Description
Cyber Resilience Consultant
Location: Cheltenham (hybrid)
Type: Full‑time
Team: Cyber Resilience (Resilience as a Service)
About P3M Works
P3M Works is a cyber resilience consultancy trusted by organisations across high assurance organisations from defence and government to fintech and high growth SMEs. We bring discipline, foresight, and real world experience to ensure security postures are not only compliant but genuinely resilient.
Our Resilience as a Service (RaaS) model embeds resilience into day to day operations, aligning security outcomes directly to business goals, taking businesses from a reactive cyber posture to planned.
The Opportunity
We’re looking for a Cyber Resilience Consultant with hands on ISO 27001 implementation credentials and proven consultancy experience to help deliver and grow our RaaS engagements with SMEs and strategic programmes. You’ll be joining a founder-led startup, shaping our delivery playbooks, and working directly with clients, partners, and internal teams to build measurable resilience.
What you’ll do
- Advise and deliver ISO 27001: lead gap analyses, remediation plans, ISMS build‑out, internal audits, and readiness activities toward certification.
- Design and implement controls across Microsoft 365/Azure (e.g., MFA, Conditional Access, Azure AD configurations) and coordinate with client IT for safe deployment.
- Operationalise monitoring: define use cases and workflows for SIEM and continuous monitoring to improve detection and response.
- Incident readiness: develop, test, and iterate incident response plans integrated with business continuity and disaster recovery.
- Client consulting: lead workshops, present roadmaps, and communicate risk in business terms to senior stakeholders.
- Partner enablement: complete professional services training and support deployments with selected technology partners.
- Delivery excellence: contribute to engagement governance, reporting, and continuous improvement of P3M Works’ methods and tooling.
What you’ll bring
Must have
- ISO 27001 Lead Implementer (or equivalent) certification with demonstrable end to end implementation experience.
- Proven consultancy experience client facing delivery, workshop facilitation, and stakeholder engagement.
- Cheltenham ‑commutable and able to work onsite across the UK with clients when required.
Nice to have
- Familiarity with NIST CSF and UK best practice frameworks (e.g., Cyber Essentials/IASME, NCSCguidance).
- Experience across Microsoft 365/Azure security, SIEM operations, and incident response.
- Eligibility to obtain UK Security Clearance (SC); higher clearances (DV) are advantageous.
How you’ll work
- Startup mindset: bias to action, comfort with ambiguity, and a passion for building repeatable, scalable RaaS delivery.
- Collaborative consultancy: operate as a trusted advisor while owning outcomes, from discovery through to embedding controls and measuring resilience.
Benefits
- Competitive salary and performance bonus
- Hybrid working from Cheltenham with client site travel as needed.
Apply
Pay: £35,000.00-£45,000.00 per year
Benefits:
- Company pension
- Employee discount
- Flexitime
- Health & wellbeing programme
- Paid volunteer time
- Private medical insurance
- Store discount
- Work from home
Work Location: Hybrid remote in England, GL50 3JZ