About CFGI:
CFGI is a global consulting firm that helps organisations navigate complex business challenges with confidence. With a strong presence in the UK, we partner with companies across industries to deliver best-in-class advisory services in accounting, risk, cyber security, technology, and business transformation.
We pride ourselves on combining technical expertise with a practical, hands-on approach, helping our clients strengthen resilience, meet regulatory requirements, and stay ahead in an increasingly digital and risk-driven landscape.
Technical and Domain Experience:
- Conduct cybersecurity maturity and risk assessment and for clients.
- Practical experience implementing security controls, in areas such as MDR, IAM, Network Security, Cloud Deployments.
- Advise clients on cybersecurity strategy, metrics and reporting for various levels of stakeholders, including Audit Committees and Board of Directors.
- Build risk management practices for clients, including policies, procedures, Risk Register, etc.
- Previous experience as a systems administrator, systems engineer, or security analyst.
- Understanding of operating system hardening principles, network design principles, and systems security.
- Guide clients in establishing cybersecurity policies, standards, and procedures.
- Manage cybersecurity training & awareness services for clients from design to implementation.
- Understanding of security analysis, security events, and penetration testing.
Soft Skills:
- Strong interpersonal and communication skills; experience with cross-cultural communications.
- Calmness and clarity of thought under pressure and ability to maintain positive attitude.
- Agile and flexible, capable of dealing with ambiguity, and confronting challenges and opportunities with speed, endurance, and decisiveness.
- Confidence to manage upwards, provide forward thinking ideas and actively participate in improving CFGI’s cyber offering.
Technical Qualifications and Certifications:
- Industry certifications are preferred, but not required: CISSP, CISM, etc.
- Technology specific qualifications in technology or security solutions.
Experience:
- Whilst we will judge the quality of candidates not their time-served in the industry, a good gauge for this role would be around 5 years’ experience in technology and security related fields.
- Your experience does not have to be purely cyber security consulting. We believe individuals with practical skillsets from in-house roles, broader technology management or GRC, for example, would be well placed in our team.
- We know great candidates bring a mix of skills and experiences, you don’t need to have done everything listed in this job description to apply.