Role Introduction:
ITO Information Security Management delivers advisory and implementation services, helping organisations enhance their security maturity and resilience. We blend industry-leading frameworks with tailored strategies, risk assessments, and AI-driven automation to provide pragmatic, high-impact security solutions
What You Will Do:
Lead and mentor Consulting ISMs, fostering skill development and ensuring quality delivery across engagements.
Develop customized security strategies and maturity roadmaps unique to each client organisation, aligning with frameworks such as NIST Cybersecurity Framework and ISO/IEC 27001.
Ensure alignment with complex security frameworks and maturity assessment models, providing deep-dive expertise on topics such as Industrial Control Systems (ICS) security.
Provide expert advice to IT Managers and IT Directors on information security strategy, risk management, and compliance with industry standards and legal requirements.
Conduct advanced gap analyses, program assessments, and risk evaluations, recommending prioritized remediation plans.
Shape project strategy and influence engagement outcomes by driving innovation in security practices, tools, and automation workflows.
Guide clients through incident response planning and crisis management, offering expert support during exercises and real incidents.
Collaborate with internal teams and client stakeholders to integrate security governance and compliance objectives into broader IT and business processes.
Act as a visionary in organizational growth by contributing to process improvement, promoting best practices, and driving security culture.
Drive the innovation and governance of AI prompt libraries and automated playbooks for consulting use cases such as risk assessments and policy automation.
Lead proof-of-concepts and pilots for AI/ML security tools, guiding cross-functional integration and scaling successful solutions.
Shape automation workflows that leverage AI insights for enhanced risk analysis, reporting, and continuous compliance monitoring.
What You Will Have:
Proven experience in information security consulting, with demonstrated mentorship of junior consultants.
ISACA certifications such as CRISC, CDPSE, CGEIT, or ISO/IEC 27001 Lead Auditor; and/or (ISC) CISSP with ISSAP or ISSMP concentration.
Proven ability to develop and implement customized security strategies and maturity models for diverse industries.
Deep domain knowledge of complex security frameworks, control systems security (ICS/SCADA), and maturity assessment methodologies.
Strong skill in advising senior IT leaders (IT Manager, IT Director) on risk-based decision-making, strategy development, and governance.
Experience driving technical direction, influencing project strategy, and delivering high-impact security solutions.
Visionary leadership and collaboration skills, with a track record of fostering teamwork and contributing to organisational growth.
Excellent communication, presentation, and stakeholder management abilities.
Bachelor's or Master's degree in Information Security, Computer Science, or related field, or equivalent professional experience.
Advanced professional certifications as listed above.
What We Do For You:
MNCJobs.co.uk will not be responsible for any payment made to a third-party. All Terms of Use are applicable.