CrawlJobs Logo

Cyber Security Secure By Design Consultant

India, Pune · Job Posted June 14, 2026
Apply Position
Job Link Share

Job Description

We are seeking an experienced Cyber Security professional to provide expert guidance and leadership across Secure by Design (SbD) practices. This role focuses on conducting comprehensive security assessments, guiding projects on risk mitigation, and ensuring alignment with Vodafone’s global security policies and standards. The individual will collaborate with cross-functional teams, support project delivery, and act as a trusted advisor to stakeholders while contributing to the growth and continuous improvement of the cybersecurity function

Job Responsibility

  • Contribute to cybersecurity leadership discussions, offering insights on security and risk management decisions
  • Ensure compliance with internal security requirements, regulatory standards, and policies across projects
  • Identify, assess, and manage security risks in collaboration with stakeholders, driving timely remediation
  • Coordinate and oversee multiple cybersecurity initiatives, ensuring timely and effective delivery
  • Perform control-based security assessments, evaluating both design and operational effectiveness of controls
  • Conduct detailed design reviews to identify gaps and recommend actionable improvements
  • Collaborate with stakeholders across business and technology teams to deliver secure solutions
  • Strengthen relationships with internal and external stakeholders through effective communication
  • Drive process improvements to enhance security posture and operational efficiency
  • Support identification of opportunities that contribute to cybersecurity practice growth
  • Document findings, reports, and recommendations with clarity and precision

Requirements

  • An experienced cybersecurity professional with 10–15 years of hands-on expertise in IT security domains
  • Skilled in security architecture and perimeter security technologies such as firewalls, VPNs, proxies, and network security
  • Knowledgeable in security frameworks including ISO 27001, NIST 800-53, OWASP, and related standards
  • Proficient in conducting end-to-end control-based security assessments and reviewing system architectures
  • Familiar with cloud security fundamentals, frameworks, and associated risks
  • Experienced in risk management practices and applying them in real-world scenarios
  • A strong communicator with excellent stakeholder management and collaboration skills
  • Capable of simplifying complex problems and delivering practical, effective solutions
  • Ideally certified in cybersecurity disciplines such as CISSP, CISM, CISA, CCSP, or ISO standards
  • Exposure to telco environments and data privacy frameworks (e.g., GDPR) is advantageous

Nice to have

Exposure to telco environments and data privacy frameworks (e.g., GDPR) is advantageous

What we offer

  • Opportunity to work on impactful, large-scale cybersecurity initiatives within a global organisation
  • Exposure to diverse technologies, projects, and international stakeholders
  • A collaborative environment focused on innovation, continuous improvement, and professional growth
  • The chance to influence cybersecurity strategy and contribute to organisational resilience

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cyber Security Secure By Design Consultant

8 matching positions

Secure By Design Consultant - Sd‑Wan & Network Security - Vois

We are seeking a Secure by Design Consultant with deep expertise in SD‑WAN, netw...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Deep expertise in SD‑WAN, network security, and cloud technologies
  • strong experience across SD‑WAN, enterprise networking, and cloud security
  • confident in engaging with both technical specialists and non‑technical stakeholders
  • experienced in firewalls, network segmentation, encryption, VPNs, zero trust architectures, and SASE frameworks
  • comfortable influencing design decisions early in the lifecycle
  • curious and forward‑looking
  • staying current with emerging threats, technologies, and industry trends in network and cloud security
Job Responsibility
Job Responsibility
  • Act as the security interface between technical teams and the business, translating cyber security principles into practical, implementable design requirements
  • Define and assure secure architectures for SD‑WAN services in line with organisational security policies, regulatory expectations, and industry standards
  • Perform security posture assessments, threat modelling, and risk assessments across network and cloud-based solutions
  • Provide security design and architecture guidance to solution architects, engineers, and delivery teams, including agile programmes
  • Review and assess SD‑WAN and SASE vendor solutions (such as Cisco, Fortinet, VMware, Palo Alto Networks, Zscaler) for security efficacy, scalability, and alignment with Vodafone standards
  • Ensure secure connectivity and integration with public cloud platforms including AWS, Azure, and GCP
  • Scope, coordinate, and support penetration testing and assurance activities prior to product and service launch
  • Collaborate closely with risk, compliance, ethical hacking, security operations, and corporate security teams to deliver end‑to‑end assurance
  • Coach and support security champions within delivery teams, promoting a proactive and collaborative security culture
  • Contribute to evolving Secure by Design standards and best practices, positioning security as a business enabler rather than a blocker
What we offer
What we offer
  • The opportunity to influence the security posture of global enterprise products used by customers worldwide
  • Exposure to leading SD‑WAN, SASE, and cloud technologies across complex, large‑scale environments
  • The ability to shape secure‑by‑design practices and standards across Vodafone Business services
  • A collaborative, international environment where security expertise is valued as a strategic differentiator
  • Fulltime
Read More
Arrow Right

Cyber Security Consultant (Cyber Incident Response)

We’re supporting a major, ZERO CARBON energy organisation at the forefront of bu...
Location
Location
United Kingdom , City of London
Salary
Salary:
Not provided
morson.com Logo
Morson Talent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in cyber incident response, crisis management, or incident management leadership roles
  • Demonstrated success in transforming or maturing an incident management capability within a complex organisation
  • Strong understanding of the incident management lifecycle, including preparation, detection, response, and post-incident improvement
  • Experience operating within regulated or critical infrastructure environments (energy, utilities, government, etc.) is highly desirable
  • Ability to translate complex technical incidents into clear, actionable insights for senior stakeholders
  • Strong stakeholder management skills, with the ability to influence across technical and business teams
  • Familiarity with frameworks such as ISO 27001, NIST, or similar
Job Responsibility
Job Responsibility
  • Define and deliver a multi-tier Cyber Incident Management strategy, aligned to enterprise risk and integrated with wider incident and crisis frameworks
  • Drive the maturity and optimisation of the existing incident management function, identifying gaps and implementing improvements
  • Own and maintain the Incident Management standards, policies, and processes within the ISMS, ensuring alignment with best practice and regulatory expectations
  • Establish metrics, KPIs, and reporting to measure capability effectiveness and drive continuous improvement
  • Manage budgets and resource planning to support capability development and ongoing optimisation
  • Ensure comprehensive incident response and crisis management plans are in place across all levels of the organisation
  • Design and deliver a structured exercising programme (tabletop, simulation, red team scenarios) aligned to real-world threats in the energy sector
  • Embed a culture of continuous learning, ensuring lessons learned are captured and translated into measurable improvements
  • Develop executive-level communication strategies, including briefing packs and reporting frameworks for major incidents
  • Act as a key point of coordination during high-severity incidents and crisis scenarios
  • Fulltime
Read More
Arrow Right

Senior Secure By Design Engineer

We are seeking a Senior Secure by Design Engineer to join the EU7 Secure by Desi...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant professional experience in cyber security (typically 5–8+ years) across domains such as IT infrastructure, cloud, networks, telecommunications, and application security
  • Strong understanding of security principles, secure design patterns, threat modelling, and risk management within enterprise and telecommunications environments
  • Practical knowledge of network and telecommunications security, including IP networking, signalling, core and access networks, and associated controls
  • Ability to translate complex technical risks into clear, business-focused recommendations and influence stakeholders through collaborative engagement
  • Relevant academic background in Computer Science, Engineering, or a related field
  • professional certifications such as CISSP, CISM, CCSP, or equivalent are advantageous
Job Responsibility
Job Responsibility
  • Lead and perform security design and architecture assessments for complex or business-critical solutions across IT, cloud, network, and telecommunications environments
  • Identify, assess, and communicate cyber risks early in the solution lifecycle, enabling proportionate risk treatment and informed decision-making
  • Define, review, and approve security requirements and controls aligned with Vodafone standards, regulatory obligations, and industry best practices
  • Provide senior-level security consultancy and guidance to engineering, network, and delivery teams, embedding security by default into designs and operations
  • Support security governance through risk sign-off, exception handling, and contributions to management and executive-level reporting
What we offer
What we offer
  • Opportunity to work on large-scale, business-critical programmes across international Vodafone markets
  • Exposure to diverse technologies including cloud, telecom networks, and enterprise IT environments
  • A collaborative environment where security influences strategic and architectural decisions
  • Continuous learning and development within a global cyber security function
  • Engagement with senior stakeholders, enhancing professional visibility and impact
Read More
Arrow Right

Senior Secure By Design Engineer

We are seeking a Senior Secure by Design Engineer to join the EU7 Secure by Desi...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant professional experience in cyber security (typically 5–8+ years) across domains such as IT infrastructure, cloud, networks, telecommunications, and application security
  • Strong understanding of security principles, secure design patterns, threat modelling, and risk management within enterprise and telecommunications environments
  • Practical knowledge of network and telecommunications security, including IP networking, signalling, core and access networks, and associated controls
  • Ability to translate complex technical risks into clear, business-focused recommendations and influence stakeholders through collaborative engagement
  • Relevant academic background in Computer Science, Engineering, or a related field
  • professional certifications such as CISSP, CISM, CCSP, or equivalent are advantageous
Job Responsibility
Job Responsibility
  • Lead and perform security design and architecture assessments for complex or business-critical solutions across IT, cloud, network, and telecommunications environments
  • Identify, assess, and communicate cyber risks early in the solution lifecycle, enabling proportionate risk treatment and informed decision-making
  • Define, review, and approve security requirements and controls aligned with Vodafone standards, regulatory obligations, and industry best practices
  • Provide senior-level security consultancy and guidance to engineering, network, and delivery teams, embedding security by default into designs and operations
  • Support security governance through risk sign-off, exception handling, and contributions to management and executive-level reporting
What we offer
What we offer
  • Opportunity to work on large-scale, business-critical programmes across international Vodafone markets
  • Exposure to diverse technologies including cloud, telecom networks, and enterprise IT environments
  • A collaborative environment where security influences strategic and architectural decisions
  • Continuous learning and development within a global cyber security function
  • Engagement with senior stakeholders, enhancing professional visibility and impact
  • Fulltime
Read More
Arrow Right

Telecoms Cyber Security Consultant

We’re here to build a network the UK can count on – one that connects people, pl...
Location
Location
United Kingdom , Newbury
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Effective communication skills to influence stakeholders and explain complex security requirements in clear terms
  • Competent in understanding network designs and equipment configurations used to deliver a wide range of IT and telecommunications solutions
  • Competent in applying security policies and principles defined in security architecture to real world scenarios
  • Understand and apply risk management principles
  • Stakeholder Management - established as the go-to person for any project issues impacting on Corporate & External Affairs teams
  • Solid understanding of networking concepts and traffic flows.
  • Understanding of how technology choices impact Cyber Security.
  • Ability to scope penetration tests and guide projects on the remediation of identified vulnerabilities.
  • Able to articulate technical risks to less-technical stakeholders.
  • Strong technical skills, with the ability to adapt in unfamiliar environments.
What we offer
What we offer
  • Excellent basic salary plus bonus and Vodafone benefits
  • up to 28 days off plus bank holidays
  • paid time for charity work
  • discounts, vouchers, a pension plan
  • amazing learning tools
  • top-notch parental leave policies
  • Fulltime
Read More
Arrow Right

Secure by Design Governance Manager

This role is accountable for improving the efficiency, consistency and quality o...
Location
Location
United Kingdom , Birmingham; London
Salary
Salary:
Not provided
plus.net Logo
Plusnet
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong People management background with experience in running a large efficient matrix managed team
  • Demonstrates own initiative to resolve problems and issues as and when they occur
  • and uses appropriate thought leadership to guide teams to solve complex and long-standing issues
  • Background in security management, process development and stakeholder management
  • Highly effective inter-personal and stakeholder management skills. Able to communicate up to senior levels within BT and equivalent externally
  • Capable and pragmatic leader, able to work diligently towards goals that will be achieved by changing already systemic and embedded was of working
  • Understands and empathises the agendas & needs of others, alongside the needs of the business. Breaks down silos, works brilliantly with partners both within and outside of the organisation to deliver business results
Job Responsibility
Job Responsibility
  • Leads on driving governance for design delivery for Security and aligning this to internal security governance in PBTG
  • Leads on driving knowledge lifecycle for the function (CVRR) to maximise the value and relevance of our data and knowledge resources
  • Drives the adoption of design pattern methodology and standards across delivery units helping the design and delivery community to realise good security
  • Defines and enforces the knowledge artefacts for design change and works with business stakeholders to implement workable and consistent approaches
  • Leads the performance analysis and strategy for security processes, tooling and metrics to identify optimisation opportunities
  • Leads or drives the adoption of continuous improvement and lean methodologies
  • Develops strategies to improve efficiency and enhance customer satisfaction
  • Drives collaboration with wider security functions to align optimisation initiatives with business needs
  • Defines data-driven decision making to analyze quantitative and qualitative data to understand performance trends
  • Defines opportunities for AI as appropriate within scope of role
What we offer
What we offer
  • On target 10% on target bonus
  • BT Pension scheme, minimum 5% Employee contribution, BT contribution 10%
  • From January 2025, equal family leave: receive 18 weeks at full pay, 8 weeks at half pay and 26 weeks at the statutory rate. It’s for all parents, no matter how your family is made up
  • Enhanced women’s health support: including help with menopause symptoms, cancer screenings, period care and more
  • 25 days annual leave (not including bank holidays), increasing with service
  • 24/7 private virtual GP appointments for UK colleagues
  • 2 weeks carer’s leave
  • World-class training and development opportunities
  • Option to join BT Shares Saving schemes
  • Fulltime
Read More
Arrow Right

Senior Lead Secure by Design

We are seeking a Secure by Design professional to lead technically orientated se...
Location
Location
India , Pune
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Extensive professional experience in information technology and cyber security, with strong capability in securing Office IT products and services
  • Demonstrated expertise with Microsoft technologies, including O365 Security & Compliance, Copilot, Microsoft Defender, Azure and cloud productivity ecosystems
  • Strong understanding of AI security and governance, including LLM risk management, prompt security and secure enterprise AI deployment
  • Solid background in enterprise risk management across cloud, Office IT and AI-related environments
  • Proficient in agile ways of working, modern cloud service consumption models and identity management in collaboration ecosystems
  • Ability to communicate complex technical matters to diverse non‑technical business stakeholders clearly and effectively
  • Holds relevant qualifications such as CISSP, CISM, CISA, CRISC, ISO 27001 LA, GIAC, TOGAF or SABSA
  • Minimum 5 years of experience in cyber security, 10+ years with Microsoft Office 365 and related services, and 5+ years in cloud security
Job Responsibility
Job Responsibility
  • Deliver technically focused security assessments for OIT products and services, ensuring alignment to secure by design principles
  • Define, communicate and oversee implementation of security requirements for new and existing services
  • Provide expert security design consultancy to architecture, delivery and operational teams across markets and group entities
  • Evaluate risks and compliance status of Office IT products, cloud services and AI-driven platforms, ensuring mitigation to acceptable levels
  • Guide suppliers and third parties in meeting Vodafone’s security expectations and standards
  • Support agile teams by coaching Security Champions and managing external security consultancy resources
  • Influence a collaborative approach that positions security as a business enabler
What we offer
What we offer
  • Opportunity to influence global cyber security practices across multiple markets and functions
  • Work on cutting-edge technologies including cloud, AI and enterprise collaboration platforms
  • Exposure to cross-functional global teams and high-impact security governance
  • Ability to shape secure solutions for products used by millions globally
Read More
Arrow Right

Cyber Security Consultant - Third Party Auditor

Cyber Security Consultant - Third-Party Auditor - £500-£550 per day - Inside IR3...
Location
Location
United Kingdom , Gloucester
Salary
Salary:
Not provided
morson.com Logo
Morson Talent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Practical working knowledge of international standards and information security frameworks (ISO27001, ISO27017, GDPR, Cyber Essentials Plus), including auditing control design and operating effectiveness against these frameworks
  • Proven experience conducting end-to-end audits or formal assurance reviews within a regulated environment (planning, walkthroughs, control testing, evidence validation, reporting and follow-up)
  • Experience assessing third-party or supplier environments
  • Understanding of HMG Security Policy Framework and NCSC/CPNI guidance and how to test compliance through audit evidence
  • Awareness of information security threats, risks and common control failures
  • Experience applying risk assessment methodologies (ISO27005, NIST, IRAM2) to support audit scoping and risk-rating of findings
  • Strong documentation and report writing skills - able to produce structured audit reports containing observations, root cause analysis and defensible conclusions
  • Ability to challenge stakeholders constructively and obtain sufficient appropriate audit evidence
  • Excellent written and verbal communication skills
  • Strong analytical mindset, professional scepticism, attention to detail and persistence
Job Responsibility
Job Responsibility
  • Plan and scope third-party audits based on risk, regulatory requirements and contractual obligations
  • Conduct audit walkthroughs and structured control interviews
  • Test design and operating effectiveness of security controls
  • Perform sampling and traceability testing across processes and systems
  • Obtain, validate and challenge audit evidence (e.g. logs, system extracts, configurations, tickets, approvals)
  • Assess compliance against ISO27001, ISO27017, GDPR, Cyber Essentials Plus and relevant sector frameworks
  • Identify control weaknesses and determine root causes
  • Form clear, risk-rated findings with practical recommendations
  • Produce structured audit reports suitable for senior governance review and regulatory scrutiny
  • Track and verify remediation actions through to closure
  • Fulltime
Read More
Arrow Right