- Company Name
- Claranet
- Job Title
- Security Consultant
- Job Description
-
**Job Title**
Security Consultant
**Role Summary**
Deliver customer‑focused Governance, Risk, and Compliance (GRC) services, including audit, assessment, and consultancy across multiple security frameworks. Own end‑to‑end project delivery, ensuring high quality, customer satisfaction, and continuous improvement of the Cyber Practice portfolio.
**Expectations**
- Complete GRC projects on time, within scope and budget.
- Maintain professional, trust‑based relationships with clients.
- Contribute to knowledge sharing and service development.
- Demonstrate accountability, self‑motivation, and a willingness to travel for onsite engagements.
**Key Responsibilities**
- Conduct scoping calls and develop project plans for GRC engagements.
- Perform audits and assessments against frameworks such as PCI DSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, Microsoft 365, etc.
- Deliver consultancy recommendations, remediation actions, and compliance reports.
- Execute quality assurance reviews of reports and deliverables.
- Create and maintain documentation supporting service delivery.
- Collaborate with Customer Experience, Managed Services, Technology Practices, Finance, and other internal teams.
- Support creation of new services, training materials, and product improvements.
- Travel to client sites as required for onsite activities.
**Required Skills**
- In‑depth understanding of at least one major audit framework (PCI DSS, ISO 27001, Cyber Essentials, NIST, SOC 2, NIS2, etc).
- Ability to independently deliver a full GRC engagement.
- Strong analytical and documentation skills.
- Excellent communication, presentation, and client‑facing abilities.
- Proficiency in QA and continuous improvement practices.
- Collaborative teamwork and cross‑functional coordination.
**Required Education & Certifications**
- Bachelor’s degree in Information Security, Risk Management, Business Administration, or related field.
- Industry‑recognized certification(s) such as ISO 27001 Lead Auditor, PCI DSS Practitioner, GRC‑C, or equivalent.
---