Skip to main content
AfterDuty

Information Assurance CAF Consultant

Sanderson Government & Defence · London, Greater London

Salary
£600 – £700 a dayEstimated
Type
Contract
Posted
7 days ago

Overview

Your incident response and risk assessment experience from policing transfers directly to this cyber assurance role.

About this role

Information Assurance CAF Consultant

Security Clearance: Active SC Clearance required

Contract Length: 6-18 Months

Rate: Competitive Market Rate

This is an excellent opportunity for an Information Assurance professional with strong experience in the Cyber Assessment Framework (CAF), Governance, Risk & Compliance (GRC), Quality Assurance, and Operational Resilience. You will work alongside client and delivery teams to strengthen security controls, enhance assurance frameworks, support compliance activities, and drive continuous improvement initiatives.

As a trusted subject matter expert, you will engage with stakeholders at all levels, providing guidance on assurance, risk management, governance, and resilience while helping clients meet regulatory and security requirements within complex and highly regulated environments.

Key ResponsibilitiesInformation Assurance & CAF Compliance

  • Support the implementation, assessment, and continuous improvement of Information Assurance frameworks aligned to the Cyber Assessment Framework (CAF).
  • Evaluate compliance against security, governance, risk, and resilience requirements.
  • Conduct assurance reviews to identify control gaps and recommend remediation actions.
  • Support internal and external audits, assessments, and accreditation activities.
  • Ensure security, quality, and assurance activities align with organisational and client standards.

Quality Assurance & Governance

  • Develop, maintain, and enhance quality assurance frameworks, methodologies, and controls.
  • Monitor compliance with policies, procedures, standards, and regulatory requirements.
  • Assess operational effectiveness and identify opportunities for improvement.
  • Support governance forums by providing assurance reporting and recommendations.
  • Contribute to the development of quality metrics and performance indicators.

Business Continuity & Operational Resilience

  • Support Business Continuity and Disaster Recovery (BCDR) activities.
  • Review resilience capabilities and identify opportunities to strengthen operational readiness.
  • Assist with testing, exercising, and validating continuity and recovery plans.
  • Ensure critical services meet resilience and availability requirements.

Process Improvement & Best Practice

  • Lead initiatives to improve assurance, compliance, and quality management processes.
  • Identify trends, risks, and recurring issues that could impact delivery or compliance.
  • Promote continuous improvement and operational excellence across teams.
  • Develop and implement best practices that enhance governance and assurance outcomes.

Reporting & Analysis

  • Analyse assurance, risk, and quality data to support decision-making.
  • Produce high-quality reports, dashboards, and management information.
  • Present findings and recommendations to senior stakeholders.
  • Monitor remediation activities and report progress against agreed objectives.

Skills & ExperienceEssential

  • Strong experience within Information Assurance, Governance, Risk, Compliance, or Quality Assurance environments.
  • Demonstrable experience working with the Cyber Assessment Framework (CAF) or comparable assurance frameworks.
  • Advanced knowledge of Quality Assurance principles and methodologies.
  • Experience conducting audits, compliance assessments, and assurance reviews.
  • Strong understanding of governance, risk management, and control frameworks.
  • Experience producing assurance reports, recommendations, and improvement plans.
  • Excellent communication, stakeholder engagement, and influencing skills.
  • Ability to work independently and provide subject matter expertise.
  • Active SC Clearance.

Desirable

  • Experience supporting Business Continuity and Disaster Recovery programmes.
  • Knowledge of government security standards and public sector assurance frameworks.
  • Experience working within government, Critical National Infrastructure (CNI), or other highly regulated environments.
  • Familiarity with:
  • NCSC Cyber Assessment Framework (CAF)
  • ISO 27001
  • NIST Cybersecurity Framework
  • Risk Management Frameworks
  • Control Assurance and Testing
  • Operational Resilience Programmes
  • Experience supporting large-scale digital transformation, cloud migration, or complex technology programmes.

Reasonable Adjustments

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason,**please let us know when you apply or talk to the recruiters directly so we can support you.*

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in London

Why this fits a police background — match score 70/100

  • Police experience explicitly valued
  • Incident command & response
  • Working to legislation & regulation

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • £35,000 – £40,000Estimated

    Your risk assessment and incident management skills from policing are directly applicable to this GRC role.

    Posted 3 days ago

  • Full-time

    Your incident command and multi-agency coordination experience translates directly to operational resilience and third-party oversight.

    Posted 3 days ago

  • Full-time

    Your investigative mindset and evidence-handling discipline from policing transfer directly to digital forensics and incident response.

    Posted 4 days ago

  • GRC Manager - 6 month FTC

    Trayport · London

    Full-time

    Your experience managing risk, policy, and regulatory compliance under frameworks like PACE transfers directly to GRC.

    Posted 6 days ago