Cyber Security Consultant

Company: InfoSec People Ltd
Apply for the Cyber Security Consultant
Location:
Job Description:

This range is provided by InfoSec People Ltd. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

Direct message the job poster from InfoSec People Ltd

Recruitment Delivery Partner @ InfoSec People Ltd

We’re working with a major UK retailer that’s continuing to invest heavily in cyber security advisory capability across its digital and platform estate.

This is a consultative role focused on guiding, influencing and enabling teams to design and operate secure SaaS and PaaS platforms at scale.

Rather than hands‑on operational delivery, you’ll act as a trusted security advisor, partnering with engineering, platform and product teams to reduce risk, improve configuration hygiene and embed secure‑by‑design practices.

What you’ll be doing

  • Act as a Cyber Security Consultant to platform and engineering teams across SaaS/PaaS services (Microsoft, Google, Atlassian, MongoDB Atlas)
  • Lead security reviews and advisory assessments focused on configuration, access, identity and platform risk
  • Provide clear, pragmatic guidance on IAM, least privilege, Zero Trust and secure platform patterns
  • Advise on API and database security design, controls and threat mitigation
  • Support teams to embed security into CI/CD pipelines and IaC workflows, advising on guardrails rather than owning build
  • Translate security risk into practical recommendations that delivery teams can implement quickly
  • Produce guidance, standards and documentation, and run workshops and knowledge‑sharing sessions
  • Act as a bridge between security, engineering, vendors and third parties

What we’re looking for

  • Experience in a cyber security advisory, consulting or internal consulting‑style role
  • Strong grounding in Identity & Access Management (SSO, JWT, OAuth/OIDC, RBAC/ABAC, least privilege)
  • Solid understanding of API security and database security fundamentals
  • Working knowledge of Terraform, CI/CD and automation concepts (hands‑on coding not required)
  • Ability to assess risk, challenge designs constructively and influence without authority
  • Comfortable engaging senior engineers, architects and product stakeholders
  • A pragmatic mindset — focused on enabling delivery, not blocking it

Seniority level

Mid‑Senior level

Employment type

Full‑time

Job function

Information Technology

Industries

Retail

Location

London, England, United Kingdom

#J-18808-Ljbffr…

Posted: December 18th, 2025