img
Contract

Senior Security Analyst - Product-Based Risk Assessment (PBRA)

Salt
London
money-bag £517 - £690/day
Posted: 19 August 2026 (Today)
Closing date: 18 September 2026
Ref: 225512801

Senior Cyber Security Risk & Assurance Consultant - Product Risk (PBRA) (CONTRACTOR) - London

Duration: 1 year contract

Hybrid Working - 8 days onsite per month - the rest is remote working

About the Team

The Product-Based Risk Assessment (PBRA) service conducts recurring security assessments of applications, services, and technologies to identify emerging threats, evaluate control effectiveness, and drive remediation that strengthens The clients cyber resilience.

The team supports business and technology stakeholders by assessing cyber security risks and ensuring alignment with The Banks security standards and risk appetite.

Key Accountabilities

Product-Based Risk Assessments

  • Lead end-to-end Product-Based Risk Assessments (PBRA) for critical applications, platforms, and technology services.
  • Analyse application architectures, business processes, information flows, and supporting infrastructure.
  • Identify and assess cyber threats, vulnerabilities, control weaknesses, and potential business impacts.
  • Evaluate the design and effectiveness of security controls using clients security frameworks and standards.
  • Assess residual risks and propose actionable remediation plans.

Security Risk Analysis

  • Perform security risk assessments using recognised methodologies and industry frameworks.
  • Evaluate risks related to infrastructure, software, cloud services, networks, third-party integrations, and information assets.
  • Contribute to threat modelling and attack surface analysis activities.
  • Support technology-focused assessments such as cloud, AI, and emerging technology evaluations.

Stakeholder Engagement

  • Act as the primary security assessment contact for business and IT stakeholders.
  • Facilitate workshops, interviews, and assessment review sessions.
  • Challenge assumptions and provide expert security guidance to delivery and operations teams.
  • Build trusted relationships across CISO, CTO, Architecture, Risk Management, and Engineering teams.

Reporting & Governance

  • Produce high-quality assessment reports, risk summaries, and executive-level communications.
  • Present findings and recommendations to senior management and governance bodies.
  • Track remediation plans and risk treatment activities through closure.
  • Support internal and external audit activities as required.

Continuous Improvement

  • Contribute to the evolution of the PBRA service, methodologies, tools, and operating model.
  • Help drive the transition toward data-enabled and automated security assessment capabilities.
  • Identify opportunities to improve efficiency, consistency, and risk coverage across assessments.
  • Support knowledge sharing and mentoring of junior analysts.

Required Skills & Experience

Technical Skills

  • Strong understanding of cybersecurity principles, controls, and risk management practices.
  • Knowledge of application security, cloud security, infrastructure security, and network security.
  • Experience conducting security assessments, threat modelling, or risk analyses.
  • Familiarity with industry frameworks and standards such as:
    • NIST Cyber Security Framework
    • ISO 27001
    • CIS Controls
    • Secure Controls Framework (SCF)
    • DORA
    • ANSSI EBIOS RM
    • OWASP

Professional Experience

  • Minimum 7 years of experience in Information Security, Cyber Risk, Security Assurance, or Security Architecture.
  • Experience leading complex security assessments across large technology environments.
  • Experience working with senior business and technology stakeholders.
  • Strong report-writing and presentation skills.

Personal Competencies

  • Strong analytical and critical-thinking capabilities.
  • Excellent communication and stakeholder management skills.
  • Ability to challenge constructively and influence decision-making.
  • Self-driven with strong ownership and accountability.
  • Pragmatic, risk-based mindset.
  • Comfortable operating in a complex, regulated environment.

Please do send across to me the most up to date CV to (url removed)

*Rates depend on experience and client requirements

Other jobs of interest...

McCabe & Barton
CityToday
money-bag100000.00-100000.00 Annual
Assist Security Group
LondonToday
money-bag10000-500000 Annual
Assist Security Group
LondonYesterday
money-bagNegotiable
Taylor James Resourcing Limited
City of LondonYesterday
money-bag£95,000

Perform a fresh search...

  • Create your ideal job search criteria by
    completing our quick and simple form and
    receive daily job alerts tailored to you!

Jobs. Straight to your inbox!