Security Risk Consultant - Risk Management- 6 Month Contract - Inside IR35 - Hybrid in Manchester
Contract Type: Initial 6 month contract (Inside IR35)
Rate: £500 per day
Location: Hybrid in Manchester
Role Overview
A Security Risk Consultant is responsible for safeguarding the organisation's assets, operations, and strategic initiatives by leading security risk management, governance, and due diligence activities-particularly across mergers and acquisitions (M&A). They play a critical role in identifying, assessing, and mitigating security risks across global operations, ensuring informed decision-making at both operational and executive levels.
The role combines strategic oversight with hands-on governance and resilience responsibilities, including security due diligence, business continuity planning, and regulatory compliance. Working closely with Legal, Finance, IT, and executive leadership, they ensure security risks are effectively managed, integration of acquired entities is seamless, and organisational resilience is strengthened through robust frameworks, controls, and continuous improvement.
Key Responsibilities:
- M&A Security Due Diligence
- Lead and conduct security due diligence for acquisitions, partnerships, and divestitures, identifying risks, vulnerabilities, and integration challenges, and presenting findings to senior stakeholders.
- Risk Assessment & Mitigation
- Perform enterprise-wide security risk assessments, defining and implementing mitigation strategies aligned with organisational risk appetite.
- Business Continuity & Resilience Planning
- Develop, implement, and maintain Business Continuity Plans (BCP) and Disaster Recovery (DR) frameworks, including Business Impact Analyses (BIA) and crisis simulations.
- Security Governance & Compliance
- Ensure alignment with security policies, regulatory requirements, and governance frameworks, maintaining oversight of global security posture and compliance.
- Stakeholder Engagement & Integration
- Collaborate cross-functionally with Legal, Finance, IT, and Executive Leadership to support decision-making and ensure smooth integration of acquired entities into security standards.
What You Will Ideally Bring:
- M&A Security & Due Diligence Expertise
- Proven experience conducting security assessments within M&A activities, including risk identification and integration planning.
- GRC (Governance, Risk & Compliance)
- Strong understanding of security frameworks, regulatory requirements, and enterprise risk management practices.
- Business Continuity & Crisis Management
- Experience developing BCP/DR strategies, conducting BIAs, and managing crisis response and resilience planning.
- Risk Analysis & Reporting
- Strong analytical skills with the ability to assess complex risks and present clear, actionable insights to senior leadership.
- Cross-Functional Leadership & Communication
- Ability to work effectively with diverse stakeholders across Legal, Finance, IT, and executive teams, influencing decisions and driving outcomes.