- Company Name
- RSM UK
- Job Title
- Cyber Security Principal Consultant
- Job Description
-
Job title
Cyber Security Principal Consultant
Role Summary
Senior consulting role responsible for leading end‑to‑end cyber security engagements for mid‑market clients. Owns project scoping, delivery, debrief, and report writing. Shapes new cyber security offerings, mentors junior staff, builds senior stakeholder relationships, and supports business development.
Expactations
- Deliver high‑quality cyber security projects within agreed timelines.
- Maintain expertise in emerging threats and technology trends.
- Produce clear, actionable client reports.
- Lead offensive and defensive security testing activities.
- Foster client confidence and identify upsell opportunities.
Key Responsibilities
- Scope, plan, and manage cyber security projects from initiation to closure.
- Conduct offensive security tests: threat modelling, reconnaissance, social engineering, enumeration, attack path mapping, exploitation, and remediation.
- Deliver defensive control advisory engagements, including security operations and control frameworks.
- Perform infrastructure and web application testing (API testing preferred).
- Compile and present findings, debriefs, and detailed reports to clients.
- Develop market‑facing cyber products and internal knowledge hubs.
- Mentor team members and influence technical direction.
- Attend client workshops, audit committees, and networking events.
- Identify business development opportunities and support proposals.
Required Skills
- 5+ years in professional services with a focus on cyber security.
- Proven experience leading offensive security engagements (white/grey/black‑box testing).
- Solid understanding of defensive controls, security operations, and compliance frameworks.
- Expertise in threat modelling, reconnaissance, social engineering, enumeration, exploitation, and remediation.
- Proficiency with Kali Linux, Metasploit, Nmap, BurpSuite, Nessus, and other industry‑standard tools.
- Strong report writing and client communication skills.
- Ability to manage workload, meet deadlines, and maintain quality under supervision.
- Demonstrated leadership and mentoring abilities.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field (preferred).
- Industry‑recognised security certifications: OSCP, CompTIA PenTest+, CREST, CHECK, or equivalent.
- Ongoing professional development in the cyber security domain.