Information Security Risk Consultant

Information Security Risk Consultant

Full-Time 85000 - 85000 £ / year (est.) Home office (partial)
Oscar Associates (UK) Limited

At a Glance

  • Tasks: Conduct security audits and assessments, support risk management, and deliver client projects.
  • Company: Join a growing cyber and risk consultancy with a focus on innovation.
  • Benefits: Up to £50k salary, mostly remote work, and up to 31 days annual leave.
  • Other info: Great career growth opportunities and a dynamic work environment.
  • Why this job: Make a real impact in cybersecurity while developing your skills in a client-facing role.
  • Qualifications: 3 years' experience in cyber security and knowledge of frameworks like ISO27001.

The predicted salary is between 85000 - 85000 £ per year.

We're working with a growing cyber and risk consultancy that's looking to bring in an Information Security Consultant to support the delivery of security assessments, audits, and client-facing projects across a varied portfolio. This is a great opportunity for someone with a solid grounding in security assurance or risk who wants to develop further in a client-facing, consultancy-style environment.

Location: Mostly remote with client visits across the UK south/ Cheltenham office.

Up to 31 days annual leave + expenses paid with overnight allowance

Start date: ASAP

Clearance: Must hold active or be eligible for SC clearance.

The Role:

  • You'll be working closely with the Head of Risk & Compliance, supporting across a range of security and governance projects. This includes audits, risk management, and helping clients improve their overall security posture.
  • Conduct security audits and assessments against recognised frameworks (ISO27001, NIST, NCSC)
  • Support risk management activities and improve security posture across client environments
  • Assist with information governance processes and reporting
  • Deliver client projects within agreed scope and timelines
  • Work with stakeholders to define requirements and ensure clear delivery outcomes
  • Support supplier assurance and third-party assessments
  • Contribute to security awareness and training initiatives

Key Skills/ Experience:

  • ~3 years' experience in a cyber security / IT security role
  • Experience in security assurance, audits, or compliance-focused work
  • Good understanding of frameworks such as ISO27001, NIST, NCSC
  • Knowledge of risk management and information governance
  • Familiarity with regulations like GDPR / Data Protection Act
  • Strong communication skills - comfortable working with clients and stakeholders
  • Ability to manage multiple projects and priorities

Nice to Have:

  • Certifications such as CISSP, CISM, or CISA
  • Experience working in consultancy or client-facing environments
  • Exposure to frameworks like CAF, NIST 800-53 or JSP440

Information Security Risk Consultant employer: Oscar Associates (UK) Limited

Join a forward-thinking organisation that prioritises innovation and employee development, offering a dynamic remote work environment across the UK. As a DLP Policy Engineer, you'll be part of a large-scale security transformation programme, where your expertise in ZScaler will be valued and nurtured, ensuring you have ample opportunities for professional growth and collaboration with diverse teams. Enjoy competitive daily rates and the flexibility of remote work while contributing to critical data protection initiatives.

Oscar Associates (UK) Limited

Contact Details:

Oscar Associates (UK) Limited Recruitment Team

We think you need these skills to ace Information Security Risk Consultant

Security Audits
Risk Management
Information Governance
ISO27001
NIST
NCSC
GDPR