Cybersecurity Assurance Consultant within Expleo's Cybersecurity Practice providing assurance on marine and defence engineering programmes. Integrating cybersecurity into programme controls and compliance while collaborating with engineering teams.
Responsibilities
Lead or support integrating cybersecurity assurance activities into engineering and programme delivery for marine and defence projects.
Develop, review, and maintain cybersecurity assurance artefacts, including risk assessments, assurance cases, control matrices, and evidence submissions.
Ensure alignment with applicable defence and industry standards and other MOD-aligned frameworks.
Engage with engineering and project teams to ensure cybersecurity is embedded into system design, technical planning, and programme governance.
Liaise with client representatives, suppliers, and accreditation authorities to support the assurance lifecycle and manage stakeholder expectations.
Support the preparation for and participation in technical reviews, audits, and risk acceptance activities.
Contribute to delivering security risk management processes, threat modelling sessions, and security design assessments.
Provide subject matter expertise on assurance requirements for secure communications, supply chain security, platform integration, and physical security interfaces.
Maintain accurate, high-quality documentation to support certification, regulatory compliance, and ongoing assurance requirements.
Contribute to internal knowledge sharing, continuous improvement of assurance methodologies, and development of Expleo’s marine and defence cyber capabilities.
Requirements
A degree (or equivalent experience) in Cybersecurity, Information Assurance, Systems Engineering, or a related technical or defence-focused discipline.
Recognised cybersecurity certifications: CompTIA, CISSP, CISM, CRISC, ISO 27001 Lead Auditor/Implementer, or equivalent.
Familiarity with MOD, maritime, or defence-specific frameworks: JSPs, DEFSTAN, NIST, IEC 62443, IMO or ISO/IEC 27001.
DV clearance (or eligibility to obtain DV as a minimum) is required.
Evidence of ongoing professional development aligned with cybersecurity assurance, defence sector standards, and engineering-led delivery models.
Benefits
Collaborative working environment – we stand shoulder to shoulder with our clients and our peers through good times and challenges
We empower all passionate technology loving professionals by allowing them to expand their skills and take part in inspiring projects
Expleo Academy - enables you to acquire and develop the right skills by delivering a suite of accredited training courses
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.