Cyber Advisory - Junior Consultant
Role details
Job location
Tech stack
Job description
The role is to support the team in delivering internal audits but also larger scale advisory engagements. This means assisting in all aspects of the project lifecycle primary execution of fieldwork and preparation of deliverables including actively contributing to final recommendations.
Your responsibilities will include:
- Being actively involved in the delivery of our Internal Audit/Consulting engagements.
- Act a subject matter expert in various security and risk management domains (e.g., IT risk management, cyber risk, security target operating model, governance, compliance, cyber security maturity assessment, metrics and C-level dashboards…) and leading industry-based practices (e.g. NIST CSF, ISO 2700x…)
- Managing the coordination and communication of key findings and results of engagements, producing written reports and supporting oral presentations to senior client management and key senior stakeholders
- Maintaining an expertise and currency in industry trends
- Managing and mentoring junior consultants assigned as members of engagements
- Contributing to the development of project management, quality assurance and professional consulting and auditing approaches/methodologies.
The Candidate
We're looking for someone who is seriously interested in the cyber security area and wants to get first-hand experience in working in multiple industries with companies who need our help. We will help support you in every step of the way with on the job training as well as support for attaining industry professional certifications which will enhance your career in this field.
Requirements
Do you have experience in NIST standards?, The candidate will be expected to use their technical expertise to delivery projects and to ensure that our clients comply with their regulatory obligations including NIS2 or DORA.
You will need to have a broad experience of security risk management and have evidence of experience in a number of the following fields of expertise:
- Full understanding of the DORA regulation & NIS2 Directive and experience in implementing the regulations
- Experience working with regulated financial services entities
- 3+ years' varied experience in information security, risk management
- Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST 800-53 / CSF, NIS2 and DORA
- Hands-on experience building credibility with external stakeholders
- Proven ability to guide and collaborate with senior stakeholders in a similar GRC, security, or risk management role
- Excellent communication skills, with the ability to present complex information clearly and effectively to non-technical stakeholders
- The ability to explain complex topics to a diverse range of audiences
- Strong attention to detail and the ability to deliver high quality work
- CompTia Security +, CRISC, CISM or CISSP certification advantageous.
Benefits & conditions
Annual Leave + Charitable Giving Dental Insurance Wellbeing Benefits Virtual GP Cycle to Work Gym Discounts Life Assurance Pension Flexible Benefits +