Skip to main content
AfterDuty

Security Consultant

Version 1 · Newcastle upon Tyne, North East England

Type
Full-time
Posted
13 days ago

Overview

Your incident response and threat assessment experience supports client security consulting conversations.

About this role

Company Description

Version 1 has celebrated 30 years in business and continues to be trusted by global brands to deliver technology and transformation solutions that drive customer success. Our deep expertise enables our customers to navigate the rapidly evolving technology landscape. We foster strong partnerships with global technology leaders including Microsoft, AWS, Oracle, Red Hat, OutSystems, Snowflake, ensuring that our customers are provided with the highest quality solutions and services.

We’re an award-winning employer reflecting how our employees are at the very heart of what we do:

  • UK & Ireland's premier AWS, Microsoft & Oracle partner
  • 3300+ strong, €350/£300m revenue business
  • 10+ years as a Great Place to Work in Ireland & UK
  • Best Workplace for Women in the UK & Ireland by GPTW
  • Best Workplace for Wellbeing in the UK by GPTW

We’re a core values driven company, we hire people who share our values, and we reward those who display and foster them, it’s deeply embedded within our DNA. Invest in us and we’ll invest in you!.

Job Description

We are seeking a hands-on Security Consultant who can combine deep technical delivery capability with strong client-facing consulting skills. The ideal candidate will be comfortable assessing, designing, improving and governing security controls across cloud environments, applications, APIs, infrastructure and enterprise security domains. This role requires someone who can challenge customer security assumptions, influence stakeholders, and lead difficult but constructive conversations to drive secure outcomes.

Qualifications

Key Responsibilities

  • Assess current-state security maturity, identify control gaps, and define pragmatic remediation roadmaps aligned to business priorities.
  • Lead and support security architecture reviews across cloud, applications, infrastructure, IAM, data protection and detection/response domains.
  • Provide expert consulting to customers on security strategy, risk reduction, control design, and security operating model improvements.
  • Challenge weak security assumptions with confidence, using evidence-based recommendations and clear communication with technical and non-technical stakeholders.
  • Design and review secure cloud landing zones, network segmentation, identity models, logging/monitoring patterns, and guardrails.
  • Partner with engineering, platform, DevOps and operations teams to embed security into delivery pipelines and infrastructure as code practices.
  • Support threat detection, incident response readiness, use-case tuning, and post-incident improvement activities.
  • Contribute to security standards, policies, patterns, reusable accelerators, and client-facing deliverables including assessments, risk registers and executive summaries.

Required Hands-On Experience

  • Cloud Security (preferably AWS)
  • Hands-on experience securing cloud environments, preferably AWS, including core services, networking, identity, logging, encryption and security monitoring.
  • Experience reviewing or implementing secure cloud architectures, landing zones, account/project structures, and preventative/detective controls.
  • Knowledge of cloud-native security services and best practices for workload, storage, network and platform protection.
  • Application / API Security
  • Experience identifying and mitigating application and API security risks across the software delivery lifecycle.
  • Understanding of secure design principles, common web/API vulnerabilities, authentication/authorization models, secrets management and secure SDLC practices.
  • Ability to work with development teams to improve application security posture and shift security left.
  • SIEM Experience
  • Hands-on experience with SIEM platforms for log onboarding, correlation rule creation, alert triage, dashboarding and use-case tuning.
  • Ability to improve visibility, reduce noise, and align SIEM content to relevant threats and business risks.
  • Organisation / General Security
  • Broad understanding of enterprise security domains including policy, governance, risk, compliance, awareness, third-party risk and operational security.
  • Experience translating business and regulatory requirements into practical security controls and improvement plans.
  • Identity & Access Management (IAM)
  • Hands-on experience with identity and access management principles including RBAC, least privilege, privileged access, federation/SSO, MFA and access governance.
  • Experience reviewing entitlement models, service identities and access control weaknesses across enterprise and cloud platforms.
  • Data Protection
  • Experience implementing or advising on data classification, encryption, key management, secrets handling, tokenisation/masking, backup security and data lifecycle protection.
  • Understanding of how to secure sensitive data in transit, at rest and in use across modern platforms.
  • Infrastructure Security
  • Experience securing operating systems, virtual machines, containers/Kubernetes, networks and platform services using hardening, segmentation, vulnerability management and secure configuration practices.
  • Ability to assess infrastructure risks and recommend practical remediation approaches.
  • Threat Detection & Incident Response
  • Experience in threat detection engineering, incident triage, investigation support, response coordination and lessons-learned improvement activities.
  • Ability to map telemetry and controls to attack paths, detection scenarios and response playbooks.
  • Infrastructure as Code (IaC)
  • Hands-on experience with infrastructure as code and automation, including reviewing templates/modules for security risks and embedding policy/compliance checks into delivery pipelines.
  • Ability to apply security guardrails to repeatable platform provisioning and change delivery.
  • Strong Consulting Skills
  • Strong consulting and stakeholder management skills, with the confidence to challenge customer assumptions and lead difficult security conversations when needed.
  • Ability to balance risk, delivery timelines, business context and technical constraints to provide credible, pragmatic recommendations.
  • Strong written and verbal communication skills, including workshops, assessments, reports and executive-level briefings.

Core Skills & Competencies

  • Cloud security architecture and control design
  • Security assessments, gap analysis and remediation planning
  • Stakeholder engagement and client advisory
  • Security architecture documentation and reporting
  • Risk-based decision making and prioritisation
  • Cross-functional collaboration with engineering, operations and leadership teams
  • Strong analytical, investigative and problem-solving capability

Preferred Qualifications

  • Experience working in consulting, professional services, or customer-facing transformation programmes.
  • Relevant certifications in cloud, security, architecture or incident response are advantageous.
  • Exposure to regulated environments and security frameworks is beneficial.
  • Experience with DevSecOps, CI/CD security integration and security automation is desirable.

Additional Information

Why Version 1?

At Version 1, we believe in providing our employees with a comprehensive benefits package that prioritises their wellbeing, professional growth, and financial stability.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in Newcastle upon Tyne

Why this fits a police background

  • Incident command & response
  • Investigative casework
  • Working to legislation & regulation
  • Security operations

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • Senior eDiscovery Practitioner

    HM Revenue & Customs · Newcastle upon Tyne

    Full-time

    £45,544 – £49,523Estimated

    Your experience in digital evidence handling, disclosure, and CPIA compliance transfers directly into managing eDiscovery reviews.

    Posted 4 days ago

  • Job Description Head of Governance, Risk and Compliance (Information Security) Your impact Leonardo UK operates in a complex security, regulatory and defence environment.

    Posted 15 days ago

  • Digital Forensic Unit Investigator

    Northumbria Police · Newcastle upon Tyne

    Full-time

    Your digital evidence handling, forensic extraction and courtroom testimony discipline from policing transfer directly.

    Posted 16 days ago

  • Full-time

    Your experience managing operational risk and leading incident reviews translates directly into shaping security culture and resilience.

    Posted 2 days ago