At a Glance
- Tasks: Lead security audits and risk assessments to enhance IT security across diverse environments.
- Company: Join a global leader in workforce solutions committed to inclusivity and innovation.
- Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
- Other info: Dynamic role with excellent career advancement opportunities.
- Why this job: Make a real impact on security while working with cutting-edge technologies.
- Qualifications: Strong understanding of information security principles and risk management.
The predicted salary is between 60000 - 80000 £ per year.
AMS is a global workforce solutions partner committed to creating inclusive, dynamic, and future-ready workplaces. We help organisations adapt, grow, and thrive in an ever-evolving world by building, shaping, and optimising diverse talent strategies. Our Contingent Workforce Solution (CWS) is one way we support our clients. Acting as an extension of their recruitment teams, we connect them with skilled interim and temporary professionals, fostering workplaces where everyone can contribute and succeed.
On behalf of our globally respected client who develop cutting-edge technologies that deliver clean, safe and competitive solutions to meet the planet's vital power needs, we are looking for a Security Auditor & Risk Assessor for a 12 month contract based in Derby. Please note this role is a hybrid position in which you would be required to work onsite 3 days per week and work from home 2 days per week.
Purpose of the role: You will lead and perform independent security audits and risk assessments to identify vulnerabilities, control weaknesses, and policy non-compliance across IT systems, applications, and third-party environments, whilst evaluating risk exposure and partnering with stakeholders to develop and implement remediation plans that strengthen the organisation's overall security posture.
What you'll do: Reporting into the Security team, you will:
- Support the VP Digital Risk & Compliance in defining and delivering a risk-based audit and assessment programme across IT systems, business units, supply chain partners, and third-party providers.
- Conduct comprehensive security audits and risk assessments, evaluating control effectiveness, identifying gaps, and assessing risk exposure.
- Produce clear, timely audit and risk assessment reports, including risk ratings and prioritised recommendations.
- Develop and agree risk treatment and remediation plans with system and business owners to mitigate identified risks.
- Analyse audit and assessment outputs to identify systemic risks and trends, driving improvements in policy, processes, controls, and technology.
- Present findings, risk insights, and recommendations to senior stakeholders in a clear and compelling manner.
- Support the development and enhancement of Information Security policies, standards, and procedures aligned to recognised frameworks (e.g., ISO 27000).
The skills you'll need:
- Strong understanding of information security principles, risk management, and audit methodologies.
- Knowledge of enterprise IT systems, applications, security practices, security controls and architectures.
- Familiarity with recognised cyber security frameworks and standards (e.g., ISO 27000, NIST, NIS2, CIS), including their application in audit and risk assessment contexts.
- Desirable but not essential, familiarity with EASA Part-IS regulation and associated requirements.
- Ability to assess and articulate risk clearly, with experience in risk-based decision-making approaches.
- Excellent communication and stakeholder engagement skills, with the ability to influence outcomes.
- Broad IT security knowledge supported by relevant certifications or experience.
- Awareness of cloud technologies and risk considerations in enterprise environments.
- Proactive mindset with willingness to learn and contribute to wider compliance domains such as Product Safety, Data Privacy, and Export Control.
Desirable Qualifications:
- Degree or MSc in Information Security (or equivalent).
- CISSP, CISM, CRISC, or equivalent.
- ISO 27001 Lead Implementer / Lead Auditor.
- Experience with Microsoft Azure or other cloud platforms.
Next steps: We will only accept workers operating via an Umbrella or PAYE engagement model. If you are interested in applying for this position and meet the criteria outlined above, please click the link to apply and we will contact you with an update in due course.
Security Auditor & Risk Assessor in Derby employer: Alexander Mann Solutions - Contingency
AMS is an exceptional employer that prioritises inclusivity and dynamic work environments, making it an ideal place for professionals seeking meaningful careers. With a hybrid working model in Derby, employees benefit from a balanced work-life integration while engaging in impactful projects that enhance security and risk management across cutting-edge technologies. The company fosters a culture of growth, offering opportunities for professional development and collaboration with industry leaders, ensuring that every team member can thrive and contribute to vital global solutions.
Contact Details:
Alexander Mann Solutions - Contingency Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Security Auditor & Risk Assessor in Derby
✨Get Engaged in Cybersecurity Communities
Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like Alexander Mann Solutions - Contingency.
✨Showcase Your Skills Publicly
Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.
✨Stay On Top of Temp Opportunities
Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like Alexander Mann Solutions - Contingency.
✨Make Contact with Recruiters Specialising in Cybersecurity
Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like Alexander Mann Solutions - Contingency.
We think you need these skills to ace Security Auditor & Risk Assessor in Derby
Some tips for your application 🫡
Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives Alexander Mann Solutions - Contingency a clear view of your capabilities right off the bat.
Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.
Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at Alexander Mann Solutions - Contingency; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!
Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at Alexander Mann Solutions - Contingency.
How to prepare for a job interview at Alexander Mann Solutions - Contingency
✨Brush Up on Technical Skills
Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with Alexander Mann Solutions - Contingency for the Security Auditor & Risk Assessor, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.
✨Show Your Problem-Solving Prowess
Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!
✨Demonstrate Your Adaptability
As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at Alexander Mann Solutions - Contingency.
✨Bring Relevant Certifications
If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the Security Auditor & Risk Assessor role at Alexander Mann Solutions - Contingency.