- Company Name
- Stellar Omada
- Job Title
- Senior Cyber Assurance consultant
- Job Description
-
**Job Title**
Senior Cyber Assurance Consultant
**Role Summary**
Lead cyber assurance initiatives across complex technical, service, and third‑party environments, ensuring that security controls, risk management practices, and governance frameworks are effective, proportionate, and in line with recognised standards such as ISO 27001, NIST, Cyber Essentials and NCSC guidance.
**Expectations**
- Deliver comprehensive assurance across systems, services, and suppliers.
- Translate cyber risk into clear, business‑focused language for senior stakeholders.
- Influence decisions, challenge constructively, and drive practical remediation plans.
**Key Responsibilities**
- Plan, execute and report on cyber assurance activities for internal and external systems.
- Assess and verify compliance with ISO 27001, NIST, Cyber Essentials, NCSC guidance and other regulatory requirements.
- Conduct risk assessments, control testing, and produce security assurance reports.
- Advise on security‑by‑design principles for new and existing services.
- Support audits, certifications and regulatory submissions.
- Identify security gaps and develop pragmatic remediation plans in collaboration with stakeholders.
- Act as a senior cyber risk advisor to technical and non‑technical teams.
- Continuously improve assurance processes, tooling, and reporting mechanisms.
**Required Skills**
- Proven experience in cyber assurance, cyber risk or information security governance.
- In‑depth knowledge of ISO 27001, NIST, NCSC, and related frameworks.
- Ability to assess technical and organisational security controls.
- Strong stakeholder engagement at senior and delivery levels.
- Excellent communication, judgment, and professional curiosity.
- Risk‑based, pragmatic mindset; not just box‑ticking.
- Collaborative approach with delivery, architecture and leadership teams.
**Required Education & Certifications**
- Bachelor’s degree (or equivalent) in Cybersecurity, IT, Information Systems or a related field.
- Relevant certifications strongly preferred: CISSP, CISM, ISO 27001 Lead Auditor (LA/LI), CRISC, or equivalent.
---