Information Security Consultant at Vanquis
London, England, United Kingdom -
Full Time


Start Date

Immediate

Expiry Date

11 Jun, 26

Salary

0.0

Posted On

13 Mar, 26

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Information Security Advice, Security Assessments, Control Gaps Identification, Risk Management, Security Controls Implementation, Policy Compliance, Stakeholder Engagement, Supplier Evaluation, ISO 27001, NIST, CIS, OWASP, SOC 2, AWS, Azure, Communication

Industry

Financial Services

Description
Information Security ConsultantReq # 1Chatham, UKBradford, UKPetersfield, UKLondon, UKJob DescriptionPosted Thursday, 12 March 2026 at 01:00 | Expires Friday, 27 March 2026 at 00:59 Title: Information Security Consultant Contract Type: Permanent Location: Bradford, Chatham, Petersfield, London Working Pattern: Hybrid (usually a couple of days a week in the office). We welcome part-time and flexible arrangements and will aim to match your current flexibility where possible. What We Offer We care about your wellbeing, not just your work. Our benefits are designed to support your life, your health and your growth: Holidays: 25 days (rising to 30) + buy/sell up to 5 days + swap up to 4 bank holidays. Pension: Up to 10% employer contribution. Enhanced Leave: Enhanced maternity (post-probation), 4 weeks’ paternity, and paid neonatal &carers leave. Workations: Work abroad for up to 20 days a year in approved countries. Birthday Leave: Your birthday off paid. Volunteering: 2 paid volunteering days. Learning: Access to Learning for all colleagues. Financial Wellbeing: Free Snoop Premium subscription. Healthcare: Self-pay Den plan &optional Private Medical Insurance. The Role You and your Team As an Information Security Consultant, you will play a key role in strengthening our security posture by ensuring our systems, processes, and people operate securely. You’ll provide expert security advice, design and implement security controls, and work closely with internal teams and external partners to ensure security standards are embedded across all technology solutions. As an Information Security Consultant, you will: Provide expert information security advice to ensure secure design and minimise risks to organisational networks and assets. Lead and support security assessments, identifying control gaps, risks, and corrective actions to support secure business delivery. Ensure business change initiatives comply with information security policies, standards, and industry best practices. Collaborate with architects, delivery teams, and the PMO to embed security across the full project lifecycle. Assess and manage information security risks, recommending effective mitigation strategies and escalating non-compliance where required. Engage with internal stakeholders, partners, and suppliers to evaluate and assure information security controls and capabilities. What We’re Looking For Proven experience working within an Information Security function, ideally in a large or enterprise-scale environment. Strong understanding of cybersecurity standards and frameworks such as ISO 27001, NIST, CIS, OWASP, and SOC 2. Knowledge of cloud technologies, particularly AWS and Azure, and their associated security controls. Excellent communication and presentation skills, with the ability to build trusted relationships across technical and business stakeholders. Analytical, pragmatic mindset with the ability to assess complex security issues, prioritise risks, and recommend practical solutions. Ability to work effectively under pressure, managing competing priorities while maintaining a professional and collaborative approach. Offers are subject to standard background checks (credit, fraud and employment references).
Responsibilities
The consultant will strengthen security posture by ensuring systems, processes, and people operate securely, providing expert security advice and designing/implementing security controls. Responsibilities include leading security assessments, ensuring business change compliance, embedding security across project lifecycles, and managing information security risks.
Loading...