CYBER SECURITY CONSULTANT – INCIDENT & VULNERABILITY MANAGEMENT
NEW CONTRACT OPPORTUNITY AVAILABLE FOR A CYBER SECURITY CONSULTANT WITH INCIDENT MANAGEMENT, VULNERABILITY MANAGEMENT, AND SIAM EXPERIENCE
- Cyber Security Consultant – Incident & Vulnerability Management
- Initial contract until November 2026
- £570 per day via Umbrella
- Hybrid working – average 2 days per week onsite
- Locations: Preston, Birmingham or London
- SC Clearance required
ABOUT THE CLIENT
Our client is delivering a large-scale Defence transformation programme, transitioning to a complex multi-supplier operating model. As part of this transformation, they require an experienced Cyber Security Consultant to help establish a consistent and governed approach to Security Incident and Vulnerability Management across multiple service providers.
This is a governance, integration and assurance-focused role, working with suppliers, security teams and programme stakeholders to align processes, improve visibility of cyber risk, and ensure a smooth transition into a long-term operational model.
THE ROLE
As the Cyber Security Consultant, you will be responsible for aligning and governing Security Incident Management and Vulnerability Management processes across a complex SIAM environment.
Working closely with suppliers, operational teams and client stakeholders, you will ensure incidents and vulnerabilities are managed consistently, reported effectively, and supported by appropriate evidence and governance controls.
This role focuses on coordination, oversight and process alignment rather than hands-on SOC operations, incident response or vulnerability remediation.
WHAT YOU WILL BE DOING
- Reviewing and aligning supplier processes for Security Incident Management and Vulnerability Management
- Establishing consistent governance, escalation and reporting standards across multiple suppliers
- Defining and governing incident severity classifications and escalation thresholds
- Supporting vulnerability prioritisation approaches using frameworks such as CVSS, KEV and EPSS
- Coordinating suppliers within a SIAM model to ensure consistent process adoption and reporting
- Identifying gaps in process maturity, compliance, risk management and operational readiness
- Governing the lifecycle of high‑severity security incidents, ensuring appropriate escalation, communication and reporting
- Overseeing vulnerability management activities from identification through to remediation or risk acceptanceMonitoring remediation timelines, SLA adherence and management of high-risk vulnerabilities
- Supporting audit, assurance and compliance activities through evidence collection and governance reporting
- Producing clear, evidence‑based reporting for governance forums and programme leadership
- Supporting the creation of a transition baseline to enable successful BAU handover
ESSENTIAL SKILLS
- Experience within Security Incident Management, Vulnerability Management, Cyber Governance or Security Assurance roles
- Strong understanding of:
- Security Incident Management lifecycles
- Vulnerability Management lifecycles
- Risk, governance and compliance processes
- Experience operating within SIAM or multi-supplier environments
- Ability to interpret outputs from SOC platforms and vulnerability management tools without direct operational ownership
- Strong stakeholder engagement and supplier management skills
- Experience working on large‑scale transition, transformation or service integration programmes
- Strong reporting, governance and documentation capabilities
DESIRABLE EXPERIENCE
- Knowledge of NIST Cyber Security Framework (CSF)
- Familiarity with NCSC guidance and UK Government security standards
- Exposure to ISMS, audit and assurance activities
- ITIL experience or understanding Defence, Government or highly regulated industry experience
#J-18808-Ljbffr…
