
Salt
Senior Cyber Security Risk Assessment Consultant
Job Description
Salary: £130,000 - 140,400 per year
Requirements:- 10 years experience within Cyber / Information Security.
- Proven experience performing technical security risk assessments.
- Strong understanding of application and/or infrastructure security.
- Experience identifying security risks and translating these into practical security requirements and controls.
- Experience contributing to and/or validating technical and architectural solution designs.
- Strong knowledge of OWASP and application-security principles.
- Experience with DAST, SAST, vulnerability assessment, penetration testing or related security-testing approaches.
- Experience defining security-testing requirements and reviewing the resulting findings.
- Ability to understand complex applications, infrastructure and technology architectures.
- Experience producing security documentation, standards, principles, requirements or baselines.
- Experience translating business requirements into appropriate technical security solutions.
- Strong analytical and critical-thinking skills.
- Ability to take ownership of security assessments and work independently across multiple projects.
- Excellent stakeholder-management and communication skills.
- Ability to explain and defend security recommendations with both senior business stakeholders and highly technical IT professionals.
- Experience working within large, complex enterprise environments.
- Fluent English.
- Perform security risk assessments across business and IT projects.
- Identify threats, vulnerabilities, security weaknesses and potential impacts within proposed solutions.
- Translate security architecture, policies, risks and controls into clear functional and technical security requirements.
- Define and advise on the design, implementation and testing processes required to protect information systems and assets.
- Embed Secure by Design principles throughout the technology delivery lifecycle.
- Contribute to architectural and solution design discussions and validate designs against security requirements.
- Review applications, platforms and infrastructure from a security perspective.
- Define application security testing requirements, including appropriate use of DAST, SAST, code scanning and penetration testing.
- Define penetration-testing scope and work closely with security-testing teams throughout execution.
- Review security-testing and penetration-testing reports and assess whether identified risks have been appropriately addressed.
- Apply OWASP principles and guidelines when assessing application security.
- Identify security gaps and recommend appropriate remediation and compensating controls.
- Produce and maintain security standards, principles, baselines and documented security requirements.
- Recommend new or improved security services and controls.
- Act as a Security Subject Matter Expert for project and business teams.
- Present security risks, findings and recommendations clearly to both senior stakeholders and deep technical specialists.
- Work closely with Business Owners, Business Analysts, Project Managers, Risk Management, Architects, Developers, Engineers and internal/external auditors.
- OWASP
- Security
- API
- CI/CD
- DevSecOps
- Web
More:
We are recruiting multiple Senior Cyber Security Risk Assessment Consultants for a long-term 12-month contract in London, working in a hybrid model within a global financial services environment. We offer a rate of £500 to £540 per day, inside IR35, with umbrella engagement required. This role sits within our Cyber & Information Security function and focuses on application security, Secure by Design, DAST, SAST and OWASP across a broad portfolio of business and technology projects.
last updated 38 week of 2026
Interested in this role?
Submit your application now
How to Apply
About Salt

Salt
South East London
IT
Skills & Technologies
Inferred from job description
Salary Insight
£135,200
This role
£75,000
UK median
This salary is 80% above the UK median for Senior roles (£75,000/yr).
Based on 2024–2025 UK technology sector benchmarks