At a Glance
- Tasks: Lead improvements in Secure SDLC and embed security across project lifecycles.
- Company: Dynamic tech firm focused on application security and innovative solutions.
- Benefits: Remote work, competitive pay, and the chance to influence security practices.
- Why this job: Make a real impact on security in a complex, large-scale environment.
- Qualifications: Experience in Secure SDLC, NIST CSF, and application security required.
- Other info: Join a diverse team with a commitment to equal opportunities.
The predicted salary is between 36000 - 60000 £ per year.
This contract role offers the opportunity to play a key part in strengthening an established Secure SDLC within a complex, large-scale environment. You will work across application security and project delivery, influencing how security is embedded throughout the lifecycle and helping teams build solutions securely from the outset.
Responsibilities:
- Lead improvements to the Secure Software Development Lifecycle, aligned to NIST CSF 2.0.
- Act as an Application Security / Project Guardian, embedding security across delivery lifecycles.
- Review and tighten existing vulnerability management practices.
- Define and document end-to-end security requirements in a clear, accessible format for delivery teams.
- Ensure security controls are applied at the right stage of projects, regardless of entry point.
- Bring together application, platform, cloud, and infrastructure security to ensure cohesive SDLC controls.
- Validate that back-end and platform security controls are correctly implemented and fit for purpose.
- Operate as a trusted internal security advisor, balancing risk, delivery timelines, and business objectives.
Requirements:
- Proven experience improving Secure SDLC maturity within complex environments.
- Strong knowledge of NIST CSF, application security, and secure-by-design principles.
- Experience working with ISMS environments.
- Hands-on capability across vulnerability management, security assessments, and control validation.
- Ability to translate security requirements into practical, delivery-ready guidance.
- Experience working autonomously across multiple teams with competing priorities.
- Strong understanding of cloud and platform security (AWS, Kubernetes, APIs, IAM).
- Pragmatic approach to risk management in agile delivery environments.
We are an equal opportunities employer and welcome applications from all suitably qualified persons regardless of their race, sex, disability, religion/belief, sexual orientation or age.
Security Consultant employer: Fruition Group
Contact Detail:
Fruition Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Consultant
✨Tip Number 1
Network like a pro! Reach out to your connections in the security field and let them know you're on the lookout for opportunities. You never know who might have a lead or can put in a good word for you.
✨Tip Number 2
Get your online presence sorted! Make sure your LinkedIn profile is up-to-date and showcases your skills in Secure SDLC and application security. Join relevant groups and engage with posts to get noticed by potential employers.
✨Tip Number 3
Prepare for interviews by brushing up on your knowledge of NIST CSF and secure-by-design principles. Be ready to discuss how you've improved SDLC maturity in past roles and share specific examples of your hands-on experience.
✨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining us. Tailor your approach to highlight how your skills align with the role of Security Consultant and show us why you're the perfect fit.
We think you need these skills to ace Security Consultant
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Consultant role. Highlight your experience with Secure SDLC and NIST CSF, and don’t forget to showcase your hands-on skills in vulnerability management and security assessments.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re the perfect fit for this role. Mention specific projects where you’ve embedded security into delivery lifecycles and how you’ve acted as a trusted advisor.
Showcase Your Knowledge: In your application, demonstrate your understanding of secure-by-design principles and cloud security. We want to see that you can translate complex security requirements into practical guidance for delivery teams.
Apply Through Our Website: Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity to strengthen our Secure SDLC.
How to prepare for a job interview at Fruition Group
✨Know Your Secure SDLC Inside Out
Make sure you’re well-versed in the Secure Software Development Lifecycle, especially how it aligns with NIST CSF 2.0. Be ready to discuss specific improvements you've made in past roles and how they impacted security practices.
✨Showcase Your Application Security Expertise
Prepare examples of how you've acted as a guardian for application security in previous projects. Highlight your hands-on experience with vulnerability management and how you’ve successfully implemented security controls at various project stages.
✨Communicate Clearly and Effectively
Since you'll need to define and document security requirements, practice explaining complex security concepts in simple terms. This will demonstrate your ability to translate technical jargon into accessible guidance for delivery teams.
✨Demonstrate Your Pragmatic Risk Management Skills
Be ready to discuss how you balance risk with delivery timelines and business objectives. Share specific scenarios where you’ve had to make tough decisions and how you approached them in an agile environment.