Senior Cyber Risk & Compliance Consultant (GRA)

Senior Cyber Risk & Compliance Consultant (GRA)

Full-Time 70000 - 80000 £ / year (est.) Home office (partial)
FSP Consulting Services Limited

At a Glance

  • Tasks: Lead cyber risk and compliance projects, helping clients achieve ISO27001 certification.
  • Company: Join FSP, a top-rated digital transformation specialist with a supportive culture.
  • Benefits: Enjoy hybrid working, industry-leading coaching, and an excellent benefits package.
  • Other info: FSP is committed to diversity and offers equal opportunities for all applicants.
  • Why this job: Make a real impact in cyber security while growing your career with industry experts.
  • Qualifications: Experience in cyber governance and recognised certifications like ISO/IEC 27001 required.

The predicted salary is between 70000 - 80000 £ per year.

We have an exciting opportunity for a Senior Cyber Risk & Compliance Consultant to join our growing Governance, Risk and Assurance (GRA) team. Within this role, you will utilise your GRA and cyber security expertise to advise clients on ISO27001 and other information security consulting engagements and support in the delivery of complex security programmes.

Responsibilities

  • Lead cyber governance, risk and compliance engagements, with primary focus on achieving certification or standards alignment to ISO27001. This will include gap assessments, strategy and planning, implementation support, audit preparation and pre and post certification support.
  • Engage with clients to understand their wider threat landscape and business context, conducting risk and compliance assessments against other recognised frameworks and standards (e.g. NIST, SOC 2, DefStan).
  • Design, review and advise on the implementation and adoption of information security policies, standards, procedures and frameworks.
  • Lead cyber and third-party risk assessments, evaluate supplier security posture, and provide risk-based recommendations for supplier selection and oversight.
  • Identify control gaps, document findings, and track remediation activities to support assurance and audit outcomes.
  • Produce clear, concise risk and compliance reports for executive and C-suite stakeholders, including prioritised mitigation strategies and improvement roadmaps.
  • Contribute to thought leadership and continuous improvement by staying current with industry developments and sharing knowledge across the cyber security community.
  • Demonstrate strong communication, stakeholder management and mentoring skills, upholding the highest standards of integrity and professionalism.

About you

  • Extensive experience of designing, leading and delivering cyber governance, risk and assurance outcomes, with a proven track record of successfully leading GRC and security assurance initiatives.
  • Possess strong knowledge of recognised cyber security frameworks and standards, including ISO/IEC 27001, NIS Directives, NIST, and UK Government Functional Standards, with demonstrable experience aligning security controls to MOD requirements such as DEFSTAN 05-138, JSP 440, JSP 604 and Defence Cyber Resilience policies.
  • Experienced in applying UK Government security and assurance frameworks, including GovAssure, the Cyber Assessment Framework (CAF), Defence Cyber Certification (DCC) and Government Standard (GovS) 007.
  • Confident communicator, able to clearly articulate cyber risk and the value of security investment to senior leaders, while mentoring and guiding teams to deliver high-quality outcomes.
  • Hold a recognised ISO/IEC 27001 Lead Implementer or Lead Auditor certification, alongside other relevant academic or professional qualifications (e.g. MSc in Cyber Security or related specialism, CISM, CISSP, PCIRM).
  • Hold, or be working towards, Principal or Chartered Cyber Security Professional (ChCSP) status.
  • Eligible to work in the UK and able to obtain and maintain UK security clearances.

What we look for in our people

  • Strong alignment with FSP values and ethos.
  • Commitment to teamwork, quality and mutual success.
  • Proactivity with an ability to operate with pace and energy.
  • Strong communication and interpersonal skills.
  • Excellent planning and organisational skills.
  • Dedication to excellence and quality.

Why work for FSP?

  • A collaborative and supportive environment in which you can grow and develop your career.
  • The tools and opportunity to do work you can be proud of.
  • A chance to work alongside some of the best people in the industry, who always seek to share their knowledge and experience.
  • Hybrid working – we empower you to make smart choices about when and where to work to achieve great results.
  • Industry leading coaching and mentoring.
  • Plus the excellent benefits package we offer at FSP.

About FSP

Founded in 2012, FSP Consulting Services (FSP) are a leading digital transformation specialist, combining real world experience in business strategy, change and adoption and digital solution delivery. As a long-standing Microsoft Solutions Partner, our portfolio of modern workplace, cloud, data, and cyber security offerings, alongside trusted managed services delivery, is driving change for high-profile clients in both the public and private sector. Our work is founded on the commitment to deliver positive impact for both organisations and their people. Behind this commitment is a dedicated employee-first strategy, built around our organisation’s core values: human, inclusive, performance driven, and ambitious.

We are proud to have been recognised by Best Companies™ as a 3-star ‘World Class’ workplace (their highest level of accreditation) in 2024, 2023 and 2022. We have also been awarded a No.1 Best Company to Work For in the UK, in the Technology sector and in the South-East (Regional League Table) in 2023. We have also been recognised three times as No.1 Best Workplace™ in the UK by Great Place to Work®.

FSP is an equal opportunity employer. We consider all applicants for employment regardless of age, disability, sexual orientation, gender identity, family or parental status, race, colour, nationality, ethnic or national origin, religion or belief.

Please note that visa sponsorship is available for some roles, subject to eligibility and business requirements. Research indicates that individuals from underrepresented groups may be less likely to apply where they feel they do not meet every requirement, or where there is uncertainty about who a role is intended for. If you are interested in a role with us but are concerned that you may not meet all the criteria, we encourage you to apply. You may be a strong candidate for this role or for other opportunities within FSP.

We are committed to providing a fair and inclusive recruitment process. If you require any reasonable adjustments to participate fully in an interview or meeting (whether virtual or in person), please let us know.

Senior Cyber Risk & Compliance Consultant (GRA) employer: FSP Consulting Services Limited

FSP is an exceptional employer, offering a collaborative and supportive environment that fosters career growth and development. With a commitment to employee well-being, hybrid working options, and industry-leading coaching, FSP empowers its team to excel while delivering impactful work for high-profile clients. Recognised as a 'World Class' workplace, FSP prioritises inclusivity and excellence, making it an ideal choice for professionals seeking meaningful and rewarding employment in the cyber security field.

FSP Consulting Services Limited

Contact Details:

FSP Consulting Services Limited Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Cyber Risk & Compliance Consultant (GRA)

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like FSP Consulting Services Limited looking for candidates who are engaged and informed.

We think you need these skills to ace Senior Cyber Risk & Compliance Consultant (GRA)

ISO27001
Cyber Security Expertise
Governance, Risk and Compliance (GRC)
Risk Assessment
Compliance Assessments
Information Security Policies
Supplier Security Evaluation

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at FSP Consulting Services Limited. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at FSP Consulting Services Limited

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with FSP Consulting Services Limited’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!