FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in information security and cybersecurity principles, with a strong focus on risk management, security programme development, and client advisory services. Capable of effectively communicating complex security concepts and managing multiple client engagements while delivering practical solutions.
Highest-signal resume keywords
Information Security AdvisoryRisk ManagementSecurity Programme DevelopmentClient-Facing Consulting SkillsGRC Platforms Experience
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information SecurityCybersecuritySecurity ControlsRisk AssessmentSecurity ProcessesSecurity OperationsFedRAMPNIST SP 800 SeriesSecurity GovernanceSecurity Compliance
Soft Skills
Communication SkillsRelationship-BuildingOrganizational SkillsProblem-SolvingConsulting Skills
Tools & Technologies
GRC PlatformsVantaCognisys Methodologies
Industry Keywords
Information Security RisksSecurity ProgrammesSecurity AssuranceSecurity GovernanceSecurity Policies
Tech Stack
Tools & technologiesCyber Security
About the role
Key responsibilities & impact- Deliver ongoing information security advisory engagements across clients and industries
- Provide practical guidance on information security risks, security programmes and improvement priorities
- Support vCISO-style advisory services and ongoing security programme development
- Assess and improve the effectiveness, maturity and sustainability of security programmes
- Prioritise security initiatives based on risk, business objectives and available resources
- Support specialist information security projects and additional client work
- Develop realistic approaches to complex security problems
- Support the development, maintenance and improvement of information security programmes
- Assess security risks, controls, processes and operating practices
- Develop and maintain security roadmaps, risk registers, remediation plans and improvement programmes
- Advise on security governance, risk management, controls, policies, procedures and operating processes
- Apply relevant frameworks, standards, regulations and industry practices
- Support security assurance and compliance activities
- Use GRC platforms and other security tooling
- Build trusted, long-term relationships with client stakeholders
- Lead client meetings, workshops and advisory sessions
- Communicate risks, recommendations and trade-offs clearly
- Manage expectations and communicate progress, challenges and dependencies
- Own defined client engagements and workstreams
- Manage competing priorities across multiple clients and projects
- Plan and organise delivery to meet agreed timelines and outcomes
- Identify risks and blockers and take appropriate action
- Contribute to scoping and shaping additional client work
- Produce clear, accurate and commercially appropriate client deliverables
- Apply Cognisys methodologies and quality standards
- Share knowledge and contribute to the wider GRC consulting team
Requirements
What you’ll need- 3–5 years' experience in information security, cybersecurity, security consulting or a related industry role
- Strong practical understanding of information security and cybersecurity principles
- Experience working in an operational, technical or industry information security environment
- Experience identifying and managing real-world security risks
- Experience developing, operating, assessing or improving security programmes
- Experience with security controls, risk management, security processes or security operations
- Experience with FedRAMP and the NIST SP 800 series would be helpful
- Strong client-facing and consulting skills
- Excellent written and verbal communication skills
- Ability to present ideas and recommendations clearly to audiences at all levels
- Experience working with technical, operational and senior stakeholders
- Strong questioning, listening and relationship-building skills
- Ability to develop practical, commercially sensible solutions
- Strong organisational skills and ability to manage multiple clients, workstreams and competing priorities
- Comfortable operating independently and using professional judgement
- Consulting experience is highly desirable
- Experience with vCISO, security advisory or ongoing security programme support is highly desirable
- Experience with GRC platforms such as Vanta is desirable
Benefits
Comp & perks- 22 days PTO per year plus 11 American bank holidays
- 1 day of paid leave for your Birthday
- Individual access to a healthcare and life insurance plan
- Employee mental health and wellbeing platform
- 2% employer contributions to the Fidelity 401k scheme in accordance with statutory requirements
- £2,000 annual training budget
- Up to £2,000 per successful referral
