Senior Information Security Consultant

TransUnion
Leeds
1 week ago
Create job alert

We Are TransUnion:


TransUnion is a major credit reference agency, and we offer specialist services in fraud, identity and risk management, automated decisioning and demographics. We support organisations across a variety of sectors including finance, retail, telecommunications, utilities, gaming, government and insurance.


We’re looking for a Senior Information Security Consultant to join our growing team.


The Senior Security Consultant is responsible for maintaining end-to-end security through compliance with global policy, standards, regulations and industry best practices. This person works with Information Security management to implement a cloud first programme for enabling security standards across people, process and technology within the TransUnion Monevo portfolio.


Day to Day You’ll Be:

  • Guides and advises technology teams on infrastructure vulnerability and threat management principles, secure coding practices, secure software development methodologies, and secure development lifecycle (SDLC) processes
  • Works with engineering and development team to ensure in-house technologies comply with relevant security standards, regulations, and industry certifications, such as OWASP, CIS, PCI-DSS, ISO27001 to ensure security is prioritised throughout the development lifecycle
  • Maintains current understanding of policy, regulations, and compliance standards that affect assigned areas of responsibility and proactively helps to update internal standards, best practices and architectures based on this information
  • Assists Engineering teams with adoption to changes in application security tooling (SAST, DAST, etc.) and interpretation of its results to ensure vulnerabilities are addressed on a timely basis and prevented from deployment into production
  • Builds relationships and partners with functional areas and leadership across the business and Global Technology to raise awareness and support for Product Security
  • When necessary, conducts Threat Modeling of products and applications within the organization to identify potential threats and vulnerabilities
  • Provides periodic updates, education and presentations to staff and management on various aspects of product security
  • Maintains relationships with internal and external auditors and assessors to facilitate execution of audits and assessments
  • Stays up to date with emerging threats, technologies, and industry trends to proactively identify and address potential risks to the organisation's products


Essential Skills & Experience:

  • 5+ years of experience working with application security, product security and product security architectures with a focus on compliance with policies, standard, regulations and best practices
  • 3+ years of information security experience in cloud environments.
  • In depth experience secure coding practices, threat modeling, secure architecture design, and secure SDLC/CICD pipelines
  • In-depth technical experience with identifying and advising on the remediation of application security vulnerabilities on application platforms, including cloud and web based
  • Demonstrated ability as a proactive action-oriented problem solver in complex technology and organizational environments
  • Experience in presenting to senior technology and information security executives and in influencing stakeholders to achieve strategic objectives
  • Experience in working with industry frameworks and standards such as OWASP, PCIDSS, ISO27001/27002, CIS and NIST
  • Information Security (CISSP, CISA, Security +) and cloud certification (preferably GCP/AWS)


What’s In It For you?

At TransUnion you will be joining a friendly, forward thinking global business.

As well as an excellent salary and bonus scheme or commission scheme (if joining our sales teams) our benefits package comes with:


  • 26 days’ annual leave + bank holidays (increasing with service)
  • Global paid wellness days off + a bonus day off to celebrate your birthday
  • A generous contributory pension scheme + access to the TransUnion Employee Stock Purchase Plan
  • Private health care + a variety of physical, mental and financial fitness wellbeing programmes such as access to mindfulness tools
  • Access to our diversity forums and communities so you can get involved in causes close to your heart


TransUnion – a place to grow:

If there’s something on the list of essential / desirable skills that you can’t quite tick off, don’t let that put you off applying. We are open to exploring training and development opportunities for the right candidate to ensure you are successful.

We know imposter syndrome is real, lets confront it so we can continue to grow and thrive together


Flexibility at TU:

We recognise that our people need the freedom to balance their day-to-day lives with their work. This is why we’ve set out to create inclusive and flexible policies and practices for you to accommodate all your responsibilities and needs: children, family and beyond. If the role is advertised as full time, don’t let this stop you from applying. Let us know if you’re looking for a part time or flexible working arrangement and we can discuss this with you.


Additional support:

At TransUnion, we’re committed to fostering an inclusive and diverse workplace where all individual’s talents and perspectives are valued. When you apply for a position with us, you’re not just joining a team, you’re becoming part of a community that celebrates differences and embraces equality. We understand that everyone has different needs, which is why we offer a range of reasonable adjustments to our recruitment process. Please let us know if you require any reasonable adjustments to help you through the application process or to attend an interview with us by contacting


Interview & Hiring Process:

Most of our recruitment processes are virtual, so you’ll get to know our hiring managers and teams over the phone and through video. If we need you to attend a physical in person interview your recruiter will inform you of this.


We do not accept any unsolicited CV’s from recruitment agencies.If you are a recruitment agency on our PSL our talent team will contact you directly should we require any assistance.



Find out more about Life At TU UK:

https://twitter.com/TransUnionUK

https://www.linkedin.com/company/transunion/life/

Related Jobs

View all jobs

Senior Information Security Consultant

Senior Information Security Consultant

Senior Information Security Consultant

Senior Cyber Security Consultant (Secure By Design)

Senior Security Consultant - Security Architecture

Senior or Principal Security Consultant (Risk Management)

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Job Interview Warm‑Up: 30 Real Coding & System‑Design Questions

The need for skilled cyber security professionals has never been greater. As organisations rapidly digitise their operations and store increasing amounts of sensitive data online, cyber threats loom large—ranging from sophisticated ransomware attacks to insider threats and state‑sponsored espionage. Against this backdrop, cyber security jobs remain some of the most in‑demand and mission‑critical roles on the market. If you’re preparing for a cyber security interview, expect to be tested on a broad spectrum of topics—from secure coding and incident response to network security architecture and compliance standards. In many cases, companies also include problem‑solving exercises and system design scenarios to gauge how well you can apply theoretical knowledge to real‑world threats. To help you ace these assessments, we’ve compiled 30 real coding & system‑design questions you might encounter. Each reflects a key area of cyber security—whether it’s encryption and key management, threat modelling, or designing a zero‑trust network. Along the way, we’ll offer insights and best practices so you can stand out from the crowd. If you’re on the lookout for exciting cyber security roles in the UK, head to www.cybersecurityjobs.tech. There, you’ll discover a range of positions—covering everything from penetration testing and threat intelligence to compliance management and security operations. Let’s dive into the essentials of interview readiness.

Negotiating Your Cybersecurity Job Offer: Equity, Bonuses & Perks Explained

How to Secure Compensation That Reflects Your Value in the UK’s High-Stakes Cybersecurity Sector Introduction As cyber threats grow more sophisticated and frequent, cybersecurity professionals have never been more in demand. From thwarting ransomware attacks to architecting secure cloud infrastructures, mid‑senior cybersecurity experts play a critical role in safeguarding a company’s data and reputation. Thanks to this growing reliance on cybersecurity, employers in the UK are going above and beyond simple salary offers to attract the top echelon of talent. Although base salary remains a key component of any job offer, the broader package—encompassing equity, bonuses, and perks—can often surpass what you’d gain from a small bump in monthly pay. For cybersecurity specialists working in areas such as threat intelligence, incident response, penetration testing, or compliance, the complexity and risk mitigation you bring to the table is massive. Knowing how to negotiate the entire package ensures you are duly rewarded for keeping an organisation’s data, assets, and operations safe. In this guide, we’ll delve into every aspect of negotiating a cybersecurity job offer. Whether you’re pivoting to a mid‑senior role or cementing your expertise at an established security consultancy, understanding the full range of compensation elements will help you secure an offer that acknowledges the criticality of what you do. Let’s explore equity options, performance bonuses, and the perks that matter most, so you can come out of your next job negotiation confident that you’re getting more than just a salary.

Cyber Security Jobs in the Public Sector: Protecting the UK’s Digital Future

Cyber threats have grown exponentially in recent years, targeting both private businesses and government institutions. As technology becomes ever more embedded in daily life—managing everything from national security to healthcare records—the risk of cyber attacks also increases. In the UK public sector, where vital services and sensitive citizen data are at stake, cyber security has become a top priority. For professionals looking for a meaningful career at the intersection of technology, national security, and public service, cyber security jobs in the UK public sector present an exciting and fulfilling path. In this blog post, we’ll delve into why cyber security is so critical to government agencies, the most in-demand roles, the skills and qualifications required, and how to navigate the application process. By the end, you’ll have a clearer sense of how you can leverage your technical expertise to protect the nation’s digital infrastructure.