Senior Information Governance Security Consultant at Civica improving information governance and cyber security for public and private sector clients. Leading security engagements and consultancy for resilience, compliance, and risk management.
Responsibilities
Help organisations strengthen their information governance and cyber security posture.
Deliver consultancy that directly improves resilience, compliance, and risk management.
Lead meaningful security engagements, from gap analysis and risk assessments to certification support and security improvement programmes.
Provide a strong mix of autonomy, variety, and influence.
Enjoy solving complex security challenges and driving best practice.
Work closely with clients to deliver real-world impact.
This role can be performed predominantly from home, with occasional travel to offices.
Requirements
Deliver Information Governance (IG) and Information Security (IS) consultancy services to clients
Conduct gap analysis, risk assessments, and risk treatment planning
Assess organisations against standards such as Cyber Essentials, Cyber Essentials Plus, and ISO 27001
Support clients through certification processes and security improvement programmes
Perform audits to ensure effectiveness of security controls
Produce high-quality security reports and present findings to stakeholders
Provide continuous assessment of client security practices and recommend improvements
Contribute to the development and enhancement of IG and cyber security service offerings
Deliver consultancy across recognised frameworks such as the NCSC Cyber Assessment Framework (CAF)
Develop and review security policies, procedures, and controls
Deliver security awareness training, workshops, and exercises
Collaborate with internal teams and support pre/post sales activities
Mentor colleagues and contribute to team knowledge sharing
Maintain strong client relationships and stakeholder communication
**Experience & Skills**
Strong experience in IT Governance, Risk & Compliance (GRC) across cloud and on-premise environments
Knowledge of security and data protection frameworks including ISO 27001, Cyber Essentials Plus, and GDPR
Experience applying risk management principles and methodologies
In-depth understanding of Cyber Essentials and NCSC CAF
Ability to advise on security strategy and risk mitigation
Strong knowledge of information security principles and technical controls
Proven experience in client-facing roles
Excellent communication skills, with the ability to engage stakeholders at all levels
Strong organisational skills with attention to detail
Ability to work independently with minimal supervision
**Nice to have:**
Experience implementing and auditing ISMS aligned to ISO 27001
Relevant certifications such as CISSP, CISM, CISA, or CEH
Experience working with frameworks such as DTAC, DSPT, CAF, or PSN
Cybersecurity Intern participating in business transformation projects for major industries. Engaging in Cybersecurity Risk Assessment and developing innovative solutions in the IT sector.
Account Specialist managing sales and client relationships for security solutions in the public sector. Conducting market research and focusing on contract renewals and compliance in Australia.
Security Supervisor providing comprehensive safety services across Nord Anglia International School campus. Leading security team to ensure operational and Health and Safety compliance while mitigating risks.
Security Officer ensuring safety and compliance at WarHorse Gaming in Lincoln, NE. Monitoring premises, responding to incidents, and assisting guests and team members.
Security Supervisor overseeing loss prevention and security operations at WarHorse Gaming Lincoln casino. Ensuring a safe environment for guests and team members while upholding regulatory requirements.
Consultor de Segurança do Trabalho na Votorantim Cimentos consolidando medidas de segurança e gestão de EPIs. Gestão de processos e compliance em segurança de trabalho com foco em excelência.
Coordination role for Health and Safety in Underground Mine at Atlantic Nickel in Itagibá/BA. Focus on strategies for safety and health systems in underground operations.
Entry - Level Software Security Engineer at Tektronix focusing on secure product development and automation scripting. Collaborating with engineers to maintain cybersecurity best practices and standards.
Senior Cybersecurity Engineer at GM Financial designing scalable security capabilities to mitigate threats. Collaborating across teams and leveraging automation for enhanced security measures.