Enable job alerts via email!

Security Analyst

Locke & Mccloud

England

Hybrid

GBP 55,000 - 65,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking law firm as a Security Analyst, where you will play a pivotal role in a major cyber transformation. This position involves supporting governance, leading audits, and enhancing security resilience across various jurisdictions. You will maintain and improve the Information Security Management System (ISMS), ensure compliance with ISO 27001:2022, and conduct internal audits. The firm values strong communication and collaboration skills, as you will work closely with different business functions. This dynamic role offers a unique opportunity to contribute to a strategic cyber investment while enjoying a hybrid working model with competitive benefits.

Qualifications

  • Experience in information security or compliance-based roles is essential.
  • Knowledge of ISO 27001, Cyber Essentials, and NIST frameworks is crucial.

Responsibilities

  • Maintain and improve the ISMS, ensuring ISO 27001:2022 alignment.
  • Conduct internal audits and support third-party reviews.

Skills

Information Security
Compliance
Communication
Collaboration
Incident Investigation

Education

Experience in Information Security or Compliance
Certifications (CISMP, CISSP, ISO 27001 Lead Auditor)

Tools

ISO 27001
Cyber Essentials
NIST
Microsoft 365

Job description

Security Analyst

Hybrid (London, 3 Days Onsite + Flexible Working)| £55,000–£65,000 + Strong UK Benefits | Strategic Cyber Investment

Be part of a forward-thinking law firm undergoing a major cyber transformation. As anSecurity Analyst, you’ll support governance, lead audits, and build security resilience across multiple jurisdictions.

What You’ll Be Doing

  • Maintain and improve the ISMS, including policies, procedures, and guidelines

  • Ensure ongoing ISO 27001:2022 alignment across UK and international offices

  • Conduct internal audits, lead remediation efforts, and support third-party reviews

  • Run supplier due diligence and respond to client risk assessments

  • Investigate and escalate incidents, contributing to ongoing threat awareness

  • Deliver awareness training and drive adoption of secure behaviours

What You’ll Bring

  • Experience in information security or compliance-based roles

  • Knowledge of ISO 27001, Cyber Essentials, NIST or similar frameworks

  • Ability to communicate and collaborate across business functions

  • Comfortable working in cloud and Microsoft 365 environments

  • Certifications like CISMP, CISSP or ISO 27001 Lead Auditor are a bonus

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.