Senior Principal (Managing) Cyber Security Consultant

Company: QinetiQ
Apply for the Senior Principal (Managing) Cyber Security Consultant
Location: Bristol
Job Description:

Overview

As a Senior Principal Cyber Security Consultant, you will provide strategic cyber security advice to senior decision-makers in complex, ambiguous environments. You’ll lead collaboration with internal and external stakeholders to deliver outcomes that enhance resilience and trust with customers. You will shape security strategies, risk-based business cases, and maturity assessments, translating technical risk into actionable guidance. Your work supports business growth through innovative cyber security solutions and bid responses. This role offers exposure to cutting-edge technology and high-impact security challenges within a defence and national security context.

Pay / Benefits

  • Matched contribution pension scheme with life assurance
  • Generous holiday allowance, with option to purchase additional days
  • Health and dental insurance options
  • Employee discount portal for various perks
  • Armed Forces Covenant and Defence Employer Recognition Scheme
  • Volunteering opportunities

Responsibilities

  • Provide cyber security consultancy to customers and senior stakeholders to address evolving security challenges and business risks
  • Support development of business cases and investment strategies by articulating cyber security risk impact on outcomes
  • Oversee and apply outputs of cyber security maturity assessments to identify improvements and resilience opportunities
  • Interpret risk models, audits and assurance activities to inform decision-making and risk management
  • Assess vulnerabilities and maturity using recognised frameworks (NIST, MITRE ATT&CK, UK Government) to provide actionable recommendations
  • Contribute innovative cyber security solutions, methodologies and bid responses to deliver value and support growth

Key requirements

  • Experience leading cyber security activities in complex environments with credible stakeholder influence
  • Proven ability to engage, influence and persuade senior stakeholders to drive outcomes
  • Ability to develop cyber security strategies, business cases and evidence-based recommendations
  • Experience communicating cyber security impact on business performance, including regulatory/compliance aspects
  • Experience applying/evaluating frameworks such as NIST, ISO27001, MITRE ATT&CK and Zero Trust
  • Experience contributing to business development, bid writing and winning opportunities in government/defence/CNI environments
  • stakeholder management
  • clear communication
  • influence and persuasion
  • NIST
  • MITRE ATT&CK
  • ISO27001

…

Posted: October 1st, 2026