Lead Cyber Security Consultant (Defence)

Sanderson
South West England, United Kingdom
Last month
Job Type
Permanent
Work Pattern
Full-time
Work Location
Hybrid
Seniority
Lead
Security Clearance
Required
Posted
23 Apr 2026 (Last month)

Benefits

Private healthcare & wellbeing support Flexible working (remote with travel) Career pathways, mentoring and continuous learning Inclusive, supportive culture

Lead Cyber Security Consultant (Defence)

UK Remote (travel required approx. 60% / 3 days onsite per week)
Full-time & Permanent | Consultancy
Competitive salary + Excellent benefits

About the Opportunity

We're working with an established and growing UK cybersecurity consultancy expanding its Defence and Public Sector practice.

This is a great opportunity for an experienced security professional to lead high-impact programmes, influence senior stakeholders, and shape security outcomes across MOD and wider Defence environments.

The Role

As a Lead Cyber Security Consultant, you'll take ownership of multiple client engagements, delivering expert advice across governance, risk, compliance, and Secure by Design practices.

You'll work closely with senior stakeholders to assess risk, define security controls, deliver assurance activities, and support secure architecture across complex, high-profile systems.

This is a hands-on, strategic role that combines leadership, client engagement, and technical depth.

Key Responsibilities

  • Lead Secure by Design and security assurance activities across MOD and Public Sector programmes
  • Support and guide the application of risk management frameworks, ISMS, and Enterprise Security Risk Management
  • Conduct and lead workshops with technical and business stakeholders
  • Produce clear, actionable reporting on risk, vulnerabilities, and remediation
  • Provide pragmatic, proportionate recommendations aligned to business goals
  • Support secure design across cloud and on-premise platforms
  • Contribute to internal knowledge sharing and thought leadership

Experience & Expertise

  • Strong background in Technical/Security Architecture or Governance, Risk & Compliance
  • Experience working in Defence / MOD environments
  • Strong analytical and communication skills, with the ability to influence senior stakeholders
  • Passion for continuous learning and high-quality security outcomes

Desirable Knowledge

  • SAC (Security Assurance Coordinator) or Delivery Team Security Lead experience
  • MOD/GDS Secure by Design
  • Familiarity with:
    • JSP440, JSP604/453, JSP490
    • Supplier Chain Assurance
    • GDPR, PCI DSS, ICO
    • ISO 27001, NIST CSF, CIS Controls v8
  • Skills in:
    • Threat modelling (kill chain, attack trees, etc.)
    • Cloud security (AWS, Azure), containerisation, firewalls
    • Secure SDLC
    • HLD/LLD review
    • ITHC scoping and remediation

Certifications (Highly Desirable)

  • CIISEC
  • UK Cyber Security Council registration (Chartered or Principal)
  • AWS/Azure Security (Professional)
  • CCSP, CISSP, CISM
  • ISO 27001 Lead Auditor

Security Vetting / Clearance

  • Active and transferable DV clearance is essential
  • Must be a sole British National and UK-based

Benefits

  • Competitive salary and benefits package
  • Private healthcare & wellbeing support
  • Flexible working (remote with travel)
  • Career pathways, mentoring and continuous learning
  • Inclusive, supportive culture

Interested?

Submit your application to learn more about this exciting opportunity.

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason,please let us know when you apply or talk to the recruiters directly so we can support you.

Related Jobs

View all jobs

Senior Cyber Security Consultant

Oscar Technology Portsmouth, United Kingdom
£60,000 – £70,000 pa Hybrid Clearance Required

Senior Penetration Tester/ Security Consultant

VIQU IT Horsham, West Sussex, United Kingdom
£75,000 – £85,000 pa On-site

Senior Penetration Tester/ Security Consultant

VIQU IT Recruitment Horsham, United Kingdom
£75,000 – £85,000 pa On-site

Security Architect

DCV Technologies London, United Kingdom
£600 – £650 pd Hybrid

Cyber Security Delivery Manager

Oscar Technology Portsmouth, United Kingdom
£80,000 – £90,000 pa Hybrid Clearance Required

Senior Customer Success Engineer

Darktrace London, UB8 1LQ, United Kingdom

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.