Managing Consultant delivering information security consultancy specializing in GRC for LRQA clients. Driving client engagements with a focus on governance, risk, and compliance standards.
Responsibilities
Deliver information security consultancy to LRQA clients, specialising in governance, risk and compliance (GRC).
Drive engagements whilst supporting other members of the team with the ultimate aim of achieving excellent client satisfaction results.
Provision of client support to achieve compliance/certification against recognised standards such as ISO 27001, the GDPR, NIST CSF and PCI DSS.
Provision of expert advice to clients on governance structures.
Facilitation of information asset discovery workshops and engagements.
Facilitation of risk assessment workshops and engagements.
Delivery of business continuity scenario tabletop exercises.
Delivery of external stakeholder training and awareness presentations.
Mentor, coach, and guide team members to enhance their technical and consulting capabilities.
Develop and deliver training programs on GRC, risk management, and information assurance best practices.
Establish thought leadership by contributing to white papers, webinars, and conferences in the GRC space.
Requirements
Degree level qualification in Computer Science, Computer Engineering, IT, Cyber Security, or a related field or 5 years experience working within an information security role.
Minimum 2 years experience in delivering consultative engagements using well-known risk management and data security frameworks, standards, and methodologies.
ISO 27001 Lead Auditor or Lead Implementer qualification.
Experience in ISO 27001/NIST CSF implementation and use of relevant standards to build control frameworks.
Demonstrable experience communicating complex information security concepts to top level (C suite) management.
Experience in cyber resilience planning, security operations, and managing security professionals.
Strong communication skills and the ability to build rapport with key stakeholders.
Experience in some or all of the following areas of information security: GDPR regulation, PCI DSS, CMMC, SOC 2, DORA, NIS 2 Directive, HIPAA / NHS DSPT / Healthcare regulation, Business Continuity, Supplier Management, Incident Management, Physical Security.
Benefits
We are a people-focused, high-performing, high-trust professional services team.
Opportunities to make a difference.
Encourage all employees to challenge norms and empower them to get involved.
Enjoy blogging or public speaking.
Commit to getting involved in industry discussions.
Time to attend conferences and get involved in the infosec community.
Coordination role for Health and Safety in Underground Mine at Atlantic Nickel in Itagibá/BA. Focus on strategies for safety and health systems in underground operations.
Entry - Level Software Security Engineer at Tektronix focusing on secure product development and automation scripting. Collaborating with engineers to maintain cybersecurity best practices and standards.
Senior Cybersecurity Engineer at GM Financial designing scalable security capabilities to mitigate threats. Collaborating across teams and leveraging automation for enhanced security measures.
Senior Security Implementation Consultant responsible for implementing security controls in HPC environments. Working with teams on PKI, PAM, IAM, and infrastructure security solutions.
Lead Security Architect at Synchrony focusing on Zero Trust networking across various environments. Partnering with teams to design and implement secure connectivity and policies.
Enterprise Account Specialist engaging with key clients to design customized solutions within sales. Conducting market research and driving contract renewals for mid - to - large accounts.
Cybersecurity professional executing the cybersecurity program at Nightwing Intelligence Solutions. Responsible for RMF documentation, vulnerability assessments, and incident response in Sterling, VA.
Senior Network Security Engineer driving Zero Trust security fabric design and optimization at CRC Group. Hands - on role managing Zscaler and Palo Alto implementations across multi - cloud environments.
Lead Cybersecurity Engineer driving security testing automation at AT&T. Collaborating with teams to enhance security across telecom networks and systems.