Senior Information Assurance Consultant
Location:London – mostly remote with up to 1/2 days per week on-site
Salary: £80,000 – £88,000 + Benefits
Employment: Permanent, full-time
Security clearance: Current SC clearance required
Start date: ASAP
Venn Group Exclusive
The Opportunity
We are working with a specialist organisation seeking a Senior Information Assurance Consultant to support the accreditation of systems forming part of the UK’s CNI.
You will join an experienced team but take responsibility for your own area of work, providing security assurance, risk management and accreditation support across complex Windows and Linux environments.
This is not a hands-on engineering position. However, you must be technically credible and capable of understanding how systems operate, identifying security risks and assessing compliance with security controls across the full OSI model.
Key Responsibilities
- Support security accreditation and assurance activities across multiple critical systems
- Specify, interpret and assess compliance with technical and organisational security controls
- Conduct and support cyber security risk assessments
- Apply the NCSC Cyber Assessment Framework and relevant government assurance standards
- Support GovAssure activities, including evidence gathering and compliance assessment
- Produce clear risk reports, assurance documentation and recommendations
- Assess security across Windows and Linux infrastructure, networks and cloud environments
- Work with technical and non-technical stakeholders to explain risks and required controls
- Take ownership of an allocated workstream while contributing to the wider assurance team
- Help clients make informed, risk-based security decisions
Essential Experience
- Strong experience in information assurance, cyber assurance or security risk consulting
- Previous responsibility for security accreditation or assurance activities
- Experience assessing compliance with security controls
- Broad technical understanding of Windows and Linux infrastructure
- Good knowledge of networks, infrastructure and the OSI model
- Experience conducting security risk assessments and producing risk reports
- Ability to understand complex system designs without being a hands-on engineer
- Current SC or DV clearance
- You will be customer facing
Desirable Experience
- Critical National Infrastructure, government, defence or national security experience
- NCSC Cyber Assessment Framework
- GovAssure
- Security accreditation methodologies and documentation
- Cloud security across Microsoft Azure or AWS
- Secure architecture and enterprise security frameworks
Useful qualifications may include:
- CISSP
- CISM
- SABSA
- TOGAF
- ISO 27001 Lead Auditor
- Microsoft Azure or AWS security certifications
Candidates donot need to hold every listed qualification.
Benefits
- Competitive salary
- Competitive (above standard) annual leave, increasing with service
- Funded professional training and certifications
- Opportunities to attend relevant industry conferences
- Electric vehicle salary-sacrifice scheme
- Work on nationally significant programmes
- Long-term professional development opportunities
Interested candidates should reach out to