Senior Consultant - AI Security & Threat Modelling

Reference: ANSCAITM2104_1776781265

Senior Consultant - AI Security & Threat Modelling (GenAI / Agentic AI)

We are supporting a large, regulated financial services organisation that is building a central GenAI threat‑modelling and consultancy capability.

This role sits within a specialist threat‑modelling team, advising GenAI and Agentic AI projects early in design, before solutions reach production.

This is not a coding role and not a general cyber role.

Key Responsibilities

  • Hands‑on threat modelling of GenAI and Agentic AI systems
  • Advising application teams on AI‑specific risks, including:
    • Prompt injection
    • Agent intent hijacking
    • Unsafe autonomy and tool misuse
    • Missing safety rails / kill switches (e.g. MCP‑style controls)
    • Misalignment and behavioural drift
  • Acting as an internal consultant, working with:
    • Application owners
    • Architects
    • Developers
    • Cyber security teams
  • Challenging designs constructively and recommending practical mitigations

Required Experience

  • Proven hands‑on threat modelling experience (practical, not just frameworks)
  • Strong GenAI / Agentic AI knowledge with real project examples
  • Familiarity with OWASP GenAI / LLM risks
    (generic OWASP or ISO references alone are not sufficient)
  • Strong grounding in cyber security threats and controls
  • Experience working in a large organisation with mandated security standards
  • Confident engaging and holding your own with senior engineers and architects

Details

  • Location: Sheffield or London
    • 1 day per week on‑site preferred
    • Fully remote considered for the right candidate
  • Interviews: 1 stage (next week)
  • Start: ASAP

If you are currently threat‑modelling GenAI or agentic AI systems and advising teams on how to build them safely, we'd like to hear from you.

📧 [email protected]

GCS is acting as an Employment Business in relation to this vacancy.

COMPETITIVE SALARY

Greater London

Contract

Added 21/04/2026
Reference: ANSCAITM2104_1776781265

Senior Consultant - AI Security & Threat Modelling

Greater London
Contract

Other similar jobs

Cyber Threat and Controls Consultant - B2B

Added 12/05/2026

Role: Cyber Threat and Controls Consultant - B2BDuration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are partnered with a global financial services organisation undergoing multiple large-scale transformation programmes across their Cyber Security division.In this role you will perform threat and control assessments across the business, you'll partner with architects, developers and cloud specialists across the business to review designs, challenge assumptions, and ensure services are built with strong security foundations. You'll also contribute to improving the threat‑assessment process, sharing your expertise across a global community and helping uplift security practices across the organisation.Must have:Strong understanding...

Learn more

Cyber Threat and Controls Consultant - B2B

Added 06/04/2026

Role: Cyber Threat and Controls Consultant - B2BDuration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are partnered with a global financial services organisation undergoing multiple large-scale transformation programmes across their Cyber Security division.In this role you will perform threat and control assessments across the business, you'll partner with architects, developers and cloud specialists across the business to review designs, challenge assumptions, and ensure services are built with strong security foundations. You'll also contribute to improving the threat‑assessment process, sharing your expertise across a global community and helping uplift security practices across the organisation.Must have:Strong understanding...

Learn more

Cyber Threat Intelligence Lead

Added 12/05/2026

Cyber Threat Intelligence LeadContractIndustry: National Transport & Infrastructure Location: Hybrid (The Hague) Contract Length: 12 monthsAbout the RoleA major transport infrastructure organisation is expanding its national cyber defence capability and seeks a Cyber Threat Intelligence Lead to build its CTI function from the ground up. You will provide strategic and operational intelligence across both IT and OT environments.Key ResponsibilitiesEstablish and lead the organisation's threat intelligence programme.Monitor, analyse, and disseminate intelligence on campaigns targeting OT and transport systems.Collaborate with government partners and private sector information‑sharing groups.Feed intelligence into SOC, IR, and vulnerability management functions.Produce high‑quality threat reports for executive and operational...

Learn more

Cyber Threat Intelligence Lead

Added 07/04/2026

Cyber Threat Intelligence Lead ContractIndustry: National Transport & Infrastructure Location: Hybrid (The Hague) Contract Length: 12 monthsAbout the RoleA major transport infrastructure organisation is expanding its national cyber defence capability and seeks a Cyber Threat Intelligence Lead to build its CTI function from the ground up. You will provide strategic and operational intelligence across both IT and OT environments.Key ResponsibilitiesEstablish and lead the organisation's threat intelligence programme.Monitor, analyse, and disseminate intelligence on campaigns targeting OT and transport systems.Collaborate with government partners and private sector information‑sharing groups.Feed intelligence into SOC, IR, and vulnerability management functions.Produce high‑quality threat reports for executive and...

Learn more

Network Security Consultant

Added 27/05/2026

Senior Network Security Consultant (DORA Programme) - ContractLocation: Fully Remote (Europe)Preferred Location: PolandContract Duration: 12 months initial (strong likelihood of extension)Start Date: ASAP OverviewWe are supporting a major European financial services organisation on a large-scale DORA compliance programme and are looking to onboard multiple Senior Network Security Consultants on a contract basis.This is a high-impact engagement focused on delivering third-party infrastructure and security assessments at scale. You will join an established Cloud & Network Security function, contributing to critical regulatory compliance activities. The RoleAs a Senior Consultant, you will operate at a strategic and advisory level, focusing on assessment, architecture...

Learn more

Cloud Security Consultant - B2B

Added 12/05/2026

Role: Cloud Security Consultant - B2BDuration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are working with a global financial services organisation as they continue to strengthen and optimise their Cloud Cyber Security capability. This role focuses on driving cloud security maturity, automation, and governance, with a strong emphasis on Python‑based development alongside hands‑on cyber security expertise.What you'll be doing:Designing, developing, and enhancing cloud security solutions and automation using Python web frameworks (e.g. Flask, Django, FastAPI).Assessing and improving cloud security posture and maturity, including cloud security controls, baseline governance, and security scoring initiatives.Must have:Strong hands‑on experience...

Learn more

Cloud Security Consultant - B2B

Added 06/04/2026

Role: Cloud Security Consultant - B2BDuration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are working with a global financial services organisation as they continue to strengthen and optimise their Cloud Cyber Security capability. This role focuses on driving cloud security maturity, automation, and governance, with a strong emphasis on Python‑based development alongside hands‑on cyber security expertise.What you'll be doing:Designing, developing, and enhancing cloud security solutions and automation using Python web frameworks (e.g. Flask, Django, FastAPI).Assessing and improving cloud security posture and maturity, including cloud security controls, baseline governance, and security scoring initiatives.Must have:Strong hands‑on experience...

Learn more

Cloud Security Consultant (Google Cloud) - B2B

Added 06/04/2026

Role: Cloud Security Consultant (Google Cloud)Duration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are partnered with a global financial services organisation undergoing multiple large-scale transformation programmes across their Cyber Security division, including scaling their cloud security capability. As part of a wider initiative to mature and scale cloud security engineering, we are looking for a Cloud Security Consultant to support security governance, controls, and compliance across Google Cloud environments.What you'll be doing: Reviewing and assessing security exception and risk acceptance requests from global business and technology teams, ensuring compliance with cloud security controls.Providing cloud security...

Learn more

Cloud Security Consultant (CNAPP) - B2B

Added 06/04/2026

Role: Cloud Security Consultant (CNAPP)Duration: 6-month rolling contractWorking Pattern: Krakow, Hybrid - Handful of days per monthGCS Cyber are partnered with a global financial services organisation undergoing multiple large-scale transformation programmes across their Cyber Security division, including scaling their cloud security capability. We're hiring a Cloud Security Consultant to help drive the maturity of our cloud security posture and play a key role in developing and enhancing our CNAPP tooling.What you'll be doing:Enhancing and developing CNAPP capabilities, including automation, governance, dashboards, and reportingWorking closely with cloud engineers, architects, and cyber teams to align with mandatory controls and best practiceDriving continuous...

Learn more

Cyber Security Consultant

Added 31/03/2026

The core cybersecurity function responsible for protecting systems, networks, and products across the business.This team plays a critical role in:Managing and responding to cybersecurity incidents (SOC environment)Onboarding newly acquired companies into security standardsDriving consistency across security controls, monitoring, and complianceThe role is highly cross-functional, working with Security Engineering, Operations, and GRC teams, with regular stakeholder interaction and visibility.Key SkillsStrong incident response & SOC experience (alert triage, investigations, escalation)Hands-on experience with SIEM / log analysis tools (e.g. Splunk or similar)Ability to set up and tune monitoring & alerting for threat detectionExperience implementing security controls, vulnerability management, and compliance monitoringStrong stakeholder management...

Learn more

Senior / Lead Consultant

Added 03/06/2026

With a strong reputation for delivering top-tier talent to leading organizations, we foster a dynamic and growth-oriented work environment. We are now looking for a driven 360 Recruitment Consultants to join our Technology division, playing a key role in driving new business and placing high-caliber candidate,Your Role-As a Consultant, you will take full ownership of the recruitment process-from client acquisition and relationship management to candidate sourcing and placement. You'll be instrumental in growing our tech recruitment function, building strong industry connections, and exceeding placement targets.Key Responsibilities -Business Development & Client Engagement-Identify and acquire new clients, building long-term relationships with key...

Learn more

Security Architect (AppSec and Network Security) - B2B

Added 06/04/2026

Role: Security Architect (AppSec and Network Security) - B2BDuration: 6-month rolling contractWorking Pattern: Krakow, Hybrid (handful of days per month)GCS Cyber are partnered with a global financial services organisation undergoing multiple large-scale transformation programmes across their Cyber Security division. They are now looking for a Security Architect who has extensive experience managing end-to-end solution designs within large-scale transformation programmes with a heavy focus on Network Security and Application Security Proven experience producing high-level solution designs in line with business requirements.Proven ability to conduct security assessments and threat modelling to inform design decisions.Strong background in cybersecurity, with deep expertise in network...

Learn more

Senior Full Stack Developer - Security

Added 19/05/2026

Senior Full Stack Developer - Identity & Access ManagementPosition SummaryWe are seeking an experienced Senior Full Stack Developer to join a high-performing engineering team supporting enterprise Identity & Access Management (IAM) applications within a large-scale security organization. This role will focus on the design, development, integration, and modernization of secure enterprise applications used internally across the organization.The ideal candidate will possess strong expertise across both frontend and backend development, with deep experience in Angular, Java, Spring Boot, REST API development, cloud-native AWS services, and secure application development practices. This individual will play a key technical leadership role within the team,...

Learn more

Saviynt Consultant

Added 15/05/2026

Saviynt Consultant (6-Month Contract)We're currently supporting a large international organisation on the appointment of a hands-on Saviynt Consultant to join a major security and identity programme on an initial 6-month daily rate contract.This role will focus heavily on post-implementation application security and IAM optimisation within an existing Saviynt environment. The team is looking for someone technically strong who can contribute from day one, while also being comfortable engaging with senior stakeholders across the business.This is an excellent opportunity to join a high-profile environment with strong long-term project scope, and there is genuine potential for extension beyond the initial contract period.Key...

Learn more

Business Consultant

Added 14/05/2026

Business Consultant (ERP / Implementaties)Locatie: België Over het bedrijfOnze klant is een goed gevestigde Triple Gold Microsoft Partner die ERP‑oplossingen aanbiedt aan projectgedreven en bouwgerichte organisaties in België. Het bedrijf werkt met een moderne ERP‑oplossing gebouwd op het Microsoft‑ecosysteem en staat bekend om zijn sterke samenwerking met Microsoft, gestructureerde implementatieaanpak en langetermijnrelaties met klanten.Door aanhoudende groei breiden zij hun consultingteam verder uit en zijn zij op zoek naar een Business Consultant ter ondersteuning van ERP‑implementaties in België. De rolAls Business Consultant werk je nauw samen met klanten om hun bedrijfsprocessen te begrijpen en hen te begeleiden bij de succesvolle implementatie...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.