Howden
Senior Risk & Resilience Consultant, Information Security, Infosec (Associate)

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior Risk & Resilience Consultant / Senior Information Security Consultant & Manager (Associate level)
We have an exciting, permanent opportunity for a Senior Risk & Resilience Consultant / Senior Information Security Consultant & Manager (Associate level) to join any of our UK offices (hybrid working) as we continue to grow.
You’ll provide day-to-day hands-on strategic level leadership within a growing high-performing and fast-paced consultancy environment, ensuring the security team delivers high quality, responsive services to both internal stakeholders and clients.
In addition to people management and leadership responsibilities, this position is strategic, hands-on, and client-facing with responsibility for shaping the direction and ongoing development of our Information Security practice. You will oversee the delivery of client engagements across a range of security and assurance frameworks, including ISO/IEC 27001 and Cyber Essentials, while identifying opportunities to enhance service offerings, strengthen team capability, and support business growth. Working closely with colleagues across Data Privacy, Business Continuity, Enterprise Risk, and the wider Howden Group, you will help deliver joined-up, client-centric solutions that address complex business challenges. You will also monitor developments in the threat landscape, emerging technologies, and Artificial Intelligence (AI), helping clients understand both the opportunities and risks associated with technological change. A particular area of focus will be helping clients and colleagues navigate the rapidly evolving AI landscape. A key requirement of the role is the ability to communicate information security risks clearly and meaningfully, translating technical issues into business-focused impacts that enable stakeholders to make confident, informed decisions.
A snapshot of your day:
- Lead the strategic direction, performance, and growth of the Information Security practice, ensuring the delivery of high-quality, commercially focused consultancy services.
- Provide leadership, mentoring, and day-to-day management to the Information Security team, fostering a collaborative, accountable, and high-performing culture and ensuring effective allocation of people, tools, and investment to meet operational and business objectives.
- Develop and maintain trusted advisor relationships with clients, providing strategic guidance on information security governance, risk management, regulatory compliance, and security best practice.
- Oversee the successful delivery of client engagements across a range of information security and assurance disciplines, including ISO/IEC 27001, Cyber Essentials, and wider governance, risk, and compliance activities, whilst driving collaboration across Information Security, Data Privacy, Business Continuity, Enterprise Risk, and the wider Howden Group to deliver integrated and client-focused assurance services and identify opportunities to expand and enhance the organisation's security service portfolio.
- Support proposal development, client presentations, and bid activities, helping secure new business opportunities and strengthen existing client relationships.
- Monitor developments in the threat landscape, regulatory environment, emerging technologies, and Artificial Intelligence (AI), ensuring service offerings remain relevant, innovative, and aligned to market needs.
- Lead the development and continuous improvement of methodologies, frameworks, policies, templates, and delivery standards to enhance quality, consistency, and operational efficiency and identify opportunities to leverage new technologies, including AI.
- Champion thought leadership initiatives, representing the organisation through client workshops, webinars, industry events, publications, and market-facing activities.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
We would love to hear from you if you have:
- Proven experience leading information security consultancy services and managing client relationships.
- Excellent understanding of information security, risk management, and compliance principles and ability to explain security risks in clear, business-focused terms.
- Experience in ISO/IEC 27001, Cyber Essentials, and information security governance (e.g., implementing ISO/IEC 27001 as a consultant; conducting or supporting internal ISO/IEC 27001 audits; guiding organisations through Cyber Essentials and/or Cyber Essentials Plus).
- Experience leading and developing teams, including performance management, mentoring, and resource planning.
- Ability to deliver strategic security advice to senior stakeholders and support risk-based decision-making.
- Experience managing multiple projects, budgets, and competing priorities within a consultancy or professional services environment.
- Strategic thinking and the ability to identify and track opportunities for growth, innovation, service development, and client retention.
- Ability to deliver effective information security training and awareness sessions.
- Understanding of evolving AI-related regulations, standards, and best practices and the opportunities and risks associated with AI and emerging technologies.
- Ability to advise on AI governance, security, privacy, and responsible adoption.
- Excellent commercial awareness and client-focused mindset.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
One or more of the following would be advantageous:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- CRISC (Certified in Risk and Information Systems Control)
- Relevant privacy, risk management, or AI governance certifications
- ISO 27001 Lead Implementer, Lead Auditor, Cyber Essentials Assessor
What's in it for you:
- Competitive discretionary annual bonus.
- Core benefits including life assurance of four times salary, income protection of 75% of salary for up to five years, and single private medical insurance cover.
- A generous pension scheme with 5% employee contributions matched by a 10% employer contribution.
- 25 days' annual leave, increasing to 27 days after five years' service.
- Access to the Howden flexible benefits programme, offering a wide range of benefits and discounts to support your wellbeing, family life, and lifestyle.
- The opportunity to be part of a growing global business where career development, collaboration, and innovation are encouraged.
Accessibility
If you require reasonable adjustments or want more information on accessibility, please let us know.
Follow Howden on LinkedIn
We kindly ask recruitment agencies to not send speculative CVs. Should we need assistance, we will reach out. All enquiries should be directed to careers@howden-group.co.uk
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location