At a Glance
- Tasks: Ensure security in cloud products and lead application security initiatives.
- Company: Dynamic remote-first company focused on innovative security solutions.
- Benefits: Competitive salary, 10% bonus, and flexible remote work.
- Why this job: Make a real impact on security in cutting-edge cloud environments.
- Qualifications: Experience in cloud security, DevSecOps, and application security.
- Other info: Join a team that values curiosity and practical security solutions.
The predicted salary is between 42000 - 66000 ÂŁ per year.
Location: Remote (actually remote. No “mandatory culture days”)
Salary: ÂŁ55,000 + 10% Bonus and Benefits
Let’s skip the corporate fluff. This is a Security Analyst / Consultant role for someone who gets it. Someone who knows that “secure by design” isn’t just something you write in a Confluence doc. Someone who knows risk isn’t always a red RAG status - and can explain the difference between a real issue and a theoretical one.
We’re building secure products across a complex cloud environment (yes, both Azure and AWS). You’ll be the person making sure what we build isn’t just functional - but secure, sustainable, and risk-aware.
What you’ll actually be doing:
- Embedding yourself in engineering teams, making sure security is considered before, during and after development - not after someone clicks deploy.
- Leading the charge on application security - from secure coding principles to automated AppSec testing in CI/CD pipelines.
- Running (or helping run) threat modelling sessions and ensuring they’re more than just drawing spiders on whiteboards.
- Working with devs and testers to embed security controls early in the lifecycle.
- Bringing DevSecOps principles into play - not just sprinkling tools into pipelines and calling it a day.
- Providing end-to-end security assurance of cloud-based products - containers, APIs, apps, infrastructure.
- Translating technical risk into business language that makes sense to non-technical decision-makers.
- Partnering with security testers to ensure ethical hacking, code reviews, infrastructure scans, and app assessments are done properly - not tick-box-style.
You should probably already know a bit about:
- Cloud security across Azure and AWS – IAM, storage, networking, serverless, containers, monitoring. Not expecting you to be a cloud architect, but you should know your way around.
- DevSecOps practices – secure pipelines, IaC security, dependency scanning, GitHub/Jenkins integrations.
- Application security – OWASP Top 10, SAST/DAST tooling, secrets management, API security.
- Threat modelling – Ideally STRIDE, or something better. And you can do it with a dev team, not just in theory.
- Vulnerability and risk management – and how to avoid both being reduced to spreadsheets.
- Frameworks like NIST, MITRE ATT&CK, Cyber Kill Chain, and compliance stuff like PCI-DSS.
- SIEMs, WAFs, DLPs, EDRs, and all the other acronym-heavy tools you’ve learned to assess critically.
You’ll do well here if:
- You speak fluent “tech” and “business”.
- You can spot a security gap without being a pain about it.
- You’re comfortable saying “no” - but you always explain why.
- You’re curious, self-driven, and allergic to box-ticking.
- You can back your views up with data, experience, or even just logic.
Letters & certs are nice (but not essential): Security+, CISM, CISSP, CCSK, CCAK, Azure/AWS security certs, MSc Cybersecurity, etc. Or you’ve just done the job long enough that you know your stuff without the need for badges.
Apply if that sounds like you. If you’re looking for a clipboard and a checklist, this isn’t it.
Cyber Security Consultant in Manchester employer: Investigo
Contact Detail:
Investigo Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Consultant in Manchester
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security world. Attend meetups, webinars, or even online forums. The more people you know, the better your chances of landing that dream job.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your projects, especially those related to cloud security and DevSecOps. This will give potential employers a taste of what you can do and set you apart from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on your technical knowledge and soft skills. Be ready to discuss real-world scenarios and how you’ve tackled security challenges. Remember, it’s not just about what you know, but how you communicate it!
✨Tip Number 4
Don’t forget to apply through our website! We’re always on the lookout for passionate individuals who get the importance of security in development. Your next opportunity could be just a click away!
We think you need these skills to ace Cyber Security Consultant in Manchester
Some tips for your application 🫡
Be Yourself: When writing your application, let your personality shine through! We want to see the real you, so don’t be afraid to show your passion for cyber security and how you approach challenges in a unique way.
Tailor Your Application: Make sure to customise your application to reflect the specific skills and experiences that match the job description. Highlight your knowledge of cloud security, DevSecOps practices, and any relevant frameworks to show us you’re the right fit.
Show Your Problem-Solving Skills: We love candidates who can think critically and solve problems. Use your written application to share examples of how you've tackled security issues in the past, especially in a collaborative environment with engineering teams.
Apply Through Our Website: Don’t forget to submit your application through our website! It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it shows you’re keen to join our team!
How to prepare for a job interview at Investigo
✨Know Your Stuff
Make sure you brush up on your knowledge of cloud security, especially in Azure and AWS. Be ready to discuss specific examples of how you've implemented security measures in a cloud environment, as this will show that you can apply your knowledge practically.
✨Speak Their Language
Since the role requires translating technical risk into business language, practice explaining complex security concepts in simple terms. This will demonstrate your ability to communicate effectively with non-technical stakeholders, which is crucial for the position.
✨Show Your Curiosity
Prepare to discuss recent trends in cybersecurity and any new tools or frameworks you've explored. This shows that you're self-driven and genuinely interested in the field, which aligns with what they're looking for in a candidate.
✨Be Ready for Scenario Questions
Expect to face scenario-based questions, especially around threat modelling and vulnerability management. Think of real-life situations where you've identified security gaps and how you addressed them, as this will highlight your practical experience and problem-solving skills.