At a Glance
- Tasks: Join our Security Assurance Team to manage risks and deliver secure solutions.
- Company: We are a leading firm in cyber security, dedicated to protecting vital information.
- Benefits: Earn Β£600-Β£700 per day with flexible working options and a dynamic team environment.
- Why this job: Make a real impact on security culture while collaborating with top professionals in the field.
- Qualifications: Must hold current DV level security clearance; experience in cyber security assurance is essential.
- Other info: This role offers a chance to work on exciting projects for 6 months or more.
As Cyber Security Assurance Consultant / IA Consultant, you will be part of the Security Assurance Team (SAT), providing risk management and assurance of programme artefacts. The role principally includes being a security manager on programmes of work, collaborating across enterprises to produce end-to-end security solutions. Additional responsibilities will include the delivery of security training and content and supporting the promotion of a positive security culture.
The role requires close collaboration with Security Architects, Testers, Engineers, and senior stakeholders to achieve the balance between delivering security assured products and supporting speed of delivery. You will report to the Security Lead, and your day-to-day work will be managed by the allocated team Scrum Master.
Responsibilities and Tasks:
- Support delivery of secure Releases and Features aligned with the relevant legacy or NIST assurance processes through Security Assurance stories agreed with the nominated team Scrum Master.
- Create security assurance case for releases, including risk assessments and mitigations for identified defects and vulnerabilities.
- Liaise with Testers, Security Architects, and Engineers to ensure a smooth assurance process and timely delivery of contributions to assurance cases.
- Define Penetration Test and IT Health Check (ITHC) scope for the relevant team.
- Liaise with the Joint Design Team on the scope and submission of the assurance case.
- Keep the Security Lead informed of progress within the team and of any potential conflicts where Security Assurance issues may impede delivery.
- Provide security approval for service support activities, including IMPEX to various systems.
- Conduct daily checks (as part of rota) as required on nominated systems.
- Support incident investigation and security training and briefings.
- Support development of relevant security documentation, including RMADS, CoCo, RAR, SSP, POAM, OSMP (including SyOps).
- Where delivery priorities permit, support the provision of Authority services when Authority is unable to provide such services.
- Propose Risk Register entries to the Security Lead or Security Assurance Lead as required to agree areas of residual risk with the Authority.
- Escalate relevant security issues via the Security Lead or Security Assurance Lead for resolution at the security working group.
Knowledge, Experience and Capabilities:
- Cyber Security Assurance
- ISO27001
- NIST 800-53 series
- MOD Secure by Design
- Information assurance
- Risk management
- High quality of written and verbal communication skills
- Experience of working in Secure environments (Highly desirable)
- Experience in Safe Agile methods (Desirable)
Key skills:
- Compliance
- Security Architecture
- Security Assessment
- Security Audit
Cyber Security Consultant / IA Consultant employer: Damia Group
Contact Detail:
Damia Group Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Cyber Security Consultant / IA Consultant
β¨Tip Number 1
Make sure you have a solid understanding of the NIST 800-53 series and ISO27001 standards, as these are crucial for the role. Brush up on your knowledge of risk management and security assurance processes to demonstrate your expertise during discussions.
β¨Tip Number 2
Network with professionals in the cyber security field, especially those who have experience in secure environments. Attend relevant meetups or webinars to connect with potential colleagues and learn about the latest trends and challenges in the industry.
β¨Tip Number 3
Familiarise yourself with Agile methodologies, particularly Safe Agile methods, as this will be beneficial when collaborating with teams. Understanding how to work within an Agile framework can set you apart from other candidates.
β¨Tip Number 4
Prepare to discuss your experience with security training and promoting a positive security culture. Think of examples where you've successfully implemented security measures or trained others, as this will highlight your ability to contribute to the team's goals.
We think you need these skills to ace Cyber Security Consultant / IA Consultant
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience in Cyber Security Assurance and Information Assurance. Emphasise your familiarity with ISO27001, NIST 800-53, and any experience in secure environments.
Craft a Strong Cover Letter: Write a cover letter that specifically addresses the responsibilities outlined in the job description. Mention your experience with risk management, security training, and collaboration with teams to deliver security solutions.
Highlight Security Clearance: Clearly state your current DV level security clearance in your application. This is a crucial requirement for the role, so make it prominent to catch the employer's attention.
Showcase Communication Skills: Since high-quality written and verbal communication skills are essential, include examples of how you've effectively communicated complex security concepts to stakeholders in previous roles.
How to prepare for a job interview at Damia Group
β¨Understand the Role Requirements
Make sure you thoroughly understand the responsibilities and tasks outlined in the job description. Familiarise yourself with terms like 'security assurance', 'risk management', and 'NIST assurance processes' to demonstrate your knowledge during the interview.
β¨Showcase Your Security Clearance
Since this role requires a current DV level security clearance, be prepared to discuss your experience with security protocols and how your clearance has been maintained. This will reassure the interviewers of your suitability for the position.
β¨Prepare for Technical Questions
Expect technical questions related to Cyber Security Assurance, ISO27001, and MOD Secure by Design. Brush up on these topics and be ready to provide examples from your past experiences that highlight your expertise.
β¨Demonstrate Collaboration Skills
The role involves working closely with various teams, including Security Architects and Engineers. Be prepared to discuss how you've successfully collaborated in previous roles, focusing on communication and teamwork to achieve security goals.