×
Register Here to Apply for Jobs or Post Jobs. X

Information Security Lead

Job in London, Greater London, W1B, England, UK
Listing for: Charles Russell Speechlys
Full Time position
Listed on 2026-09-14
Job specializations:
  • IT/Tech
    Information Security & Data Protection, Cybersecurity, IT Consultant
Job Description & How to Apply Below
To act as the senior deputy to the Head of Information Security, providing strategic leadership, governance oversight, and operational assurance across the Information Security function. This role deputises in the absence of the Head of Information Security and leads the firm’s security governance, regulatory compliance, and executive reporting activities.

Roles & Responsibilities  Strategic & Governance Leadership
• Deputise for the Head of Information Security at ITLT, OpCom, Risk Com and Advisory Board as required.
• Define, maintain and mature the Information Security Strategy aligned to Technology Directorate and firm objectives.
• Establish governance mechanisms to ensure effective security oversight.
• Own annual review and update of Information Security Terms of Reference.
• Ensure security roles, responsibilities and training plans are defined and maintained.

Regulatory & Policy Oversight
• Own the Information Security Policy framework and supporting standards.
• Ensure mapping of regulatory and industry standards (e.g. GDPR, ISO 27001) to firm policies.
• Oversee annual policy attestation and compliance reporting.
• Lead audit readiness and regulatory engagement.

Risk & Assurance
• Ensure all information security risks are documented, escalated and managed appropriately.
• Oversee third-party security assessment programme (regulatory and client-driven).
• Provide executive-level reporting on security posture, risk exposure and compliance status.
• Maintain evidence framework demonstrating compliance and traceability.

Financial & Resource Management
• Support management of Information Security budget.
• Oversee business case development for security initiatives.
• Manage programme demand and prioritisation across the Info Sec portfolio.

Other  Comply with all relevant legal and regulatory obligations including the Solicitors Regulation Authority (SRA) Standards and Regulations, and Principles. Person specification  
• 8–12+ years in Information Security, with governance leadership experience.
• Strong knowledge of ISO 27001, GDPR, law firm or regulated professional services environment preferred.
• Experience presenting to executive committees.
• Strong commercial and financial awareness.
• Ability to operate at both strategic and tactical levels.

Hybrid working - We adopt a hybrid and flexible working approach, dependent on the requirements of the role and subject to manager approval.

For a detailed specification please download the job description in the documents section of this page.

Clicking 'apply' will direct you to the application tracking system, hosted for us by
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary