Senior Security Design Consultant

Senior Security Design Consultant

Full-Time 70000 - 90000 £ / year (est.) No working from home possible
HCLTech

At a Glance

  • Tasks: Lead security design reviews and risk assessments for innovative tech solutions.
  • Company: Join a $13+ billion global tech leader with a startup mindset.
  • Benefits: Competitive pay, 20 days vacation, diverse culture, and wellness focus.
  • Other info: Great opportunities for personal growth and involvement in impactful initiatives.
  • Why this job: Make a real impact in cyber security while working on exciting projects.
  • Qualifications: Experience in cyber security and strong stakeholder management skills required.

The predicted salary is between 70000 - 90000 £ per year.

We are seeking a Senior Security Design Consultant to provide expert cyber security consultancy, security design assurance and risk-based guidance across business and technology change. The role is responsible for assessing new and amended services, applications, cloud platforms and third-party solutions to ensure security risks are understood, controlled and aligned to organisational risk appetite, regulatory obligations and industry best practice.

Key Responsibilities

  • Lead security design reviews, threat modelling and risk assessments for applications, infrastructure, cloud services and third-party solutions.
  • Define and recommend proportionate security controls, patterns and design guardrails aligned to business objectives and risk appetite.
  • Provide consultancy on secure architecture for internet-facing services, internal platforms, data flows and integration patterns.
  • Advise on identity and access management, privileged access, recertification and access control design.
  • Work closely with engineering, architecture, product and delivery teams in Agile and DevOps environments to embed security by design.
  • Support compliance with security and regulatory frameworks including ISO 27001, PCI DSS, OWASP and internal standards.
  • Review security posture of vendors and outsourced services, providing due diligence and third-party risk assurance.
  • Present security findings, risk opinions and design recommendations clearly to both technical and non-technical stakeholders, including senior leadership.

Required Experience and Skills

  • Extensive experience in cyber security, security consulting, risk assessment or security architecture within regulated environments, ideally financial services.
  • Strong knowledge of threat modelling methodologies, secure design principles, attack vectors and mitigating controls across network, application and cloud domains.
  • Practical understanding of cloud security, secure application delivery, third-party risk management and access management practices.
  • Experience applying recognised frameworks and standards such as ISO 27001, PCI DSS, OWASP, NIST and enterprise security control frameworks.
  • Ability to translate complex technical risks into business language and provide clear, evidence-based recommendations.
  • Exposure to contemporary architectures, e.g. RESTful APIs and containerised microservices.
  • Strong stakeholder management, written communication and presentation skills, with confidence engaging senior managers and control functions.

Qualifications and Certifications

  • Essential: Demonstrable experience in security design, cyber risk, security consulting or related cyber security disciplines.
  • Desirable: Professional certifications such as CISSP, CISM, CCSP, CEH, GIAC or equivalent.
  • Preferred background: Experience supporting cloud transformation, digital delivery, third-party assurance and regulated change programmes.

Desirable Attributes

  • Commercially aware and able to balance risk reduction with pragmatic business delivery.
  • Capable of working independently while influencing multidisciplinary teams and senior stakeholders.
  • Understanding or awareness about banking systems.
  • Comfortable operating in fast-paced, high-pressure environments with changing priorities.
  • Structured, detail-oriented and focused on producing high-quality, repeatable outcomes.

Success Measures

Success in this role will be measured by the quality and timeliness of security assessments, the effectiveness of recommended controls, stakeholder confidence in security advice, and the consultant’s ability to enable secure delivery without unnecessary friction to business change.

Benefits

A supportive, diverse, and global team with a brilliant culture. Competitive compensation and benefits that includes up to 20 days’ vacation per year, various insurances like Term life and Business Travel insurance. These are apart from the statutory benefits applicable in the country. Employee benefits are regulated by an internal policy that contains full details regarding the entitlement and conditions for the benefits as per the law of the land. Great opportunities to make the role your own, upskill yourself and get involved with exciting projects. Total Wellbeing is our focus. Alongside your professional excellence, you join likeminded colleagues to create a larger impact within the company and society at large in your chosen area of passion - CSR Council, Diversity Council, Women Connect, Sparks – Engagement Champion to name a few.

Senior Security Design Consultant employer: HCLTech

HCLTech is an exceptional employer that fosters a supportive and diverse work culture, encouraging employees to find their spark and drive meaningful change. With competitive compensation, generous vacation allowances, and a focus on total wellbeing, employees have ample opportunities for professional growth and involvement in impactful projects. Located in vibrant London, the role of Senior Security Design Consultant offers a unique chance to work at the forefront of technology while collaborating with talented teams in a dynamic environment.

HCLTech

Contact Details:

HCLTech Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Security Design Consultant

Tip Number 1

Network like a pro! Reach out to people in the industry, attend events, and connect with potential colleagues on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

Tip Number 2

Prepare for interviews by researching the company and its culture. Understand their values and how they align with your own. This will help you showcase your spark and demonstrate why you're the perfect fit for the Senior Security Design Consultant role.

Tip Number 3

Practice your pitch! Be ready to explain your experience and how it relates to the job. Highlight your skills in cyber security and risk assessment, and don’t forget to mention any relevant certifications you hold.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you’re genuinely interested in joining HCLTech and being part of our innovative team.

We think you need these skills to ace Senior Security Design Consultant

Cyber Security Consultancy
Security Design Assurance
Risk Assessment
Threat Modelling
Secure Architecture
Identity and Access Management
Cloud Security

Some tips for your application 🫡

Show Your Spark:When you’re writing your application, let your passion shine through! We want to see that inner drive and creativity that sets you apart. Share your unique ideas and experiences that relate to the role.

Tailor Your Application:Make sure to customise your application for the Senior Security Design Consultant role. Highlight your relevant experience in cyber security and risk assessment, and don’t forget to mention any frameworks you’ve worked with that align with our needs.

Be Clear and Concise:We appreciate straightforward communication. When detailing your skills and experiences, keep it clear and to the point. Use bullet points if necessary to make it easy for us to read and understand your qualifications.

Apply Through Our Website:Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!

How to prepare for a job interview at HCLTech

Know Your Stuff

Make sure you brush up on your knowledge of cyber security principles, especially those relevant to the financial services sector. Familiarise yourself with threat modelling methodologies and the latest security frameworks like ISO 27001 and PCI DSS. This will help you speak confidently about your expertise during the interview.

Showcase Your Experience

Prepare specific examples from your past roles where you've successfully led security design reviews or risk assessments. Be ready to discuss how you’ve embedded security by design in Agile and DevOps environments. This will demonstrate your practical experience and ability to apply your knowledge effectively.

Communicate Clearly

Practice translating complex technical risks into business language. During the interview, aim to present your ideas clearly and concisely, especially when discussing security findings and recommendations. This will show that you can engage with both technical and non-technical stakeholders, which is crucial for this role.

Be Ready for Scenario Questions

Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about how you would approach security challenges, such as assessing third-party risks or advising on secure architecture. This will help you demonstrate your critical thinking and decision-making abilities.