remote
Senior Security Consultant - Indra Group UK & Ireland
Software Engineer
Senior Security Consultant leading cyber risk assessments, security architecture design, and penetration testing for critical infrastructure sectors, leveraging ISO 27001, cloud security, and automation with Python.
About the role
Key Responsibilities
- Conduct comprehensive security risk assessments and threat modeling for transport, defence, and aerospace projects.
- Design and implement security architectures, including cloud and on‑premise environments, ensuring alignment with ISO 27001 and industry best practices.
- Lead penetration testing and vulnerability management activities, delivering actionable remediation guidance.
- Develop and maintain GRC frameworks, policies, and procedures to support regulatory compliance and cyber‑defence strategies.
- Collaborate with cross‑functional engineering teams to integrate security controls into the software development lifecycle.
- Provide expert advice and mentorship to junior security staff and client stakeholders.
Requirements
- 10+ years of experience in cybersecurity, with a focus on risk assessment, penetration testing, and security architecture.
- Strong knowledge of ISO 27001, NIST, and other security standards; proven experience implementing GRC frameworks.
- Hands‑on expertise with cloud platforms (AWS, Azure, GCP) and cloud security controls.
- Proficiency in scripting/automation languages such as Python for security tooling and reporting.
- Relevant certifications (CISSP, CISM, OSCP, CEH) and a track record of delivering security solutions for critical infrastructure.
Skills
penetration testingpython