
Chief Information Security Officer – CISO
Posted Sep 18

Posted Sep 18
This is a fully remote position, open to applicants in United Kingdom.
• Develop and take ownership of the organization's information security strategy, roadmap, and risk management framework.
• Lead the security incident response in collaboration with the Managed Security Service Provider (MSSP), managing investigations, remediation efforts, and communication with stakeholders.
• Implement risk and compliance governance related to GDPR and data protection, which includes Data Protection Impact Assessments (DPIAs), data processing agreements, and handling data subject requests.
• Ensure adherence to the Solicitors Regulation Authority (SRA) requirements and applicable information security standards.
• Oversee third-party security assessments and vendor risk evaluations, encompassing technology, finance, and AI solution providers.
• Establish and uphold security controls that address data classification, access management, encryption, monitoring, and logging.
• Promote security awareness through training, educational initiatives, and incident response drills.
• Manage relationships with external Managed Security Service Providers (MSSPs).
• Deliver business-centric reporting on security risks to executive leadership and, when necessary, to regulators.
• Extensive experience in information security, including leadership roles such as CISO, Head of Security, or similar positions.
• In-depth knowledge of GDPR, UK GDPR, the Data Protection Act 2018, and broader UK regulatory frameworks.
• Experience operating in highly regulated environments.
• Proven expertise in cyber incident response, breach management, and digital forensics.
• Strong comprehension of the latest information security technologies and best practices, particularly in Microsoft Azure environments.
• Exceptional communication and stakeholder management abilities, capable of translating technical risks into business terms.
• Experience in developing security strategies, policies, and governance frameworks.
• High levels of flexibility and a commendable work-life balance.
• A comprehensive remuneration package that includes private medical insurance, income protection insurance, and discounted gym memberships.
• Opportunities for personal growth and career advancement, including professional development funding.
• Social events both in-person and remote.
• Chance to engage in various Environmental, Social, and Governance (ESG) initiatives.
• A diverse, inclusive, and authentic workplace culture.
Cloudiax
Cisco
Cisco
Skylight
Get handpicked remote jobs straight to your inbox weekly.