GRC Consultant
5 months ago
We are looking for
a QSA to join our GRC team in the UK. This role is home-based, with travel to client sites .You’ll be part of a team delivering security consultancy in a client-facing role, with a particular focus on:
PCI DSS consultancy and assessments Security reviews against standards or guidelines such as the NCSC Steps to Cyber Security and NIST CSF ISO gap analyses Helping our clients to implement Information Security Management Systems and achieve and maintain ISO certification Conducting risk assessments Creating or supporting third-party risk management and audit programmesEssential skills and experience:
Be a current QSA who has completed multiple on-site PCI DSS assessments, and be able to demonstrate a mature understanding of complex PCI DSS environments, and an ability to consult as well as assess Have experience with ISO , including implementing an ISMS and achieving certification Have experience working with the NIST CSF A good understanding of core concepts and technologies. For example, networking, Windows and Linux operating systems, and security technologies such as antimalware, IDS/IPS, etc. You do not need hands-on experience with these technologies or to have worked in an operational role Be experienced working as a consultant in a client-facing role, leading delivery. You’ll be friendly and approachable and able to work well with our clients Ability to work in a structured and methodical manner, with support to manage your own time with a focus on quality workYour primary role will be to deliver PCI DSS consultancy and assessment activities to our clients as part of an established and experienced team of consultants. It’s not all PCI DSS, though, and you’ll be involved in other areas as listed above and have opportunities to scope and deliver more bespoke engagements.
Location
This role is home-based, with an expectation of travel to client sites, primarily in the UK, but with some opportunities for European and international travel; therefore, all candidates must be willing to travel PCI DSS assessment activities require on-site work, but most other work is delivered at least partly from home We can support working from across the UK All applicants will require residence in the UKWhat you’ll be doing in your role:
In your role, you will deliver consultancy services to our clients, covering the following areas:
Conduct security reviews against standards or guidelines such as the NCSC Steps to Cyber Security, NIST CSF, Cyber Essentials Perform ISO gap analyses Help our clients to implement Information Security Management Systems and achieve and maintain ISO certification PCI DSS consultancy and gap analyses Assistance in implementing PCI DSS requirements such as policy writing Complete on-site assessments and reports on compliance Complete risk assessments Conduct third-party risk reviews Support pre-sales where required by assisting in the pre-sales process, understanding client requirements and contributing to proposals and scoping of engagementsKey Skills:
Essential skills and experience:
Be a current QSA who has completed multiple on-site PCI DSS assessments, and be able to demonstrate a mature understanding of complex PCI DSS environments, and an ability to consult as well as assess Have experience of ISO , including implementing an ISMS and achieving certification A good understanding of core concepts and technologies. For example, networking, Windows and Linux operating systems, and security technologies such as antimalware, IDS/IPS, etc. You do not need hands-on experience with these technologies or to have worked in an operational role Be experienced working as a consultant in a client-facing role, leading delivery. You’ll be friendly and approachable and able to work well with our clients Ability to work in a structured and methodical manner, with support to manage your own time with a focus on quality workDesirable skills and experience:
Experience working with the NIS directive, NCSC CAF or CAA ASSURE Be experienced at C-Level, including presenting to top-level management, decision makers and risk owners. You will have the ability to articulate information security risks in a way that demonstrates an understanding of the broader business impact Demonstrate leadership as a senior team member. You will be expected to have input into developing the wider team, take ownership of service areas, and be able to support and mentor other team members Experience in delivering security awareness training to end-users Hand-on technical experience, even if not recentCertifications
As an active QSA you must hold a certification from list A and list B per the PCI SSC requirements. Whilst a collection of certifications is less important than experience, many areas in which our team works have pre-requisite certifications that our consultants either hold or are working towards achieving.
Any of the following certifications would be beneficial:
ISO lead auditor or lead implementer CISSP - (ISC) Certified Information System Security Professional CISM - ISACA Certified Information Security Manager CISA - ISACA Certified Information Systems Auditor CRISC - ISACA Certified in Risk and Information Systems ControlWhat we offer:
We are a people-focused, high-performing, high-trust professional services team. You’ll be part of a diverse and growing international group of consultants, and we go out of our way to make sure our consultants feel part of our team. We use technology to ensure we’re always communicating with each other and schedule time every week to talk as a team.
The successful candidate will have opportunities to:
Make a difference – as clichéd as it sounds, this really is true. We encourage all consultants to challenge norms and empower them to get involved. This might be getting involved with other teams or developing a new service offering – but if you want to do something, we always try to make it happenGet involved – enjoy blogging or public speaking? Our team is committed to getting involved in industry discussions. We make time to attend conferences and get involved in the infosec community
Develop their skills – we love learning and ensure we find time for professional development. This isn’t just about collecting certifications and attending training courses – gaining and sharing knowledge in new areas is vital. These don’t always have to be directly related to your “day job”; in fact, we actively encourage developing knowledge in new and exciting domains
-
GRC Consultant
2 weeks ago
Birmingham, Birmingham, United Kingdom LRQA Full timeAbout the RoleWe are seeking a highly skilled GRC Consultant to join our team in the UK. As a key member of our GRC team, you will be responsible for delivering security consultancy services to our clients, with a focus on PCI DSS, ISO, and NIST CSF.Key ResponsibilitiesConduct security reviews against standards or guidelines such as the NCSC Steps to Cyber...
-
GRC Consultant
1 week ago
Birmingham, Birmingham, United Kingdom LRQA Full timeAbout the RoleWe are seeking a highly skilled GRC Consultant to join our team at LRQA. As a GRC Consultant, you will be responsible for delivering security consultancy services to our clients, covering a range of areas including PCI DSS consultancy and assessment, security reviews against standards or guidelines, and ISO gap analyses.Key...
-
Servicenow Pre-sales Consultant
4 months ago
Birmingham, United Kingdom Modis UK Full time**ServiceNow Pre-Sales Consultant (SecOps, GRC, Risk) | Remote | To £85k+** I am working with an outstanding organisation who are seeking a dynamic and experienced ServiceNow professional to join their team. In this role, you will be the technical expert and trusted advisor who inspires customers about how their software solutions can meet their business...
-
Grc Consultant
5 months ago
Birmingham, United Kingdom LRQA group Full time**About Nettitude** At Nettitude, we are passionate about cybersecurity and managing cyber risk - keeping our clients data and business secure and protected at every stage of its journey. We aim to be ‘their trusted cyber partner’. Founded in 2003, Nettitude is an award-winning provider of cybersecurity services, bringing innovative thought leadership...
-
GRC Consultant
5 days ago
Birmingham, Birmingham, United Kingdom LRQA Full timeJob DescriptionAt LRQA, we are seeking a skilled Security Specialist to join our team. In this role, you will be responsible for delivering security consultancy services to our clients, covering areas such as security reviews, ISO gap analyses, and risk assessments.Key ResponsibilitiesConduct security reviews against standards or guidelines such as the NCSC...
-
Cyber Security Consultant
4 weeks ago
Birmingham, Birmingham, United Kingdom Robert Walters Full timePrincipal Cyber Security Consultant (NHS)Salary: £90,000 plus bonusLocation: Home BasedKeywords: NHS, Strategy, CAF, DSPT, NIS, GRC, CISSP, CISM, Cyber Security, Consultant, Splunk, Sentinel, Stakeholder Management, Technical Documentation, Compliance, Microsoft Technology StackOur client is seeking a highly skilled Cyber Security Consultant with...
-
Cyber Security Consultant
4 weeks ago
Birmingham, Birmingham, United Kingdom Robert Walters Full timePrincipal Cyber Security Consultant (NHS)Salary: £90,000 plus bonusLocation: Home BasedKeywords: NHS, Strategy, CAF, DSPT, NIS, GRC, CISSP, CISM, Cyber Security, Consultant, Splunk, Sentinel, Stakeholder Management, Technical Documentation, Compliance, Microsoft Technology StackOur client is seeking a highly skilled Cyber Security Consultant with...
-
Principal Cyber Security Consultant NHS
3 weeks ago
Birmingham, United Kingdom Robert Walters Full timePrincipal Cyber Security Consultant (NHS)Salary: £90,000 plus bonusLocation: Home Based Keywords: NHS, Strategy, CAF, DSPT, NIS, GRC, CISSP, CISM, Cyber Security, Consultant, Splunk, Sentinel, Stakeholder Management, Technical Documentation, Compliance, Microsoft Technology Stack Our client is seeking a Cyber Security Consultant with substantial NHS...
-
Cyber Security Consultant
2 weeks ago
Birmingham, Birmingham, United Kingdom Robert Walters Full timeAbout the RoleWe are seeking a highly skilled Cyber Security Consultant to join our team at Robert Walters. As a key member of our dynamic team, you will have the opportunity to leverage your expertise to run engagements and lead projects with a national NHS remit.Key ResponsibilitiesEnhance our client's security estateDeliver projects as a leadManage...
-
Senior Fire Consultant
4 months ago
Birmingham, United Kingdom hrsolutions-uk Full time**Why your role matters** As a Senior Fire Safety Consultant, you will be expected to undertake fire risk assessments in a wide range of premises, including complex and sleeping risk premises. Supporting our clients with their fire safety requirements, providing practical solutions and advice on onsite issues. Regional and national travel is...
-
Internal Audit Manager
2 weeks ago
Birmingham, Birmingham, United Kingdom KPMG-UnitedKingdom Full timeJob DescriptionInternal Audit Manager - KPMG - ConsultingBase Location: London/Birmingham plus network of 20 offices nationally:KPMG Consulting is a cornerstone of our business, operating from London and serving the country with diligence and expertise. We're one of the world's largest and most respected consultancies, supporting the UK through times of war...
-
Internal Audit Manager
5 months ago
Birmingham, United Kingdom KPMG-UnitedKingdom Full timeJob description Internal Audit Manager - KPMG - Consulting (104067) Base Location: London/Birmingham plus network of 20 offices nationally: The KPMG Consulting function is a cornerstone of our business. Operating from London we do work that matters, serving the country with diligence and expertise. KPMG is one of the world's largest and most respected...
-
Internal Audit Manager
2 weeks ago
Birmingham, Birmingham, United Kingdom KPMG-UnitedKingdom Full timeJob Title: Internal Audit ManagerAbout the Role:We are seeking an experienced Internal Audit Manager to join our Governance, Risk and Compliance Services (GRCS) practice within KPMG-UnitedKingdom. As an Internal Audit Manager, you will be responsible for managing and delivering internal audit projects, providing risk management and governance advisory...
-
Internal Audit Manager Position
5 days ago
Birmingham, Birmingham, United Kingdom KPMG-UnitedKingdom Full timeThe KPMG Consulting function is a cornerstone of our business, with operations centered in London. We deliver work that matters, serving the country with diligence and expertise. Our team is immersed in various disciplines, including Strategy, Forensic, Risk and Regulatory, People and Talent, and Operational and Financial Transformation. We apply sector...