Senior Cyber Security Consultant; Defence
Listed on 2026-09-21
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations, IT Consultant
At Actica, our Cyber Security Consultants play a critical role in supporting Defence, national security, government and critical national infrastructure organisations and protecting some of the UK's most sensitive and mission-critical systems.
Working across complex Defence and MOD programmes, you will help clients embed Secure by Design principles, manage cyber risk, and deliver proportionate security assurance throughout the system lifecycle. Your expertise will support organisations operating in highly security-conscious environments where resilience, assurance and risk-informed decision making are paramount.
As a National Cyber Security Centre (NCSC) Assured Cyber Security Consultancy, we work on programmes that contribute directly to the UK's defence and security outcomes.
Location: Southwest England
- Three Counties Region
- Gloucestershire and surrounding areas (hybrid working and client-site engagement required)
Working independently or as part of a multi-disciplinary Actica team, you will deliver consultancy assignments across Defence, government and critical national infrastructure clients.
Responsibilities may include:
- Providing cyber security and Secure by Design expertise to complex Defence acquisition programmes, digital transformation initiatives and Agile delivery teams.
- Conducting cyber risk assessments and security risk analysis for systems handling sensitive or classified information.
- Advising risk owners, programme leadership and technical stakeholders on cyber threats, vulnerabilities, impacts and risk treatment strategies.
- Developing, reviewing and maintaining security assurance artefacts in line with Defence, Government and industry assurance frameworks.
- Supporting security accreditation and assurance activities across the system development and operational lifecycle.
- Assessing and reviewing security architectures to ensure Defence and Government security requirements are met.
- Applying security-by-design principles across cloud, enterprise and operational technology environments.
- Defining and scoping security testing activities and communicating findings, remediation strategies and residual risks to stakeholders.
- Supporting governance, risk and compliance activities within secure and regulated environments.
Depending on experience, you may:
- Lead consultancy engagements and work streams.
- Mentor and support the development of colleagues.
- Act as a trusted adviser to senior client stakeholders.
- Contribute to business development and the growth of Actica's Defence cyber security capability.
- Experience delivering cyber security, information assurance, technical consulting or ICT services within complex environments.
- Practical experience conducting cyber risk assessments and providing security assurance.
- Strong understanding of enterprise ICT, cloud technologies and modern digital architectures.
- Experience applying Secure by Design principles throughout project and system life cycles.
- Ability to communicate complex security concepts clearly to both technical and non-technical stakeholders.
- Strong report writing, documentation and presentation skills.
- Proven ability to deliver high-quality outcomes aligned to client requirements and business objectives.
- Experience supporting UK Defence, MOD, national security, government or critical national infrastructure organisations.
- Knowledge of Defence security policies, assurance approaches and risk management methodologies.
- Experience contributing to security assurance and accreditation activities for secure systems.
- Familiarity with classified or sensitive environments and associated security controls.
- Understanding of Defence procurement and capability delivery programmes.
- Government and industry security frameworks such as HMG Security Policy Framework (SPF), ISO 27001 and NIST.
- Risk management methodologies and security assurance frameworks.
- Enterprise and security architecture approaches including TOGAF and SABSA.
- Cloud security and secure digital transformation programmes.
- Security operations, vulnerability management and incident response.
- Secure software development and Dev Sec Ops practices.
- ICT service management approaches including ITIL.
- Must be eligible and willing to obtain UK Government Security Clearance. Find out more information about the Security Clearance (SC) process and requirements here.
We welcome applications from people with diverse…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).