Head of IT Security – Law Firm

Company: Totum Partners
Apply for the Head of IT Security – Law Firm
Location: London
Job Description:

  • You will lead, define, implement and assure our information and cyber security posture across the firm.
  • The role has broad responsibility for security strategy, standards, controls and services – operating at a level aligned to CISO capability.
  • Defining and implementing security strategy, standards and controls aligned to ISO27001, Cyber Essentials Plus and the firm’s wider data, AI and innovation strategies.
  • Overseeing security operations, monitoring, detection and response across areas such as SOC, SIEM, XDR, vulnerability management and incident response.
  • Working with Governance & Risk to maintain and improve the ISMS, support audits and ensure regulatory and client expectations are met.
  • Providing clear reporting on security posture, risks, incidents and improvement plans to technical and non-technical stakeholders.

Skills Required

  • Security leadership experience, ideally at CISO-level within a law firm environment.
  • Strong knowledge of security operations, identity and access management, cloud and network security, endpoint protection, email security and modern models such as Zero Trust / ZTNA.
  • Experience working with ISO27001, Cyber Essentials Plus and recognised security frameworks such as CIS Controls or NIST.
  • Experience managing teams, vendors and managed security services, ideally in a SaaS-focused professional services environment.

This role offers hybrid working – 2 days onsite weekly.

#J-18808-Ljbffr…

Posted: September 21st, 2026