Lead Information Security Consultant (CSO)
Location: London, GB; Birmingham, GB, B37 7ES
Company: LRQA
Job ID: 43536
Location: LRQA – London – 4 Moorgate, LRQA Nettitude: Birmingham :1
About LRQA
At LRQA Cybersecurity, our focus is on excellence in cyber security. We have teams that offer world class services in red teaming, penetration testing, threat intelligence, research and development, detection and response, governance, risk and compliance, and plenty more.
Our business is global and so are our clients. We work closely with central banks, central and local government, critical national infrastructure, large retailers, and plenty more besides!
We’re an award‑winning provider of cyber security services and we are at a very exciting stage of development. We are looking for the right people to join us as we embrace the challenges thrown up by the advancements within the IT industry and within the threats faced.
What You’ll be Doing in Your Role
Delivery
- Provision of client support to achieve compliance/certification against recognised standards such as ISO 27001, the GDPR, NIST CSF and CMMC.
- Independently conduct ISO/IEC 27001:2022 audit activities.
- Provision of expert advice to clients on governance structures – including policies, procedures and controls to achieve compliance and reduce risk exposure.
- Cybersecurity Maturity Assessment engagements.
- Facilitation of information asset discovery workshops and engagements.
- Facilitation of risk assessment workshops and engagements.
- Delivery of business continuity scenario tabletop exercises.
- Delivery of external stakeholder training and awareness presentations.
Service Development
- Standardisation of all customer‑facing collateral used throughout every region that we operate in.
- Implementation and development activities around new and emerging frameworks.
- Improvement / enhancement suggestions for existing collateral.
- Development of new collateral where required.
- Collaboration with the developers of LRQA’s portal to aid with integration of Information Security and GDPR requirements.
Business Experience Credentials
- Degree level qualification in Computer Science, Computer Engineering, IT, Cyber Security, or a related field or 5 years experience working within an information security role.
- Minimum 5 years experience in delivering consultative engagements using well known risk management and data security frameworks, standards, and methodologies.
- Current CMMC Professional (CCP) or the ability to attain this within three months.
- Experience implementing SOC 2 Type 2 is strongly preferable.
- Experience in ISO 27001 implementation and use of relevant standards to build control frameworks.
- Demonstrable experience communicating complex information security concepts to top level (C suite) management.
- Experience in cyber resilience planning, security operations, and managing security professionals.
- Strong communication skills and the ability to build rapport with key stakeholders.
- Experience in some or all of the following areas of information security: GDPR regulation, TISAX, CIS Controls, DORA, NIS 2 Directive, Business Continuity, Physical Security.
What we offer
We are a people‑focused, high‑performing, high‑trust professional services team. You’ll be part of a diverse and growing international group of consultants, and we go out of your way to make sure our consultants feel part of our team.
The successful candidate will have opportunities to:
- Make a difference – as clichéd as it sounds, this really is true. We encourage all employees to challenge norms and empower them to get involved.
- Get involved – enjoy blogging or public speaking? Our team is committed to getting involved in industry discussions.
- Develop their skills – we love learning and ensure we find time for professional development.
Apply?
Are you interested in this job? Apply now via the ‘apply’ button and upload your C.V. and cover letter.
Pre‑Employment Checks
If you are successful in securing a role with us, we will carry out pre‑employment checks in accordance with what is allowed under local law. These checks will include, (as permitted): right to work, identification, verification of employment history, education, and criminal records. We may involve the third‑party supplier to run the background checks as needed and your data will be retained for a period as needed for the purpose of employing you.
Diversity and Inclusion at LRQA
We are on a mission to be the place where we all want to work and we are passionate about embracing different perspectives because we understand the value this brings to our business, our clients and each other. We are all about creating a safer and more sustainable future and our inclusive culture is right at the heart of our business.
Together our employees make our communities better and we want you to be part of our diverse team!
LRQA is a leading global assurance provider. The integrity and expertise we bring to our partnership with clients support their journey to a safer, more secure and more sustainable future.
#J-18808-Ljbffr…
