Savanti is a practitioner-led consulting firm with unrivalled expertise when it comes to cyber security. We remove the fear, uncertainty and doubt associated with cyber risk allowing our clients to get on with what they do best.
Our clients range in size from innovative start-ups to the largest global organisations, with many household names across industries including banking, insurance, retail, energy, manufacturing, sport and education. They are predominantly UK-based but we also have clients throughout Europe and as far away as Japan.
Key accountabilities
We are currently expanding our client-facing teams to meet the demands of our growing client base and are looking to recruit a Information Security Risk Consultant on a contract basis.
A general, and fundamental requirement for all our staff is that they share the following two key qualities: they are great in front of clients, and they bring demonstrable subject matter expertise.
Experience
- Demonstrable experience of managing and operating the end-to-end, Business as Usual (BAU) Cyber Security risk management processes within a large organisation.
- Development and maintenance of the information security risk management process, including risk KPIs and information security risk reporting processes.
- Management of Cyber Security risks throughout the risk management lifecycle including theongoing monitoring of risk remediation status including the development of risk mitigation strategies and improvement plans.
- Experience of managing Cyber Security risk forums to ensure that risks are evaluated, and risk mitigation actions are agreed, progressed and tracked.
- Experience of using the JIRA application to log,track and manage Cyber Security risks is preferable.
- Microsoft Excel skills and experience of running SQL queries to produce KPIs, metrics and dashboards
- Excellent stakeholder management and influencing skills as liaison with the wider business is required.
- Excellent presentation and communication skills.
- The ability to speak Spanish would be an advantage.
Qualifications & certifications
Appropriate industry qualifications and certifications such as MSc InfoSec, ISO 27001 (Lead Implementer or Lead Auditor), CISM, CRISC, CISA, CISSP etc. are beneficial but experience, and attitude, is what we really look for.
Please note this a 6month initial contract.