Cyber Advisory - Senior Consultant
4 days ago
London
The Cyber Advisory team provides cyber security assurance, advice and guidance to clients on all aspects to help them build and maintain a robust security environment. We identify cyber risks and work closely with clients to understand their unique set of digital opportunities and challenges, providing tailored and strategic advice and guidance. We support our clients in assessing, building and managing their cyber security capabilities, from ensuring compliance with industry regulations, and mitigating potential risks to moving them towards a more mature security posture. \n Within the national cyber security team you will be responsible for delivering cyber security assurance and advisory work to a range of clients nationally and internationally. Our broad range of clients, including those in FTSE 350, will allow you to gain experience across a range of sectors including: \n\n • Financial Services, Banking, Insurance and Investment\n, • Corporates/Private Sector/Industry & Services\n, • Central and Local Government\n, • Actively involve in the delivery of our Internal Audit/Consulting engagements.\n, • Act a subject matter expert in various security and risk management domains (e.g., IT risk management, cyber risk, security target operating model, governance, compliance, cyber security maturity assessment, metrics and C-level dashboards…) and leading industry-based practices (e.g. NIST CSF, ISO 2700x…)\n, • Managing the coordination and communication of key findings and results of engagements, producing written reports and supporting oral presentations to senior client management and key senior stakeholders\n, • Maintaining an expertise and currency in industry trends\n, • Managing and mentoring junior consultants assigned as members of engagements\n, • Full understanding of the DORA regulation & NIS2 Directive and experience in implementing the regulations\n, • Experience working with regulated financial services entities\n, • 3+ years' varied experience in information security, risk management\n, • Strong understanding of security governance, risk, and compliance frameworks such as ISO 27001, NIST 800-53 / CSF, NIS2 and DORA\n, • Hands-on experience building credibility with external stakeholders\n, • Proven ability to guide and collaborate with senior stakeholders in a similar GRC, security, or risk management role\n, • Excellent communication skills, with the ability to present complex information clearly and effectively to non-technical stakeholders\n, • The ability to explain complex topics to a diverse range of audiences\n, • Strong attention to detail and the ability to deliver high quality work\n