Chief Information Security Officer (CISO)

Gb
UK
7 days ago
Apply on www.apply4u.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Microsoft Azure Cyber Security Identity and Access Management Data Processing Data Classification Cybercrime

Job description

Are you an experienced information security leader looking to make a real impact? We’re seeking a Chief Information Security Officer (CISO) to take ownership of our information security strategy, regulatory compliance, and cyber resilience framework.As CISO, you will play a pivotal role in protecting sensitive client data, legal case information, and financial records while ensuring compliance with GDPR, SRA requirements, and broader regulatory obligations. This is a strategic leadership position offering the opportunity to shape and mature our security posture across the organisation.About the RoleWorking closely with the Chief Technology Officer and senior leadership team, you will develop and implement a comprehensive security strategy that protects the business from evolving cyber threats while maintaining regulatory compliance and client trust.You will act as the organisation’s subject matter expert for information security, data protection, risk management, and incident response.What you will do?Develop and own the organisation’s information security strategy, roadmap, and risk management framework.Working with our MSSP, lead the response to security incidents, coordinating investigations, remediation activities, and stakeholder communications.Working with our Group Legal and colleagues, implement effective risk and compliance governance to ensure GDPR and data protection compliance, including DPIAs, data processing agreements, and data subject requests.Ensure compliance with Solicitors Regulation Authority (SRA) requirements and relevant information security standards.Manage third-party security assessments and vendor risk reviews, including technology, finance, and AI solution providers.Establish and maintain security controls covering data classification, access management, encryption, monitoring, and logging.Drive a culture of security awareness through training, education, and incident response exercises.Manage relationships with external Managed

Requirements

Security Service Providers (MSSPs) to ensure effective service delivery and governance.Provide clear, business-focused reporting on security risks to executive leadership and regulators where required.Who you areSignificant experience in information security, including leadership experience at CISO, Head of Security, or equivalent level.Strong knowledge of GDPR, UK GDPR, the Data Protection Act 2018, and wider UK regulatory requirements.Experience operating within highly regulated environments.Proven experience in cyber incident response, breach management, and digital forensics.Strong understanding of the latest information security technologies and best practice deployment, particularly within Microsoft Azure environments.Excellent communication and stakeholder management skills with the ability to translate technical risks into business language.Experience developing security strategies, policies, and governance frameworks.What’s in it for you?High levels of flexibility and a great work

Benefits & conditions

life balance - well-rounded remuneration package (which includes private medical insurance, income protection insurance and discounted gym membership, amongst many other benefits)Opportunities for growth and progression including professional fundingIn person and remote social eventsOpportunity to get involved in a range of Environmental, Social and Governance (ESG) activitiesWe are dedicated to building a diverse, inclusive and authentic workplace, which aligns closely to our cultural principles (Determined, Clear, Creative and Supportive). If you are excited about this role and being part of our culture, but your past experience does not align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles!DepartmentCSG - Business Operations (Audit / Risk / Client Account Management / Finance / Legal / People / Procurement / Property and Facilities / Sales and BD / IT)Employment TypePermanentWorkplace typeFully remote

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.apply4u.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all