Intelance is an independent UK advisory and assurance firm and an IASME Certification Body for Cyber Essentials, Cyber Essentials Plus and IASME Cyber Assurance. We work with mid-market, enterprise and regulated organisations across cyber assurance, governance, risk and technology.
We are appointing professionals who already hold formal UK Cyber Security Council (UKCSC) registration in Cyber Security Governance and Risk Management at Principal or Chartered level, to join our associate panel and support the assessment and advisory of large, complex organisations.
This is not permanent employment. Work is offered on a project-by-project basis according to client demand, suitability and availability. There is no guaranteed volume of work.
Please note: current UKCSC registration in Cyber Security Governance and Risk Management at Principal or Chartered level is an essential requirement for this role. Applications without it will not be progressed.
Tasks
You may be asked to:
- Lead independent cyber governance and risk reviews for large, complex and regulated organisations.
- Assess risk appetite, risk ownership, control effectiveness and risk-treatment decisions.
- Review policies, risk registers, control mappings, assurance evidence and governance arrangements.
- Judge whether evidence supports the conclusions presented to senior leaders.
- Explain cyber risks and control gaps clearly to boards, executives and non-technical stakeholders.
- Lead interviews and workshops with CISOs, risk owners and control owners.
- Produce clear, defensible, client-ready governance and risk reports.
- Complete scheme-specific training and participate in internal quality reviews where required.
Requirements
You must hold:
- Current UK Cyber Security Council (UKCSC) professional registration in Cyber Security Governance and Risk Management at Principal or Chartered level. This is mandatory and will be verified.
You should also have:
- Substantial senior experience in cyber governance, risk management or formal cyber assurance.
- Experience advising boards, executive teams or senior risk committees in large or regulated organisations.
- Practical knowledge of recognised frameworks such as ISO 27001, NIST CSF, Cyber Essentials or equivalent.
- Excellent written English and the ability to challenge weak evidence respectfully.
CISM, CRISC, CISA and ISO 27001 Lead Auditor or Lead Implementer are welcome but do not replace the UKCSC registration requirement.
You must be based in the UK, able to attend UK client sites when agreed, and able to contract through a limited company or another compliant arrangement.
Benefits
- Senior cyber governance, risk and assurance assignments.
- Flexible associate working based on your availability.
- Direct access to Intelance leadership.
- Work with experienced governance, architecture and technical-assurance specialists.
- Clear scopes, templates and quality-review arrangements.
- Potential inclusion in Intelance proposals and associate credentials, subject to agreement.
Please provide:
- Your CV and LinkedIn profile.
- Your UK Cyber Security Council registration: specialism, level (Principal or Chartered) and your registration number or public UKCSC profile link.
- Your location, availability and expected day rate.
- One example of a difficult enterprise cyber-risk decision you personally led.
- Details of any relevant Cyber Essentials, IASME, ISO 27001 or risk qualifications.