Security Analyst in London

Security Analyst in London

London Full-Time 63000 - 77000 Β£ / year (est.) Home office (partial)
PA Consulting

At a Glance

  • Tasks: Join our team to secure AI technologies and advise clients on cyber security risks.
  • Company: Dynamic consulting firm focused on innovation and technology.
  • Benefits: Flexible working, competitive salary, health perks, and generous leave.
  • Other info: Collaborative environment with opportunities for growth and learning.
  • Why this job: Make a real impact in the evolving field of AI security.
  • Qualifications: Strong cyber security knowledge and curiosity about AI.

The predicted salary is between 63000 - 77000 Β£ per year.

As strategies, technologies, and innovation collide, we create opportunity from complexity. Our teams of interdisciplinary experts combine innovative thinking and breakthrough technologies to progress further, faster. We are over 4,000 strategists, innovators, designers, consultants, digital experts, scientists, engineers, and technologists. And we have deep expertise in consumer and manufacturing, defence and security, energy and utilities, financial services, government and public services, health and life sciences, and transport. We combine strategic thinking, customer-centric service design, and agile engineering practices to accelerate innovation in a tech-driven world.

Why consider joining our Digital & Data community? Join our Digital & Data team working alongside product, design and a wide range of other experts and cross-disciplinary teams to bring ideas to life through innovative software solutions. Grow a flexible and unique career within a trust-based, inclusive environment that values excellence, innovation, and curiosity. Hybrid working - our approach is to be in the office or on client site a minimum of 2 days per week. Work on a broad variety of projects and tech stacks for clients across seven sectors - no project is ever the same. Join other experts within our supportive and collaborative tech community through knowledge-sharing and peer-level support, coaching and mentoring. Deepen your expertise through our culture of learning and growth – you'll have budget to take courses (technical and non-technical training), plus gain certifications.

Role Overview: We are looking for an AI Security Consultant to help organisations secure the next generation of technology environments, including AI-enabled applications, LLM integrations and agentic systems. This is a cyber security consulting role with an AI focus. You will advise clients on core cyber security risks across cloud, identity, applications, data, operations and governance, while also helping them understand and manage the new risks introduced by AI systems that can reason, retrieve data, call tools and take action. You will work with clients to assess AI security risks, threat model agentic workflows, design practical controls, and identify where AI can safely improve cyber security operations. This may include supporting secure AI adoption, reviewing LLM-based applications, advising on SOC automation, developing AI security guardrails, and helping organisations use AI to enhance detection, response, reporting and risk management.

The right candidate will combine strong cyber security fundamentals with curiosity and practical knowledge of AI security. You should be able to explain complex risks clearly, work with both technical and senior stakeholders, and provide advice that is proportionate, actionable and aligned to business outcomes.

Key Responsibilities:

  • Cyber Security Consulting
  • Conduct cyber security assessments across technology estates, cloud environments, applications, networks, identity platforms and operational processes.
  • Review security architectures and provide pragmatic recommendations aligned to business risk.
  • Support the design and implementation of security controls across areas such as access management, data protection, logging and monitoring, vulnerability management, incident response and third-party risk.
  • Help clients interpret security requirements, assess control maturity and develop actionable improvement roadmaps.
  • AI and Agentic System Security
  • Assess the security risks associated with AI-enabled applications, LLM integrations, AI agents, autonomous workflows and model-connected business processes.
  • Review AI system designs for risks such as prompt injection, excessive agency, data leakage, insecure tool use, unsafe output handling, model supply chain exposure and weak human oversight.
  • Support threat modelling for agentic systems, including how agents access tools, call APIs, retrieve data, make decisions and trigger actions.
  • Advise on secure patterns for AI application development, including permission boundaries, identity controls, sandboxing, auditability, input/output validation and human-in-the-loop controls.
  • Help clients establish governance and assurance processes for AI systems across the lifecycle, from experimentation through to production deployment.
  • AI-Enabled Security Operations
  • Identify opportunities to use AI safely to improve cyber security operations, such as alert triage, threat intelligence enrichment, incident summarisation, detection engineering, reporting, vulnerability prioritisation and control testing.
  • Support the evaluation and adoption of AI-enabled security tools, ensuring appropriate security, privacy, governance and operational safeguards are in place.
  • Help security teams design workflows where AI augments analysts without introducing unacceptable risk, over-reliance or loss of accountability.
  • Develop practical playbooks, guardrails and operating models for the responsible use of AI within SOC, GRC, vulnerability management and incident response functions.
  • Work with clients to measure the effectiveness, limitations and risks of AI-assisted security processes.

Strong background in cyber security consulting, security architecture, risk management or security operations. Good understanding of common security domains, including identity and access management, cloud security, application security, data protection, vulnerability management, incident response and security monitoring. Understanding of AI, generative AI or LLM-enabled systems, including how AI applications interact with data, prompts, APIs, tools and users. Awareness of emerging AI security risks such as prompt injection, sensitive information disclosure, excessive agency, insecure output handling, model/data poisoning, vector or embedding weaknesses and AI supply chain risk. Ability to perform threat modelling for complex systems, including AI-assisted or agentic workflows. Strong written and verbal communication skills, with the ability to explain emerging technical risks in simple, practical terms.

Desirable Skills:

  • Experience with AI governance, responsible AI, model risk management or AI assurance.
  • Familiarity with frameworks and guidance such as NIST AI RMF, OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, ISO 27001, NIST CSF, CIS Controls or cloud security frameworks.
  • Experience with SOC operations, SIEM/SOAR platforms, detection engineering, threat intelligence or incident response.
  • Knowledge of AI-enabled development platforms, agent frameworks, retrieval-augmented generation, model APIs, vector databases or automation/orchestration tools.
  • Experience designing guardrails for autonomous systems, including least privilege, approval workflows, action limits, logging, monitoring and rollback mechanisms.
  • Relevant certifications such as CISSP, CISM, CCSP, GIAC, ISO 27001 Lead Implementer/Auditor, cloud security certifications or AI/security-focused training.

Please be aware that some of our UK roles at PA Consulting require a UK security clearance. All PA people are required to undergo background checks and to achieve the Baseline Personnel Security Standard however, some UK roles also require higher levels of National Security Vetting, where applicants must have at least 5 years of continuous residency in the UK. We therefore ask that you only apply if you meet the residency requirements (i.e. you are a British citizen or have been resident in the UK for the past 5 years), as this is the prerequisite for a security clearance. If you're unsure about your eligibility, we encourage you to review the UK Government's guidance on security vetting before applying.

It's about how we enrich peoples' working lives by giving them access to unique people and growth opportunities and purpose led meaningful work. Our purpose guides how we work with our clients and our teams, and support our communities, to deliver insight and impact, solving the world's most complex challenges. We're focused on building a workplace that values human difference and diverse mindsets, and a culture of inclusion and equality that unlocks the potential in our people so everyone can be their best self. We are dedicated to supporting the physical, emotional, social and financial well-being of our people.

Health and lifestyle perks accompanying private healthcare for you and your family, 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days, generous company pension scheme, opportunity to get involved with community and charity-based initiatives, annual performance-based bonus, PA share ownership, tax efficient benefits (cycle to work, give as you earn).

We're committed to advancing equality. We recruit, retain, reward and develop our people based solely on their abilities and contributions and without reference to their age, background, disability, genetic information, parental or family status, religion or belief, race, ethnicity, nationality, sex, sexual orientation, gender identity (or expression), political belief, veteran status, any other range of human difference brought about by identity and experience. Adjustments or accommodations - Should you need any adjustments or accommodations to the recruitment process, at either application or interview, please contact us on recruitmentenquiries@paconsulting.

Security Analyst in London employer: PA Consulting

At PA Consulting, we pride ourselves on being an exceptional employer in Greater London, offering a dynamic and collaborative work culture that fosters innovation and strategic growth. Our employees enjoy flexible working arrangements, generous leave policies, and comprehensive health benefits, all while having the opportunity to develop their careers in a supportive environment that values expertise in Google Cloud and industry-specific knowledge.

PA Consulting

Contact Details:

PA Consulting Recruitment Team

We think you need these skills to ace Security Analyst in London

Cyber Security Consulting
AI Security Assessment
Threat Modelling
Security Architecture Review
Risk Management
Incident Response
Data Protection