Thanks to continued growth we are now seeking a Senior Cyber Security Consultant to join our Digital Risks Protect Advisory team in London. This is a unique opportunity that requires a highly motivated and diligent client-facing individual to join a highly successful team. As the Senior Cyber Security Consultant you will help deliver Control Risks’ cyber security risk assessment engagements primarily across the EMEA region and act as a subject matter expert on cyber security risk assessments. You will need to demonstrate experience and expertise in the delivery of cyber security risk assessments and maturity and effectiveness in working with senior client stakeholders. You will also need to be a team-player who is passionate about delivering high quality cyber security advice to some of the world’s largest organisations.
You should be willing to come to our London office at least three days per week on a hybrid basis, as well as have a flexibility to travel in Europe and further afield. This role will suit someone with a good level of experience in a cyber security assurance and/or security advisory role who also has an ability to demonstrate a deep understanding of the cyber security challenges facing our clients.
Requirements
Role Tasks and Responsibilities
- Managing and delivering client projects
- Delivering projects (e.g., conducting asset identification exercises, cyber risk assessments against ISO and NIST CSF 2.0 standards, and demonstrating cyber audit expertise).
- Managing different types of client meetings and maintaining positive and respectful client relationships.
- Line management and upskilling of junior resources within the Digital Risks, Protect team.
- Strategic delivery acting as virtual-CISO for our clients on an ongoing basis.
- Project management of multiple cyber risk advisory engagements (e.g. running kick-off meetings, refining outputs, developing recommendations).
- Working with key project stakeholders (e.g., gathering information from interviews, document reviews and presenting findings) while maintaining the confidence of the client through clear communication and good project management.
- Provide flexible and responsive support as and when crisis management support is required and can be provided.
Business Development
- Owning end-to-end development and management of proposals for future client work.
- Project scoping and planning, to support pricing.
- Maintain up-to-date presale documents.
- Contributing to and building complex, multi-service line proposals.
- Cultivating long-term relationships with clients.
- Participating in marketing to build the Control Risks brand.
Requirements
You must have all of these
- Experience in delivering cyber security risk assessments within an established global consultancy.
- Proven experience in delivering risk assessments for several different clients against industry standards (NIST CSF, 800-53 and ISO27001).
- An excellent knowledge of IT and network infrastructure, alongside cyber security best practices for securing networks.
- The ability to explain difficult technical concepts and ideas in non-technical terms to senior executives.
You might have some of these:
- Strong understanding of operational technology cyber security best practices
- A working familiarity on personal information and critical infrastructure information and cyber security regulations in the EU and wider European region.
- A deep understanding of governance, standards, and compliance as they pertain to cyber security.
- An undergraduate degree in a field related to security, information security, intelligence, or computer science.
- Have a broad corporate experience and understanding of business process outsourcing and managing the third party cyber and information security risks that may arise.
- Good knowledge of cyber risk issues impacting clients in Europe
- Undergraduate or post graduate degree in a field related to security, information security, intelligence, or computer science.
- CISSP, CISM, ISO27001 lead auditor, SANs or similar industry qualifications/certifications would be preferred
Benefits
- Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarised in the full job offer.
- We operate a discretionary global bonus scheme that incentivises, and rewards individuals based on company and individual performance.
- Control Risks supports hybrid working arrangements, wherever possible, that emphasise the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.
Skills Required
- Experience delivering cyber security risk assessments within an established global consultancy.
- Proven experience delivering risk assessments against NIST CSF, NIST SP 800-53 and ISO27001.
- Excellent knowledge of IT and network infrastructure and cyber security best practices for securing networks.
- Ability to explain difficult technical concepts in non-technical terms to senior executives.
- Willingness to be in the London office at least three days per week (hybrid) and flexibility to travel in Europe and beyond.
- Strong understanding of operational technology cyber security best practices.
- Familiarity with personal information and critical infrastructure cyber security regulations in the EU and wider European region.
- Deep understanding of governance, standards, and compliance related to cyber security.
- Undergraduate or postgraduate degree in security, information security, intelligence, or computer science.
- Broad corporate experience including third-party cyber and information security risk management.
- Good knowledge of cyber risk issues impacting clients in Europe.
- Industry certifications such as CISSP, CISM, ISO27001 Lead Auditor, SANS or similar.
What We Do
Control Risks exists to make our clients succeed. We are a specialist risk consultancy that helps to create secure, compliant and resilient organisations in an age of ever-changing risk. Working across disciplines, technologies and geographies, everything we do is based on our belief that taking risks is essential to our clients’ success. We provide you with the insight to focus resources and ensure you are prepared to resolve the issues and crises that occur in any ambitious global organisation. We go beyond problem-solving and give you the insight and intelligence you need to realise opportunities and grow. From the boardroom to the remotest location, we have developed an unparalleled ability to bring order to chaos and reassurance to anxiety.








