At a Glance
- Tasks: Assess and improve security controls across cloud environments and applications.
- Company: Join a forward-thinking company dedicated to security excellence.
- Benefits: Enjoy flexible working, career development, and wellness initiatives.
- Other info: Diverse and inclusive workplace with excellent growth opportunities.
- Why this job: Make a real impact by enhancing security for diverse clients.
- Qualifications: Experience in cloud security and strong consulting skills required.
The predicted salary is between 60000 - 80000 £ per year.
We are seeking a hands-on Security Consultant who can combine deep technical delivery capability with strong client-facing consulting skills. The ideal candidate will be comfortable assessing, designing, improving and governing security controls across cloud environments, applications, APIs, infrastructure and enterprise security domains. This role requires someone who can challenge customer security assumptions, influence stakeholders, and lead difficult but constructive conversations to drive secure outcomes.
Responsibilities
- Assess current-state security maturity, identify control gaps, and define pragmatic remediation roadmaps aligned to business priorities.
- Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains.
- Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements.
- Challenge weak security assumptions with confidence, using evidence-based recommendations and clear communication with technical and non-technical stakeholders.
- Design and review secure cloud landing zones, network segmentation, identity models, logging/monitoring patterns, and guardrails.
- Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices.
- Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities.
- Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including assessments, risk registers and executive summaries.
Required Skills
- Cloud Security (preferably AWS): Hands-on experience securing cloud environments, preferably AWS, including core services, networking, identity, logging, encryption and security monitoring. Experience reviewing or implementing secure cloud architectures, landing zones, account/project structures, and preventative/detective controls. Knowledge of cloud-native security services and best practices for workload, storage, network and platform protection.
- Application / API Security: Experience identifying and mitigating application and API security risks across the software delivery lifecycle. Understanding of secure design principles, common web/API vulnerabilities, authentication/authorization models, secrets management and secure SDLC practices. Ability to work with development teams to improve application security posture and shift security left.
- SIEM Experience: Hands-on experience with SIEM platforms for log onboarding, correlation rule creation, alert triage, dashboarding and use-case tuning. Ability to improve visibility, reduce noise, and align SIEM content to relevant threats and business risks.
- Organisation / General Security: Broad understanding of enterprise security domains including policy, governance, risk, compliance, awareness, third-party risk and operational security. Experience translating business and regulatory requirements into practical security controls and improvement plans.
- Identity & Access Management (IAM): Hands-on experience with identity and access management principles including RBAC, least privilege, privileged access, federation/SSO, MFA and access governance. Experience reviewing entitlement models, service identities and access control weaknesses across enterprise and cloud platforms.
- Data Protection: Experience implementing or advising on data classification, encryption, key management, secrets handling, tokenisation/masking, backup security and data lifecycle protection. Understanding of how to secure sensitive data in transit, at rest and in use across modern platforms.
- Infrastructure Security: Experience securing operating systems, virtual machines, containers/Kubernetes, networks and platform services using hardening, segmentation, vulnerability management and secure configuration practices. Ability to assess infrastructure risks and recommend practical remediation approaches.
- Threat Detection & Incident Response: Experience in threat detection engineering, incident triage, investigation support, response coordination and lessons-learned improvement activities. Ability to map telemetry and controls to attack paths, detection scenarios and response playbooks.
- Infrastructure as Code (IaC): Hands-on experience with infrastructure as code and automation, including reviewing templates/modules for security risks and embedding policy/compliance checks into delivery pipelines. Ability to apply security guardrails to repeatable platform provisioning and change delivery.
- Strong Consulting Skills: Strong consulting and stakeholder management skills, with the confidence to challenge customer assumptions and lead difficult security conversations when needed. Ability to balance risk, delivery timelines, business context and technical constraints to provide credible, pragmatic recommendations. Strong written and verbal communication skills, including workshops, assessments, reports and executive-level briefings.
Core Skills & Competencies
- Cloud security architecture and control design
- Security assessments, gap analysis and remediation planning
- Stakeholder engagement and client advisory
- Security architecture documentation and reporting
- Risk-based decision making and prioritisation
- Cross-functional collaboration with engineering, operations and leadership teams
- Strong analytical, investigative and problem-solving capability
Preferred Qualifications
- Experience working in consulting, professional services, or customer-facing transformation programmes.
- Relevant certifications in cloud, security, architecture or incident response are advantageous.
- Exposure to regulated environments and security frameworks is beneficial.
- Experience with DevSecOps, CI/CD security integration and security automation is desirable.
Benefits
- Share in our success with a Quarterly Performance-Related Profit Share Scheme.
- Strong career progression & mentorship coaching through our Strength in Balance & Leadership schemes with a dedicated quarterly Pathways Career Development programme.
- Flexible/remote working and life-events-friendly flexibility.
- Financial wellbeing initiatives – Pension, private healthcare cover, life assurance, financial advice and an employee discount scheme.
- Employee wellbeing schemes – gym discounts, bike to work, fitness classes, mindfulness workshops, Employee Assistance Programme and holiday allowance.
- Enhanced maternity/paternity leave, marriage/civil partnership leave and special leave policies.
- Educational assistance, incentivised certifications and accreditations including AWS, Microsoft, Oracle and Red Hat.
- Reward schemes including Annual Excellence Awards & "Call-Out" platform.
- Environment, Social and Community First initiatives allowing local fundraising and development involvement.
Equal Opportunity Statement
Version 1 is an equal opportunities employer. We are committed to building a diverse, inclusive and respectful workplace where everyone feels valued and able to thrive. We welcome applications from people of all backgrounds, identities and lived experiences, and we value the different perspectives people bring including those shaped by disability and neurodiversity. We want every candidate to have a positive and accessible recruitment experience. If you need reasonable adjustments at any stage of the process, please contact your recruiter at Version 1. We will consider all requests carefully, respectfully and confidentially.
Security Consultant employer: Version 1 Solutions Limited
At Version 1, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters collaboration and innovation. Our commitment to employee growth is evident through our robust mentorship programmes and career development initiatives, ensuring that you can thrive in your role as a Security Consultant. With flexible working arrangements, comprehensive benefits, and a strong focus on diversity and inclusion, we create an environment where every team member feels valued and empowered to make a meaningful impact.
Contact Details:
Version 1 Solutions Limited Recruitment Team
StudySmarter Expert Advice🤫
We think this is how you could land Security Consultant
✨Tip Number 1
Network like a pro! Reach out to your connections in the security field, attend industry events, and join relevant online communities. The more people you know, the better your chances of landing that Security Consultant role.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your cloud security projects, assessments, and any cool solutions you've implemented. This will give potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on your consulting skills. Be ready to discuss how you've challenged security assumptions in the past and how you can influence stakeholders effectively. Practice makes perfect!
✨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Plus, it gives you a chance to showcase your enthusiasm for the role right from the start.
We think you need these skills to ace Security Consultant
Some tips for your application 🫡
Tailor Your Application:Make sure to customise your CV and cover letter to highlight your experience with cloud security, application security, and incident response. We want to see how your skills align with the specific requirements of the Security Consultant role.
Showcase Your Consulting Skills:Don’t forget to emphasise your client-facing experience and ability to lead tough conversations. We’re looking for someone who can confidently challenge assumptions and provide clear, evidence-based recommendations.
Be Clear and Concise:When writing your application, keep it straightforward and to the point. Use bullet points where possible to make your achievements stand out. We appreciate clarity, especially when it comes to your technical expertise and consulting capabilities.
Apply Through Our Website:We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at Version 1 Solutions Limited
✨Know Your Stuff
Make sure you brush up on your cloud security knowledge, especially if you're familiar with AWS. Be ready to discuss specific security controls and architectures you've worked with, as well as any challenges you've faced in securing cloud environments.
✨Showcase Your Consulting Skills
This role requires strong client-facing skills, so practice articulating your thoughts clearly. Prepare examples of how you've influenced stakeholders or led difficult conversations about security assumptions. Confidence is key!
✨Prepare for Technical Questions
Expect to dive deep into technical topics like SIEM platforms, IAM principles, and data protection strategies. Review common vulnerabilities and secure design principles, and be ready to explain how you've applied these in real-world scenarios.
✨Engage with the Interviewers
Don't just answer questions—engage in a dialogue! Ask insightful questions about their current security challenges and how they approach risk management. This shows your interest and helps you assess if the company aligns with your values.