Cyber Security Consultant focusing on incident management, governance, and risk management at a UK-based IT Services Consultancy. Supporting clients in designing and assuring incident response frameworks.
Responsibilities
Define and maintain incident response policies, playbooks, and escalation models
Ensure incidents are classified, handled, and closed in line with organisational risk appetite
Act as a governance point of contact during significant cyber incidents
Assess incidents for control failures, systemic risk, and regulatory impact
Map incident response activities to frameworks such as NIST, ISO/IEC 27001, and organisational risk policies
Support audits, assurance reviews, and post-incident evidence packs
Lead or support lessons-learned reviews and root-cause analysis
Translate technical findings into risk, control, and governance outcomes
Track remediation actions and ensure they are owned, prioritised, and delivered
Brief senior stakeholders on incident impact, response posture, and residual risk
Produce clear, defensible reporting suitable for boards, regulators, and auditors
Bridge the gap between SOC teams, technical specialists, risk, and leadership
Requirements
Cyber security, incident management, risk, assurance, or GRC background
Experience working with or alongside SOC / IR teams (without needing to live on shift)
Exposure to regulated or high-assurance environments (public sector, finance, critical services, etc.)
Strong understanding of incident response lifecycle from a governance perspective
Ability to translate technical incidents into business risk and control language
Familiarity with security and risk frameworks (NIST, ISO 27001, CAF, etc.)
Confident producing documentation that survives audit without inducing migraines
Calm under pressure, structured in chaos
Comfortable saying “this is a governance issue” when everyone else says “just fix it”
Naturally curious about why incidents happen
This role will require you to have or be willing to go through Security Clearance
Benefits
Autonomy to develop and grow your skills and experience
Be part of exciting project work that is making a difference in society
Strong, inspiring and thought-provoking leadership
A supportive and collaborative environment
Development – access to LinkedIn Learning, a management development programme, and training
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.
Cybersecurity Assessment Expert at IT - Strat managing A&A of information systems for U.S. federal clients. Ensuring compliance with DOD cybersecurity policies and standards in complex IT environments.
Senior Security Engineer responsible for deploying and maintaining endpoint security solutions. Collaborating across teams to enhance security posture and supporting incident response activities.
Administrative support role within MAHLE's Thermal and Fluid Systems unit, assisting the team with various operational tasks and employee interactions.
Senior Security Engineer at PagBank focusing on application security and secure development practices. Responsibilities include testing, vulnerability management, and collaboration with development teams.
Security Software Engineer at a tool - building company automating coding. Focused on shipping secure products covering enterprise security, cloud, and embedded protections.
Senior Product Cyber Security Systems Engineer at Sonova focusing on product security and cyber threats. Collaborating with teams to maintain robust security practices and compliance.