At a Glance
- Tasks: Lead security design reviews and risk assessments for innovative tech solutions.
- Company: Join a $13+ billion global tech leader with a startup mindset.
- Benefits: Competitive pay, 20 days vacation, and diverse employee benefits.
- Other info: Dynamic team culture focused on professional growth and social impact.
- Why this job: Make a real impact in cyber security while working on exciting projects.
- Qualifications: Experience in cyber security and strong communication skills required.
The predicted salary is between 60000 - 75000 £ per year.
We are a $13+ billion global technology company, home to more than 224,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud, and AI, powered by a broad portfolio of technology services and products. HCLTech is a globally recognized leader in the Tech and IT industry, but we’ve never forgotten the startup mindset that got us here. We’ve always approached our work with an idea-first attitude because every one of our accomplishments — no matter how big or small — can be traced back to an idea’s single spark. It’s that spark — that inner drive — that sets our people apart from our competitors. It enables us not just to pull off game-changing feat after game-changing feat but to better our world in the process. We want you to find your spark. Because that’s what drives you to be better, be more and ultimately, be more fulfilled.
This is a Fixed term contract role.
Role Overview
We are seeking a Senior Security Design Consultant to provide expert cyber security consultancy, security design assurance and risk-based guidance across business and technology change. The role is responsible for assessing new and amended services, applications, cloud platforms and third-party solutions to ensure security risks are understood, controlled and aligned to organisational risk appetite, regulatory obligations and industry best practice.
Key Responsibilities
- Lead security design reviews, threat modelling and risk assessments for applications, infrastructure, cloud services and third-party solutions.
- Define and recommend proportionate security controls, patterns and design guardrails aligned to business objectives and risk appetite.
- Provide consultancy on secure architecture for internet-facing services, internal platforms, data flows and integration patterns.
- Advise on identity and access management, privileged access, recertification and access control design.
- Work closely with engineering, architecture, product and delivery teams in Agile and DevOps environments to embed security by design.
- Support compliance with security and regulatory frameworks including ISO 27001, PCI DSS, OWASP and internal standards.
- Review security posture of vendors and outsourced services, providing due diligence and third-party risk assurance.
- Present security findings, risk opinions and design recommendations clearly to both technical and non-technical stakeholders, including senior leadership.
Required Experience and Skills
- Extensive experience in cyber security, security consulting, risk assessment or security architecture within regulated environments, ideally financial services.
- Strong knowledge of threat modelling methodologies, secure design principles, attack vectors and mitigating controls across network, application and cloud domains.
- Practical understanding of cloud security, secure application delivery, third-party risk management and access management practices.
- Experience applying recognised frameworks and standards such as ISO 27001, PCI DSS, OWASP, NIST and enterprise security control frameworks.
- Ability to translate complex technical risks into business language and provide clear, evidence-based recommendations.
- Exposure to contemporary architectures, e.g. RESTful APIs and containerised microservices.
- Strong stakeholder management, written communication and presentation skills, with confidence engaging senior managers and control functions.
Qualifications and Certifications
- Essential: Demonstrable experience in security design, cyber risk, security consulting or related cyber security disciplines.
- Desirable: Professional certifications such as CISSP, CISM, CCSP, CEH, GIAC or equivalent.
- Preferred background: Experience supporting cloud transformation, digital delivery, third-party assurance and regulated change programmes.
Desirable Attributes
- Commercially aware and able to balance risk reduction with pragmatic business delivery.
- Capable of working independently while influencing multidisciplinary teams and senior stakeholders.
- Understanding or awareness about banking systems.
- Comfortable operating in fast-paced, high-pressure environments with changing priorities.
- Structured, detail-oriented and focused on producing high-quality, repeatable outcomes.
Success Measures
Success in this role will be measured by the quality and timeliness of security assessments, the effectiveness of recommended controls, stakeholder confidence in security advice, and the consultant’s ability to enable secure delivery without unnecessary friction to business change.
Benefits
A supportive, diverse, and global team with a brilliant culture. Competitive compensation and benefits that includes up to 20 days’ vacation per year, various insurances like Term life and Business Travel insurance. These are apart from the statutory benefits applicable in the country. Employee benefits are regulated by an internal policy that contains full details regarding the entitlement and conditions for the benefits as per the law of the land. Great opportunities to make the role your own, upskill yourself and get involved with exciting projects. Total Wellbeing is our focus. Alongside your professional excellence, you join the likeminded colleagues to create a larger impact within the company and society at large in your chosen area of passion - CSR Council, Diversity Council, Women Connect, Sparks – Engagement Champion to name a few.
Locations
Security Design Consultant in Newport, Wales employer: HCLTech
HCLTech is an exceptional employer, offering a vibrant and inclusive work culture that fosters innovation and personal growth. With competitive benefits, including generous vacation days and comprehensive insurance options, employees are encouraged to thrive both professionally and personally. The hybrid work model in locations like Manchester, Leeds, and Bristol allows for flexibility while engaging in meaningful projects that make a real impact in the tech industry.
StudySmarter Expert Advice🤫
We think this is how you could land Security Design Consultant in Newport, Wales
✨Get Engaged in Cybersecurity Communities
Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like HCLTech.
✨Showcase Your Skills Publicly
Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.
✨Stay On Top of Temp Opportunities
Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like HCLTech.
✨Make Contact with Recruiters Specialising in Cybersecurity
Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like HCLTech.
We think you need these skills to ace Security Design Consultant in Newport, Wales
Some tips for your application 🫡
Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives HCLTech a clear view of your capabilities right off the bat.
Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.
Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at HCLTech; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!
Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at HCLTech.
How to prepare for a job interview at HCLTech
✨Brush Up on Technical Skills
Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with HCLTech for the Security Design Consultant, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.
✨Show Your Problem-Solving Prowess
Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!
✨Demonstrate Your Adaptability
As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at HCLTech.
✨Bring Relevant Certifications
If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the Security Design Consultant role at HCLTech.