Senior Cyber Risk & AI Governance Consultant

Company: Bestman Solutions
Apply for the Senior Cyber Risk & AI Governance Consultant
Location: Surrey
Job Description:

Senior Cyber Risk & AI Governance Consultant

6-Month Contract | Outside IR35 | Hybrid

We’re working with a large, complex organisation looking for an experienced Senior Cyber Risk & AI Governance Consultant to support an evolving portfolio of cyber governance, risk and assurance work.

The role will have a particular focus on AI governance and cyber risk, helping the organisation establish practical governance around the use of AI while supporting wider security, compliance and assurance requirements.

This is a hands-on delivery role, suited to someone who can work independently, bring structure to developing requirements and translate governance expectations into practical processes and controls.

Responsibilities

  • Develop and implement proportionate AI governance frameworks, policies and standards.
  • Assess AI use cases across operational, research and corporate environments.
  • Establish practical AI risk assessment, approval and oversight processes.
  • Develop and maintain risk registers, governance reporting and supporting documentation.
  • Assess security, privacy, third-party and regulatory risks associated with AI adoption.
  • Support wider cyber risk, governance, compliance and assurance activities.
  • Strengthen controls, evidence and reporting across sensitive or externally governed programmes.
  • Work closely with technical teams, senior leaders and non-technical stakeholders.
  • Translate complex risk and governance requirements into practical processes that can be adopted across the organisation.

Skills & Experience

  • Strong experience across cyber risk, governance and compliance.
  • Recent experience in AI governance, responsible AI or AI risk management.
  • Proven experience developing and implementing governance frameworks and controls.
  • Working knowledge of relevant standards and frameworks, including ISO 27001, ISO 42001 and NIST AI RMF.
  • Strong understanding of security, privacy and third-party risk.
  • Excellent stakeholder engagement and written communication skills.
  • Ability to work independently, manage competing priorities and deliver at pace.
  • Experience within higher education, research, public sector or similarly complex environments would be beneficial.
  • Exposure to defence, sensitive research or regulated programmes would be advantageous.

The role will be predominantly remote, with occasional travel to Surrey. Interviews will commence swiftly.

Posted: September 1st, 2026