technology job

Information Assurance CAF Consultant

  • Posted August 20, 2026
  • £600 - £700 per day
  • Contract

Information Assurance CAF Consultant

Location: UK (London – 3 days a week)
Security Clearance: Active SC Clearance required
Contract Length: 6-18 Months
Rate: Competitive Market Rate

About the Role

We are seeking an experienced Information Assurance CAF Consultant to join a growing consultancy delivering cyber security, assurance, and governance services across a portfolio of government projects.

This is an excellent opportunity for an Information Assurance professional with strong experience in the Cyber Assessment Framework (CAF), Governance, Risk & Compliance (GRC), Quality Assurance, and Operational Resilience. You will work alongside client and delivery teams to strengthen security controls, enhance assurance frameworks, support compliance activities, and drive continuous improvement initiatives.

As a trusted subject matter expert, you will engage with stakeholders at all levels, providing guidance on assurance, risk management, governance, and resilience while helping clients meet regulatory and security requirements within complex and highly regulated environments.

Key Responsibilities

Information Assurance & CAF Compliance

  • Support the implementation, assessment, and continuous improvement of Information Assurance frameworks aligned to the Cyber Assessment Framework (CAF).
  • Evaluate compliance against security, governance, risk, and resilience requirements.
  • Conduct assurance reviews to identify control gaps and recommend remediation actions.
  • Support internal and external audits, assessments, and accreditation activities.
  • Ensure security, quality, and assurance activities align with organisational and client standards.

Quality Assurance & Governance

  • Develop, maintain, and enhance quality assurance frameworks, methodologies, and controls.
  • Monitor compliance with policies, procedures, standards, and regulatory requirements.
  • Assess operational effectiveness and identify opportunities for improvement.
  • Support governance forums by providing assurance reporting and recommendations.
  • Contribute to the development of quality metrics and performance indicators.

Business Continuity & Operational Resilience

  • Support Business Continuity and Disaster Recovery (BCDR) activities.
  • Review resilience capabilities and identify opportunities to strengthen operational readiness.
  • Assist with testing, exercising, and validating continuity and recovery plans.
  • Ensure critical services meet resilience and availability requirements.

Process Improvement & Best Practice

  • Lead initiatives to improve assurance, compliance, and quality management processes.
  • Identify trends, risks, and recurring issues that could impact delivery or compliance.
  • Promote continuous improvement and operational excellence across teams.
  • Develop and implement best practices that enhance governance and assurance outcomes.

Reporting & Analysis

  • Analyse assurance, risk, and quality data to support decision-making.
  • Produce high-quality reports, dashboards, and management information.
  • Present findings and recommendations to senior stakeholders.
  • Monitor remediation activities and report progress against agreed objectives.

Skills & Experience

Essential

  • Strong experience within Information Assurance, Governance, Risk, Compliance, or Quality Assurance environments.
  • Demonstrable experience working with the Cyber Assessment Framework (CAF) or comparable assurance frameworks.
  • Advanced knowledge of Quality Assurance principles and methodologies.
  • Experience conducting audits, compliance assessments, and assurance reviews.
  • Strong understanding of governance, risk management, and control frameworks.
  • Experience producing assurance reports, recommendations, and improvement plans.
  • Excellent communication, stakeholder engagement, and influencing skills.
  • Ability to work independently and provide subject matter expertise.
  • Active SC Clearance.

Desirable

  • Experience supporting Business Continuity and Disaster Recovery programmes.
  • Knowledge of government security standards and public sector assurance frameworks.
  • Experience working within government, Critical National Infrastructure (CNI), or other highly regulated environments.
  • Familiarity with:
    • NCSC Cyber Assessment Framework (CAF)
    • ISO 27001
    • NIST Cybersecurity Framework
    • Risk Management Frameworks
    • Control Assurance and Testing
    • Operational Resilience Programmes
  • Experience supporting large-scale digital transformation, cloud migration, or complex technology programmes.

Reasonable Adjustments:

Respect and equality are core values to us. We are proud of the diverse and inclusive community we have built, and we welcome applications from people of all backgrounds and perspectives. Our success is driven by our people, united by the spirit of partnership to deliver the best resourcing solutions for our clients.

If you need any help or adjustments during the recruitment process for any reason, please let us know when you apply or talk to the recruiters directly so we can support you.

Apply for this Job