information Security governance and risk management to guiding our non-profit customers to get best value from the Microsoft Business Premium, E3 and E5 security offerings. You will also need to be confident presenting security information at all levels, from part-time volunteers to boards. This role will be customer facing requiring a keen eye for detail and proven ability of delivering Information Security good practice.

Key Responsibilities
  • Identifying steps that organisations need to take to improve their security position and creating roadmaps for continuous improvement, often maximising the use of existing Microsoft licensing and supporting them through the process.
  • Alignment of good practice frameworks and standards such as Cyber Essentials, NCSC CAF and ISO 27001.
  • Ownership or oversight of key Information Security processes and procedures.
  • Implementation and ownership of Information Security Risk Management programmes.
  • Identifying and managing remediation actions to reduce risks.
  • Ownership or oversight of Information Security Policies.
  • Development and Implementation of general and role/function specific Information Security Training and Awareness programmes.
  • Raising, investigating and managing or supporting IT Security incidents ensuring any necessary follow up actions.
  • Providing IT security support to business functions including digital teams, IT infrastructure and IT Service Desk.
  • Development and ownership of the Information Security Internal Audit programmes.
  • Oversight of rolling programmes of security tests, reviews and audits.
  • Writing Information Security reports and delivering the findings to key stakeholders.
Person Specification
  • Previous consulting experience is required, preferably to SMEs, non-profits or educational settings.
  • Knowledge and experience with technology, security and DP related compliance, legal & regulatory frameworks and standards, including Cyber Essentials, ISO27001, PCI DSS, OWASP, GDPR etc.
  • Knowledge and experience of the Microsoft stack. Purview experience is beneficial.
  • Ability to demonstrate expert knowledge and understanding of information security good practice.
  • Experience in working with technical and non-technical business personnel at various levels, articulating security risks in a manner appropriate to the stakeholders.
  • Strong attention to detail.
  • Knowledge of Information Security principles and concepts and knowledge of technical security controls.
  • A positive can-do attitude and a self-starter who can work under their own initiative.
  • Information Security certifications such as CISSP or CISM are beneficial as are Microsoft certifications especially from the SC series such as the SC-400/401.

Smartdesc is part of the Academia Group, an innovative and rapidly expanding technology company on a mission to transform IT services for large public and private sector customers. We are a trusted partner for thousands of clients. Our ethos is simple: if we can provide great technology and make it work, we will empower our customers to optimise their investment in technology. Our customers' IT success is our business.

Benefits include:

  • Gym membership contribution
  • Health Cash Plan
  • Increased annual leave with length of service
  • Free annual leave on your birthday
  • Length of service bonus
  • Flexible working hours
  • Hybrid working
  • Free Will Writing service
  • Life Insurance
  • And much more!

Information Security Consultant employer: Academia the Technology Group

Smartdesc is an exceptional employer, offering a dynamic work environment for Information Security Consultants in the London area. With a strong focus on employee growth and a culture of teamwork and innovation, we provide extensive benefits including gym membership contributions, health cash plans, and flexible working hours. Join us to be part of a rapidly expanding technology company that values integrity and ambition while empowering you to make a meaningful impact in the field of Information Security.
Academia the Technology Group

Contact Detail:

Academia the Technology Group Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Information Security Consultant

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the industry. Attend events, join online forums, or even hit up LinkedIn. The more people you know, the better your chances of landing that dream job.

✨Tip Number 2

Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements in Information Security. This gives potential employers a taste of what you can bring to the table.

✨Tip Number 3

Practice makes perfect! Prepare for interviews by doing mock sessions with friends or mentors. Focus on articulating your experience and how it aligns with the role at Smartdesc. Confidence is key!

✨Tip Number 4

Apply through our website! We love seeing candidates who take the initiative. It shows you're genuinely interested in joining the Smartdesc team and ready to make an impact in the world of Information Security.

We think you need these skills to ace Information Security Consultant

Information Security Governance
Risk Management
Cyber Essentials
ISO 27001
GDPR
PCI DSS
OWASP
Microsoft Security Solutions
Technical Security Controls
Incident Management
Stakeholder Communication
Attention to Detail
Information Security Training Development
Consulting Experience
Information Security Certifications (CISSP, CISM)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Information Security Consultant role. Highlight relevant experience, especially in consulting and security frameworks like Cyber Essentials and ISO 27001. We want to see how your skills align with what we do!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how you can contribute to our mission at Smartdesc. Be sure to mention any specific projects or achievements that showcase your expertise.

Showcase Your Communication Skills: As this role involves presenting to various stakeholders, it's crucial to demonstrate your communication skills in your application. Use clear and concise language, and if possible, include examples of how you've effectively communicated complex security concepts in the past.

Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get all the latest updates. Plus, it shows you're keen on joining our team at Smartdesc!

How to prepare for a job interview at Academia the Technology Group

✨Know Your Security Frameworks

Make sure you’re well-versed in key security frameworks like Cyber Essentials, ISO 27001, and NCSC CAF. Be ready to discuss how you've applied these in past roles, as this will show your practical knowledge and ability to align with industry standards.

✨Tailor Your Communication Style

Since you'll be interacting with both technical and non-technical stakeholders, practice explaining complex security concepts in simple terms. This will demonstrate your ability to communicate effectively at all levels, which is crucial for the role.

✨Showcase Your Consulting Experience

Prepare examples from your previous consulting roles, especially those involving SMEs or non-profits. Highlight specific projects where you improved security postures or implemented risk management programmes, as this will resonate with what Smartdesc is looking for.

✨Be Ready for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past incidents you've managed or security challenges you've faced, and be prepared to explain your thought process and actions taken.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>