£500 Per day
Inside
Hybrid
Hybrid - WFH/London 2-3 days a week, UK
Summary: The Information Security Consultant role focuses on integrating security into projects within the Americas Acceleration program by performing risk assessments and collaborating with various teams. The consultant will ensure that security requirements are met throughout the project lifecycle and will report to the Secure Project Lifecycle Team Lead. Responsibilities include reviewing security documentation, ensuring compliance, and engaging with stakeholders to manage security risks effectively.
Key Responsibilities:
- Review and assess the IS Criticality Assessment (ISCA) questionnaire.
- Determine security needs based on the project and data classification.
- Work with architects to finalize security requirements in the design.
- Collaborate with teams like Enterprise Architecture, Cyber Security, and IT Infrastructure to ensure security is part of the project design.
- Review security documentation and provide feedback on the ISCA questionnaire and High-Level Design (HLD).
- Participate in technical reviews and ensure sign-offs for security requirements.
- Obtain necessary security assessments, such as IAM sign-offs, vulnerability reports, and third-party risk evaluations.
- Ensure compliance with security standards, including conducting vulnerability assessments and penetration tests.
- Keep track of security requirements, update the project register daily, and monitor progress.
- Work closely with the scrum master, architects, and other teams to identify and resolve security risks.
- Provide support for risk acceptance decisions, escalating issues as needed.
- Conduct a final review of all security requirements before any project approval.
- Ensure all evidence and documents are stored in security systems and submit risk assessments for sign-off.
- All deliverables will be reviewed for quality by the Information Security team.
Key Skills:
- Strong knowledge of security and risk management processes.
- Experience working in an agile environment, with familiarity in tools like JIRA and Planview.
- Ability to communicate and collaborate effectively with different teams and stakeholders.
- Detail-oriented, with the ability to track and report on security requirements and project progress.
Salary (Rate): £500
City: London
Country: UK
Working Arrangements: hybrid
IR35 Status: inside IR35
Seniority Level: undetermined
Industry: IT