At a Glance
- Tasks: Support secure programmes in the UK public sector and implement effective security controls.
- Company: Award-winning consultancy focused on cyber security and digital infrastructure.
- Benefits: Competitive salary, hybrid working, and opportunities for professional development.
- Why this job: Make a real impact on national resilience while developing your skills in a dynamic environment.
- Qualifications: 3+ years in cyber security with strong knowledge of GRC and security frameworks.
- Other info: Engage with diverse stakeholders and enjoy excellent career growth opportunities.
The predicted salary is between 45000 - 60000 £ per year.
An award-winning consultancy operating across cyber security, data and digital infrastructure is looking to appoint an Information Security Consultant to support the delivery of secure, high-impact programmes within the UK public sector. The organisation works on complex, meaningful projects that contribute to national resilience and public service delivery, offering consultants the opportunity to apply their skills in environments where governance, risk management and regulatory compliance are critical to success.
The Role
You’ll work closely with both internal technical teams and external stakeholders to assess, design and implement effective information security controls and governance frameworks across a variety of programmes. This is a client-facing role that combines security best practice, risk management and technical awareness, making it well suited to someone who enjoys advising organisations on how to embed security in a practical and proportionate way.
Typical responsibilities may include:
- Supporting the development and documentation of secure system and enterprise architectures from a governance and risk perspective
- Performing risk assessments, threat modelling and security assurance activities
- Analysing technical and operational information to support risk-based decision-making
- Ensuring security, risk and compliance considerations are embedded throughout the system and software development lifecycle
Key Responsibilities
- Engage with stakeholders to understand business objectives and translate them into appropriate security governance, risk and control frameworks
- Apply and tailor recognised security standards and frameworks to meet client regulatory and organisational requirements
- Develop and maintain security policies, standards, risk registers and governance processes
- Identify risks within technical and operational environments and recommend proportionate mitigation strategies
- Support the implementation of secure design principles within new and existing systems
- Produce clear, structured documentation including policies, standards, risk assessments and assurance reports
- Conduct and facilitate threat modelling, risk assessments and control reviews to inform decision-making
- Contribute to the development of security strategies and roadmaps aligned to organisational risk appetite
- Support workshops, presentations and proposal activity when required
- Contribute to the continued growth and capability development of the wider consultancy team
Skills & Experience
- 3+ years’ experience working in cyber or information security within a consulting or delivery-focused environment
- Experience supporting or delivering GRC activities such as risk management, policy development, compliance assessments or security assurance
- Strong knowledge in at least one of the following domains: Governance, Risk & Compliance (GRC), Security Operations, Identity & Access Management, Security Engineering
- Exposure to cloud environments such as AWS, Azure or GCP, including understanding how security controls are implemented and assessed
- Familiarity with recognised security standards and frameworks such as ISO 27001, NIST or CAF
- An understanding of technical concepts and architectures sufficient to assess risk and advise on appropriate controls
- Strong interpersonal and communication skills, with the ability to engage effectively with both technical and non-technical stakeholders
- Evidence of continuous professional development, such as relevant certifications (e.g. ISO 27001, CISSP, CISM) or formal training
Security Clearance
Due to the sensitive nature of the work, candidates must either hold UK Security Clearance (SC) or be eligible and willing to undergo the vetting process.
Working Pattern
This role operates on a hybrid basis, with a blend of remote working and time spent on client sites or in a UK office environment as required (typically 2–3 days per week).
Information Security Consultant in City of London employer: LT Harper Recruitment Group
Contact Detail:
LT Harper Recruitment Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Consultant in City of London
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even local events. The more people you know, the better your chances of landing that dream job.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements in information security. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to information security. Think about how you would handle specific risks or compliance challenges, and be ready to share your thought process.
✨Tip Number 4
Don’t forget to apply through our website! We’ve got loads of opportunities waiting for you, and applying directly can sometimes give you an edge. Plus, it’s super easy to keep track of your applications!
We think you need these skills to ace Information Security Consultant in City of London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Information Security Consultant. Highlight your experience in cyber security, risk management, and any relevant frameworks like ISO 27001 or NIST. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about information security and how your background makes you a great fit for our team. Don’t forget to mention any specific projects or achievements that showcase your expertise.
Showcase Your Communication Skills: Since this role involves engaging with both technical and non-technical stakeholders, make sure to demonstrate your communication skills in your application. Use clear, concise language and provide examples of how you've successfully communicated complex ideas in the past.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to upload all your documents in one go. Plus, it helps us keep track of your application better!
How to prepare for a job interview at LT Harper Recruitment Group
✨Know Your Stuff
Make sure you brush up on your knowledge of information security frameworks like ISO 27001 and NIST. Be ready to discuss how you've applied these in past roles, especially in risk management and compliance.
✨Engage with Stakeholders
Since this role is client-facing, practice how you'll engage with both technical and non-technical stakeholders. Prepare examples of how you've successfully translated complex security concepts into actionable strategies for clients.
✨Showcase Your Experience
Highlight your experience in cyber security consulting, particularly any GRC activities you've been involved in. Be specific about the projects you've worked on and the impact your contributions had on governance and risk management.
✨Prepare for Scenario Questions
Expect scenario-based questions that assess your problem-solving skills. Think about potential risks in a project and how you would recommend mitigation strategies. This will show your practical understanding of security controls.