Senior Cyber Security Consultant

Gerrards Cross / HybridHybridsenior
Security ConsultantCybersecurity
0 views0 saves0 applied

Quick Summary

Overview

Senior Cyber Security Consultant Gerrards Cross (Hybrid or remote) Do you want to help shape software that affects thousands of lives? Who are we? We are ranked as the UK’s #1 construction specific software player and our mission is simple; to provide market leading end-to-end software solutions…

Key Responsibilities

AppSec program uplift: SAST/DAST/SCA standardised and embedded across CI/CD with clear policies, SLAs and reporting. Risk reduction: Demonstrable reduction in critical/high vulnerabilities in products and platforms; time‑to‑remediate improved…

Technical Tools
awsazuredockergcpjavascriptjirakubernetespythonsnykterraformtypescriptagileci-cdcybersecuritymicroservicesnetworkingpeople-managementsecurity-best-practices

Who are we?

We are ranked as the UK’s #1 construction specific software player and our mission is simple; to provide market leading end-to-end software solutions to the construction and construction like industries across the entire build life cycle.

If you are looking to build an exceptional career with an award-winning company you’ve come to the right place. Our teams are based in the UK, Europe, and India, working on products that are used on a global scale. We have a clear and defined road map to deliver over the next 3 years, which is centred around a large-scale digital transformation as well as continuing our growth and expansion.

We embrace diversity and equality and want our employees to be comfortable bringing their whole selves to work. We are committed to building a team with a variety of backgrounds, skills and views. Creating a culture of Equality isn’t just the right thing to do, it improves every aspect of our business.

This is a senior, people focused role at the intersection of secure software engineering, application security, and enterprise cyber operations.  You will lead the strategy and hands-on execution for AppSec across a broad technology stack, partner with engineers to remediate complex vulnerabilities (first party code and third-party libraries), run and improve offensive security and vulnerability management practices, and ensure alignment with ISO 27001, CE+, SOC2 and internal standards. A core expectation is to coach and upskill teams, embedding security by design and accelerating safe delivery.‑focused role‑on execution‑party code and third‑party libraries), run and improve offensive security and vulnerability management practices, and ensure alignment with

 

Responsibilities

~1 min read
  • Responsibilities

    ~1 min read

     

  • Validate findings (false positives/negatives), and partner with product/infrastructure teams to track remediation to closure.

  •  

    Requirements

    ~1 min read

    Requirements

    ~1 min read
    • Proven background in software engineering (e.g., .NET, Java, JavaScript/TypeScript, Python) and secure coding practices.

    • Strong experience operating and integrating SAST/DAST/SCA and AppSec controls into CI/CD.

    • Understanding of modern architectures: APIs, microservices, containers (Docker/K8s), serverless, secrets management, identity and access.

     

    • Hands‑on with penetration testing methods and tooling (e.g., OWASP, Burp Suite, ZAP); able to set test charters and interpret results.

    • Practical experience with vulnerability scanners and endpoint/cloud security platforms (Qualys/Tenable, Defender for Endpoint), plus asset/coverage hygiene.

    • Skilled at triage and risk framing, mapping to business impact and SLAs.

     

    • Experience securing workloads in AWS, Azure and/or GCP; multi‑cloud exposure preferred.

    • Familiar with cloud‑native controls (e.g., identity, networking, container security, posture management).

    • Experience in optimisation of perimeter security (WAF/API Security/Bot Protection).

     

    • Working knowledge of ISO 27001, NIST controls, CE+, SOC2 and secure SDLC/DevSecOps practices.

    • Comfortable producing metrics, KPIs/KRIs, and executive reporting.

     

    Requirements

    ~1 min read
    • Relevant certs such as OSCP, GWAPT/GWEB, CSSLP, CISSP, CISM, or cloud security (e.g., AWS Security Specialty, AZ‑500).

    • Evidence of building/running training programmes or Security Champions networks.

     

    Nice to Have

    ~1 min read

    If you're looking to build an exceptional career with an award-winning company you’ve come to the right place. We believe everyone at Causeway has a vital role to play in our success. Causeway is fuelled by curiosity and is a place for people who beam with positivity and burn with ambition.

    Our team is everything, so we’ll take good care of you. In fact, we give well-being the same priority as our other business goals. We’re strong advocates of work-life balance, offering hybrid working alongside the opportunity to work from modern, collaborative offices.

     

    We are United. As part of a team, we’re better together.

    We are Agile. Be the change, we’re on a journey.

    We are Trusted. Do the right thing, we own this.

    We are Driven. Get stuck in, we make it happen.

     

    What We Offer

    ~1 min read
    25 days annual leave + public holidays, increasing with length of service.
    4% matched pension.
    Income protection and life assurance.
    Access to our award-winning benefits platform.
    We take mental health seriously and have a dedicated EAP available 24/7.
    £100 allowance towards a fitness club.
    Dell discounts.
    Private Medical Insurance.
    Paid study leave + volunteering days.
    Car Scheme.

    Location & Eligibility

    Where is the job
    Gerrards Cross / Hybrid
    Hybrid — some on-site time required
    Who can apply
    Same as job location

    Listing Details

    Posted
    February 27, 2026
    First seen
    May 6, 2026
    Last seen
    May 8, 2026

    Posting Health

    Days active
    0
    Repost count
    0
    Trust Level
    16%
    Scored at
    May 6, 2026

    Signal breakdown

    freshnesssource trustcontent trustemployer trust

    3 other jobs at causeway-1588594217

    View all →

    Explore open roles at causeway-1588594217.

    Newsletter

    Stay ahead of the market

    Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

    A
    B
    C
    D
    Join 12,000+ marketers

    No spam. Unsubscribe at any time.

    causeway-1588594217Senior Cyber Security Consultant