Cyber Security Consultant - SbD

Oscar Technology
Portsmouth, United Kingdom
Last week
£42,000 – £52,000 pa

Salary

£42,000 – £52,000 pa

Job Type
Permanent
Work Location
Hybrid
Seniority
Mid
Education
Degree
Security Clearance
Required
Posted
20 May 2026 (Last week)

Benefits

Gym Private Medical Company Pension

Cyber Security Consultant - Secure by Design | £42-52k | Portsmouth, Hybrid | SC Clearance

Are you a cyber security professional with a background in defence and a strong grasp of how Secure by Design should work in practice - not just in theory?

A specialist consultancy with a strong reputation in the defence and government space is looking to bring on a Cyber Security Consultant to support their growing portfolio of MOD-facing work. This is a genuine opportunity to do meaningful, technically credible work in an environment that values expertise over headcount.

Salary:£42-52k DOE

Package:Gym, private medical, company pension

Working Structure:Hybrid in Portsmouth ~2 days onsite

Security Clearance:Eligibility or active SC clearance

The Role:

This position has two distinct dimensions. On one hand, you'll be conducting structured assessments - evaluating how well Secure by Design principles are being embedded across defence programmes and producing clear, evidence-backed findings. On the other, you'll be working alongside programme teams to help them act on those findings, guiding them through the practicalities of building security in from day one rather than retrofitting it later.

Day to Day You'll Be:

  • Assessing how Secure by Design principles are being applied across programmes and systems, and producing well-evidenced findings and recommendations
  • Reviewing system designs, architectures, and change proposals to identify where security hasn't been adequately considered
  • Supporting client teams in embedding SbD into their ways of working from the outset
  • Evaluating risk ownership and escalation practices, helping stakeholders understand where accountability is unclear or gaps exist
  • Producing security cases, assessment reports, and assurance documentation to a high standard
  • Helping develop practical SbD guidance and processes that client teams can realistically use day to day
  • Supporting broader assurance activity including assessments against the CAF
  • Communicating clearly with technical and non-technical stakeholders, ensuring findings are understood and acted upon at every level
  • Contributing to proposal writing, business development conversations, and the ongoing development of the consultancy's SbD service offering

What You'll Need:

  • A solid working knowledge of MOD Secure by Design principles and how they apply across the defence acquisition and system lifecycle
  • Around 2-3 years of hands-on experience in cyber security risk assessment, security architecture review, or security assurance
  • The confidence to work within client organisations, build relationships, and influence without direct authority
  • Eligibility to obtain SC clearance, requiring at least 5 years continuous UK residency
  • A full UK driving licence and willingness to travel to client sites approximately two days per week.

Desired but not essential:

  • Practical experience applying MOD SbD principles within defence programmes
  • Experience working in defence or wider public sector cyber security environments
  • Familiarity with the CAF, NCSC guidance, GovAssure, or related frameworks
  • A professional certification such as CISMP or CCP, or active progress towards CISSP or CISM
  • A cyber security related degree or equivalent professional development

Apply now or reach out directly for a confidential conversation.

Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy.

To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.

Related Jobs

View all jobs

Security Consultant - CAF Assurance

Exceed Cyber limited United Kingdom
£600 – £650 pd Remote Clearance Required

Senior Security Consultant - CNI

Bridewell London, United Kingdom
Hybrid

Senior Cloud Security Consultant

Bridewell London, United Kingdom
Hybrid

Security Consultant

Huntress - Bracknell Roxburgh's Court, Edinburgh, United Kingdom
£450 pd Hybrid

Senior Penetration Tester/ Security Consultant

VIQU IT Horsham, West Sussex, United Kingdom
£75,000 – £85,000 pa On-site

Security Architect

DCV Technologies London, United Kingdom
£600 – £650 pd Hybrid

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.