Rodeo
Get started

Investigo

Cyber Security Consultant

England
£65k – £70k/yr
Posted about 22 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Senior Security Analyst / Consultant

This is a Senior Security Analyst / Consultant role for someone who gets it.

Someone who knows that “secure by design” isn't just something you write in a Confluence doc. Someone who knows risk isn’t always a red RAG status - and can explain the difference between a real issue and a theoretical one.

We're building secure products across a complex cloud environment (yes, both Azure and AWS). You’ll be the person making sure what we build isn’t just functional - but secure, sustainable, and risk-aware.

What you’ll actually be doing:

  • Embedding yourself in engineering teams, making sure security is considered before, during and after development - not after someone clicks deploy.
  • Leading the charge on application security - from secure coding principles to automated AppSec testing in CI/CD pipelines.
  • Running (or helping run) threat modelling sessions and ensuring they're more than just drawing spiders on whiteboards.
  • Working with devs and testers to embed security controls early in the lifecycle.
  • Bringing DevSecOps principles into play - not just sprinkling tools into pipelines and calling it a day.
  • Providing end-to-end security assurance of cloud-based products - containers, APIs, apps, infrastructure.
  • Translating technical risk into business language that makes sense to non-technical decision-makers.
  • Partnering with security testers to ensure ethical hacking, code reviews, infrastructure scans, and app assessments are done properly - not tick-box-style.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

You should probably already know a bit about:

  • Cloud security across Azure and AWS – IAM, storage, networking, serverless, containers, monitoring. Not expecting you to be a cloud architect, but you should know your way around.
  • DevSecOps practices – secure pipelines, IaC security, dependency scanning, GitHub/Jenkins integrations.
  • Application security – OWASP Top 10, SAST/DAST tooling, secrets management, API security.
  • Threat modelling – Ideally STRIDE, or something better. And you can do it with a dev team, not just in theory.
  • Vulnerability and risk management – and how to avoid both being reduced to spreadsheets.
  • Frameworks like NIST, MITRE ATT&CK, Cyber Kill Chain, and compliance stuff like PCI-DSS.
  • SIEMs, WAFs, DLPs, EDRs, and all the other acronym-heavy tools you’ve learned to assess critically.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

You’ll do well here if:

  • You speak fluent “tech” and “business”.
  • You can spot a security gap without being a pain about it.
  • You’re comfortable saying “no” - but you always explain why.
  • You’re curious, self-driven, and allergic to box-ticking.
  • You can back your views up with data, experience, or even just logic.

Letters & certs are nice (but not essential):

  • Security+, CISM, CISSP, CCSK, CCAK, Azure/AWS security certs, MSc Cybersecurity, etc.
  • Or you’ve just done the job long enough that you know your stuff without the need for badges.

Apply if that sounds like you. If you're looking for a clipboard and a checklist, this isn't it.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cloud Security
DevSecOps
Application Security
Threat Modelling
Azure
AWS
CI/CD Pipelines
Infrastructure as Code
OWASP Top 10
SAST/DAST
Vulnerability Management
Risk Management
NIST
MITRE ATT&CK
PCI-DSS
Security Assurance

Location

England, United Kingdom

Sign up to applySee more jobs like this