Senior Information Security Consultant

3 days ago


London, United Kingdom The AA Full time

**Company description**:
**Location**: Hybrid working between your home and our Basingstoke office

**Employment Type**: Permanent, full time

**Salary**:Up to £70,000 per annum (depending on experience and skills)

**Additional Benefits**:Car allowance, annual bonus + private medical insurance

Solution bringers. Day makers. Extra milers. We are the AA. And we keep everyone’s show on the road. There for our members wherever and whenever they need us, we’re always ready for anything. That’s why, for over 100 years, we’ve continued to evolve and adapt. Today, as the nation’s number one motoring organisation, we offer a range of excellent products and services to millions of customers. As a Senior Information Security Consultant, you’ll join our exciting journey to fulfil our future vision. We aim to support the UK’s 17m drivers and to facilitate their driving lives through data and innovation; to succeed with this, we require a step-change in pace and thinking. Join us as we transform and deliver on this ambitious vision.

LI-THEAA #LI-Hybrid

**This is the job**:
Joining the AA as a Senior Information Security Consultant, you will be focus on cybersecurity governance, risk and compliance activities as well as maintaining a cybersecurity assurance framework, aligned to NIST, PCI-DSS and within the AAs existing ISO27001 compliant ISMS framework. Our InfoSec Consultants also actively get involved with the testing of security risk controls for the business.

**What will I be doing?**:

- Acting as a SME on a portfolio of different projects across the organisation i.e., large acquisitions through the launch of new business ventures to third-party solutions and affiliates
- Working with the IT solutions team to detail the security design into project templates. Owning documentation of security risk assessments, identifying issues/risks and ensuring overall Information Security standards and processes are followed by both internal and external parties
- Managing and delivering testing of security risk controls, working with the business to maintain our ISMS and penetration testing for the wider project team before ‘go-live’
- Support deliveries with robust risk assessment/mitigation and ensure that they align to the appropriate technology change framework and solutions meet the relevant operating principles, in order to protect the Business, whilst continuing to deliver change
- Identify, engage, and manage 3rd party organisations to ensure appropriate vulnerability assessments and security audits are conducted to ensure our security processes and systems; providing recommendations to minimise any likelihood and impact of any denial of service, penetration, or fraudulent activities / attacks that could affect the business or brand.
- Contribute towards the design and operation of related compliance monitoring and improvement activities to ensure compliance both with internal security policies, applicable laws and regulations i.e., PCI DSS

**What do I need?**:
**Essential**:

- Significant experience of working within Information Security or Cyber Security at a Consultant level
- Possess good understanding of applicable information security regulations and standards i.e., ISO 27002, ISO 27001:2013, ISO 13335, ISO 13569, Data Protection Act (2018), RMADS, EU Data Protection Directive and PCI DSS etc.
- Knowledge of IT security solutions and their integration and operation into business systems and processes. As well as prior experience using formalised security risk management methodologies
- Understanding and experience in deploying infrastructure, software solutions and architecture within complex environments
- Knowledge of Threat Monitoring Procedures, cyber risks/threats and information security best practice driving continuous service improvements

**Additional Information**:
We’re always looking to recognise and reward our employees for the work they do. As a valued member of The AA team, you’ll have access to a range of benefits including:

- Diverse learning and development opportunities to support you to progress in your career
- 25 days annual leave plus 8 bank holidays
- Free AA breakdown membership after 12 months, 50% discount in your first year
- Discounts on AA products including car and home insurance
- Employee discount scheme that gives you access to a car salary sacrifice scheme plus great discounts on healthcare, shopping, holidays and more
- Worksave pension scheme with up to 7% employer contribution
- Dedicated Employee Assistance Programme

Plus, so much more



  • London, United Kingdom Bulletproof (Cyber Security) Full time

    WorkNest Cyber LTD (formally known as Bulletproof Cyber), is looking for an ISO27001 subject matter expert with experience of delivering consultancy around all the topic, including gap analysis, audits, implementations projects and ad hoc Information Security queries, to a wide variety of customers.You should have an excellent understanding of ISO27001 with...


  • London, United Kingdom The AA Full time

    **Company Description/ Business Unit**: **Location: London (hybrid working 2 office days per week)** **Employment Type: Permanent, full time** **Additional Benefits: Annual Bonus, Cash-Car Allowance & Private Medical Insurance** Think the AA is just about roadside assistance? Think again. For over a century, we've been evolving and adapting. Today, as...


  • London, United Kingdom PGI - Protection Group International Ltd Full time

    **Senior Information Security Consultant** PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our consultants help clients to ensure the confidentiality, integrity, and availability of their organisation's...


  • London, United Kingdom Gemserv Full time

    **Senior Information Security Consultant**: Gemserv is an expert provider of professional services, helping clients make the most of a world increasingly driven by data and technology. Gemserv has experienced significant growth in recent years, winning new contracts and seeing our role on existing ones extended. We have ambitious plans for the future and...


  • London, Greater London, United Kingdom Protection Group International Full time

    Information Security Consultant (QSA)PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our vision is a world resilient to digital threats and online harm. To achieve this, we need to grow our team of talented...


  • London, United Kingdom Sure Exec Search Full time

    Information Security ConsultantLocation: London Work Arrangement: Hybrid (1 day on-site) Rate: £425–£450 per day (Inside IR35, via Umbrella) Duration: 6 months initially (strong extension potential) Start: ImmediateSponsorship: Not availableWe are seeking a highly adaptable Information Security Consultant with strong consultancy experience and the...


  • London, Greater London, United Kingdom Protection Group International Full time

    Information Security Consultant (QSA)PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our vision is a world resilient to digital threats and online harm. To achieve this, we need to grow our team of talented...


  • London, United Kingdom Waterstons Full time

    Who you'll be joiningWe're problem solvers at heart. Sometimes the answer is technology, sometimes it is strategy, and sometimes it is a strong cup of tea and a bit of thoughtful conversation. Whatever it takes, we work it out with our clients.We're an IT consultancy that helps organisations get the best out of their technology. That means keeping them...


  • london (city of london), United Kingdom Sure Exec Search Full time

    Information Security Consultant Location: London Work Arrangement: Hybrid (1 day on-site) Rate: £425–£450 per day (Inside IR35, via Umbrella) Duration: 6 months initially (strong extension potential) Start: Immediate Sponsorship: Not available We are seeking a highly adaptable Information Security Consultant with strong consultancy experience and the...


  • London, United Kingdom Hamilton Barnes Full time

    Role Are you ready to become an integral part of the cybersecurity defence against emerging threats, including nation-state actors and Advanced Persistent Threat groups? You’ll have the opportunity to step into the role of Senior Information Security Consultant, where your expertise in cybersecurity will make a significant impact. What’s in it for you?...