UK remote
Cybersecurity Advisor
About this role
Job Summary: Abacus is seeking a Cybersecurity Advisor to join its cybersecurity consulting and vCISO team in the UK. This role supports a variety of clients, primarily those within the financial sector, by providing practical cybersecurity guidance, helping mature information security programs, and advising on security strategies aligned to business needs, technical environments, and relevant UK and EU regulatory expectations.
We are seeking a highly skilled and experienced Cybersecurity Advisor to join our world-class cybersecurity consulting (vCISO) team at Abacus Group. The ideal candidate will have a deep understanding of information security strategies suitable for small and mid-size businesses within the financial services sector coupled with the technical expertise to guide and advise on implementation efforts. Responsibilities (including but not limited to): Act as the primary security advisor for multiple clients, providing strategic guidance and oversight on all aspects of their cybersecurity programs.
Develop and implement security strategies, policies, and procedures for varying client environments. Conduct operational risk assessments and develop risk management plans to address identified gaps and risks within complex environments. Design and advise on the implementation of secure architectures and solutions tailored to client needs. Build and maintain strong relationships with clients, understanding their unique security challenges and providing tailored solutions.
Collaborate with Abacus teams to translate assessment findings, penetration testing results, and technical risks into practical remediation roadmaps for clients. Prepare clear, client-ready documentation, including cybersecurity roadmaps, risk summaries, policy recommendations, executive updates, and remediation guidance tailored to both technical and non-technical stakeholders. Support the delivery of vCISO services across multiple client environments, working with internal SMEs on complex strategic, regulatory, or technical matters as appropriate.
Research and stay current on cybersecurity, privacy, and operational resilience requirements relevant to UK, EU, and UAE financial services clients, including FCA, UK/EU GDPR, DORA, FSRA, DFSA, and other client-specific regulatory frameworks. Serving as the designed Cloud Officer for vCISO clients with a requirement under CSSF. Occasional travel within the UK and EU to industry-specific conferences or major client meetings (less than 10% travel).