About the job
Join Smartdesc as an Information Security Consultant
Location: Field-based, primarily in the London area
Employment Type: Full-time
Salary: £70,000 - £80,000
As an Information Security Consultant at Smartdesc, you will collaborate with the Information Security and technical delivery teams to implement robust security solutions for our clients.
Your role will involve providing strategic guidance on Information Security, aiding clients in enhancing their security posture, and overseeing a variety of security projects. This includes assisting clients in implementing security controls, conducting assessments based on industry best practices, and delivering assessment reports to Senior Leadership Teams to bolster their security measures.
The position encompasses a diverse array of responsibilities, from strategic governance and risk management to advising non-profit organizations on maximizing the value of Microsoft Business Premium, E3, and E5 security solutions. You should be comfortable presenting security information to varied audiences, from part-time volunteers to executive boards.
This customer-facing role demands a meticulous eye for detail and a proven track record in delivering exemplary Information Security practices.
Key Responsibilities
- Assess and identify steps organizations must take to enhance their security posture, creating roadmaps for continuous improvement while maximizing existing Microsoft licensing.
- Align security practices with frameworks and standards such as Cyber Essentials, NCSC CAF, and ISO 27001.
- Own or oversee key Information Security processes and procedures.
- Manage the Smartdesc MDR management service.
- Implement and oversee Information Security Risk Management programs.
- Identify and manage remediation actions to mitigate risks.
- Develop and maintain Information Security Policies.
- Create and deliver general and role-specific Information Security Training and Awareness programs.
- Raise, investigate, and manage IT Security incidents, ensuring appropriate follow-up actions.
- Provide IT security support to various business functions, including digital teams, IT infrastructure, and IT Service Desk.
- Develop and oversee Information Security Internal Audit programs.
- Supervise ongoing security testing, reviews, and audits.

