Security Testing Consultant in London

Security Testing Consultant in London

London Full-Time 30000 - 40000 € / year (est.) Home office (partial)
Boss Consulting

At a Glance

  • Tasks: Drive Security Assurance for digital products in a dynamic MOD transformation programme.
  • Company: Join Capgemini, a leading digital delivery partner for the MOD.
  • Benefits: Competitive pay, hybrid work model, and opportunities for professional growth.
  • Other info: Collaborative environment with a focus on innovation and security education.
  • Why this job: Make a real impact on military digital products while ensuring top-notch security.
  • Qualifications: Experience in security assurance and client-facing roles, especially with MOD standards.

The predicted salary is between 30000 - 40000 € per year.

Location: Bristol or London | Hybrid - 1-2 days per week on client site in Bristol, Bath or London

Duration: 31/03/2027

Total cost to Capgemini: £595 - £615 (Inside IR35)

Role Description:

We are seeking an MOD experienced, senior Client facing Security Consultant to drive the Security Assurance activities for a number of digital products/platforms, being developed as part of a broader MOD business and digital transformation programme for which Capgemini is the Client's prime Digital Delivery Partner. The products/platforms are being deployed on to the MOD's Digital estate (MODCloud) for use by military end users.

You’ll be operating in a cross-Programme role, working collaboratively with the Delivery Managers and Technical Leads/Solution Architects for each of the digital products/platforms being developed, and the key MOD Client stakeholders for them (Project Managers, Service Owners, Senior Responsible Owners (SRO), Information Asset Owners (IAO), JSP453 Case Officers/Service Transition Officers, Technical Assurance/Technical Design Authority).

You’ll be responsible for ensuring that each of the digital products/platforms being developed are appropriately Secure by Design (SbD), compliant with relevant MOD and industry standards, and are adhering to the MOD security assurance requirements at each stage of their product lifecycle, from Design through to Live service/Through Life Support.

Key Responsibilities:

  • Security Assurance
    • Support Secure by Design (SbD) compliance, including threat and risk assessments, architecture and security control reviews, CAAT, DPIAs, ToA, Data Through Life Management, and assurance status tracking.
    • Develop and review SMPs, SyOPs, vulnerability and patch management plans, privacy notices, and terms of use.
    • Support DAR entries, IT health checks (ITHC) or SAST/DAST testing where applicable, remediation action plans, and MODCERT reporting using Vigilant.
  • Wider MOD Assurance
    • Support JSP 453 compliance, including PEF and TRRA responses.
    • Engage with JSP453 rule owners and Security Transition Officers/Case Officers to secure approvals and sign-off.
  • Security Planning and Risk Management
    • Ensure Security Assurance activities are appropriately documented in Delivery Plans (working with Delivery Managers).
    • Maintain RAID inputs and tracking and assist with identification and escalation of security risks.
  • Cyber Security Governance
    • Support internal and external cyber security audits.
  • Design & Delivery Support
    • Contribute to security requirements definition (principles, functional and non-functional requirements) within an Agile SDLC.
    • Support access control design, configuration, and security test script development.
  • Specialist Assurance
    • Support NCSC Bulk Data Assessments where bulk data is in scope.
    • Support Secure Software Development Lifecycle (SSDLC) management when required.
  • Education & Awareness
    • Promote Secure by Design through cyber security education and awareness across delivery teams.

Key Skills and Experience:

Essential:

  • Proven experience as a Client facing Security Assurance Consultant/Coordinator/Security Manager, or similar role.
  • UK MOD Delivery experience, including experience of delivering across the Government Digital Services (GDS) lifecycle, and managing assurance activities to MOD’s Secure by Design (SbD), JSP 453 (or earlier JSP 604), and JSP 440 standards.
  • Experience working with distributed or hybrid teams.
  • Demonstrated ability to work across cross-functional teams.
  • Excellent facilitation, communication, and stakeholder management skills.
  • Experience managing security risks, issues, and dependencies.
  • Familiarity with Agile delivery tools Jira, Confluence.

Highly Desirable:

  • Experience managing the Security Assurance aspects of digital products deployed onto the MOD Digital estate (MODCloud).
  • Background in secure digital product design and development, software engineering, data, or transformation projects.
  • Security Certifications.

Security Testing Consultant in London employer: Boss Consulting

Capgemini is an exceptional employer, offering a dynamic work environment in Bristol or London where innovation meets security. With a strong focus on employee growth and development, we provide opportunities for our team members to engage in meaningful projects that support the MOD's digital transformation. Our hybrid work model promotes a healthy work-life balance, while our commitment to Secure by Design principles ensures that you will be at the forefront of cutting-edge security practices.

Boss Consulting

Contact Detail:

Boss Consulting Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Testing Consultant in London

Tip Number 1

Network like a pro! Get out there and connect with people in the industry. Attend meetups, webinars, or even just grab a coffee with someone who works in security assurance. You never know who might have the inside scoop on job openings!

Tip Number 2

Show off your skills! Create a portfolio or a personal website where you can showcase your past projects and achievements. This is a great way to demonstrate your expertise in security assurance and make a lasting impression on potential employers.

Tip Number 3

Prepare for interviews like it’s game day! Research the company and the role thoroughly, and be ready to discuss how your experience aligns with their needs. Practice common interview questions and think of examples that highlight your skills in security assurance.

Tip Number 4

Don’t forget to apply through our website! We’ve got loads of opportunities waiting for you, and applying directly can sometimes give you an edge. Plus, it’s super easy to keep track of your applications this way!

We think you need these skills to ace Security Testing Consultant in London

Security Assurance
Secure by Design (SbD)
Threat and Risk Assessments
Architecture and Security Control Reviews
Vulnerability and Patch Management
JSP 453 Compliance
Cyber Security Governance

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Security Assurance role. Highlight your experience with MOD standards and any relevant security certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about security assurance and how your background makes you a perfect fit for the role. Don't forget to mention your experience with Agile delivery tools like Jira and Confluence.

Showcase Your Client-Facing Skills:Since this role involves working closely with clients, make sure to highlight your client-facing experience. Share examples of how you've successfully managed stakeholder relationships and facilitated communication in past roles.

Apply Through Our Website:We encourage you to apply through our website for a smoother application process. It helps us keep track of your application and ensures you don't miss out on any important updates from us!

How to prepare for a job interview at Boss Consulting

Know Your Security Standards

Make sure you brush up on the MOD's Secure by Design (SbD) principles and JSP 453 standards. Being able to discuss these in detail will show that you're not just familiar with them, but that you can apply them in real-world scenarios.

Showcase Your Client-Facing Skills

Since this role involves a lot of interaction with clients and stakeholders, prepare examples of how you've successfully managed client relationships in the past. Highlight your communication skills and how you've facilitated discussions to drive security assurance activities.

Demonstrate Cross-Functional Collaboration

Be ready to talk about your experience working with cross-functional teams. Share specific instances where you collaborated with Delivery Managers or Technical Leads to ensure security compliance throughout the product lifecycle.

Prepare for Scenario-Based Questions

Expect questions that ask you to solve hypothetical security challenges. Think through potential risks and how you would address them, especially in relation to Agile delivery and security governance. This will help you showcase your problem-solving skills effectively.