- You will lead, define, implement and assure our information and cyber security posture across the firm.
- The role has broad responsibility for security strategy, standards, controls and services – operating at a level aligned to CISO capability.
- Defining and implementing security strategy, standards and controls aligned to ISO27001, Cyber Essentials Plus and the firm’s wider data, AI and innovation strategies.
- Overseeing security operations, monitoring, detection and response across areas such as SOC, SIEM, XDR, vulnerability management and incident response.
- Working with Governance & Risk to maintain and improve the ISMS, support audits and ensure regulatory and client expectations are met.
- Providing clear reporting on security posture, risks, incidents and improvement plans to technical and non-technical stakeholders.
Skills Required
- Security leadership experience, ideally at CISO-level within a law firm environment.
- Strong knowledge of security operations, identity and access management, cloud and network security, endpoint protection, email security and modern models such as Zero Trust / ZTNA.
- Experience working with ISO27001, Cyber Essentials Plus and recognised security frameworks such as CIS Controls or NIST.
- Experience managing teams, vendors and managed security services, ideally in a SaaS-focused professional services environment.
This role offers hybrid working – 2 days onsite weekly.
#J-18808-Ljbffr…
