Head of Information and Cyber Security
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The Law Society is seeking an experienced and visionary Head of Information and Cyber Security to lead their enterprise-wide security strategy. You will define and deliver the security roadmap, manage information and IT risk, and embed a strong security culture across the organisation. Reporting to the Executive Director of Technology & Change, you will act as a trusted adviser, translating complex risks into clear business terms and ensuring they remain secure, resilient, and agile.
Key Responsibilities
- Provide strategic leadership for information and cyber security across the organisation.
- Define and implement the security roadmap, ensuring compliance with regulatory frameworks.
- Manage enterprise-wide security and IT risk, including risk registers, control testing, and executive reporting.
- Develop and embed a cross-organisation security awareness culture.
- Oversee security operations and incident response at a leadership level.
- Ensure robust business continuity, disaster recovery, and operational resilience frameworks.
- Design and manage security assurance and audit programmes.
About You
We’re looking for a proven security leader with:
- A track record in leading enterprise-level information security functions or programmes (Head of, Deputy CISO, or equivalent).
- Deep knowledge of governance, risk management, compliance, and frameworks such as ISO 27001, GDPR, Cyber Essentials, and NIST.
- Ability to balance security risk with business agility using a pragmatic, risk-based approach.
- Experience developing and embedding security awareness across an organisation.
- Strong expertise in cloud security (Azure, M365), data protection, identity & access management, and modern security tooling.
- Understanding of AI, automation, and emerging technology risk management.
- Leadership experience in security operations and incident response.
- Knowledge of business continuity, disaster recovery, and operational resilience frameworks.
- Experience designing and managing security assurance and audit programmes.
Why Join Us?
This is a unique and exciting opportunity to shape the security posture of a leading professional body, ensuring resilience and trust in their systems and services. You’ll work at the heart of the Technology & Change function, influencing strategy and enabling innovation.
Requirements
We’re looking for a proven security leader with:
- A track record in leading enterprise-level information security functions or programmes (Head of, Deputy CISO, or equivalent).
- Deep knowledge of governance, risk management, compliance, and frameworks such as ISO 27001, GDPR, Cyber Essentials, and NIST.
- Ability to balance security risk with business agility using a pragmatic, risk-based approach.
- Experience developing and embedding security awareness across an organisation.
- Strong expertise in cloud security (Azure, M365), data protection, identity & access management, and modern security tooling.
- Understanding of AI, automation, and emerging technology risk management.
- Leadership experience in security operations and incident response.
- Knowledge of business continuity, disaster recovery, and operational resilience frameworks.
- Experience designing and managing security assurance and audit programmes.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Best Companies to work for in London: Top 25 Companies in 2023
IT Salaries in UK