Enable job alerts via email!

Information Security Auditor

Freshfields Bruckhaus Deringer

London

On-site

GBP 40,000 - 80,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a dedicated Information Security Auditor to enhance its cyber security operations. You will play a pivotal role in performing security assessments and auditing ISO controls while collaborating with various teams to ensure compliance with security standards. This is a fantastic opportunity to be part of a forward-thinking team that values detail-oriented and organized individuals eager to make an impact in the security space. If you're motivated and proactive, this role offers the chance to grow and develop your skills in a dynamic environment.

Qualifications

  • Experience in IT/Information Security Auditing, especially in third-party risk management.
  • Strong knowledge of ISO 27001 with relevant auditing certifications.

Responsibilities

  • Conduct security assessments for over 150 suppliers annually.
  • Audit ISO controls and ensure compliance with security standards.

Skills

IT/Information Security Auditing
Stakeholder Management
Proactive Learning

Education

ISO 27001 Auditing Qualifications
Certifications like CISM, CISSP, CISA

Tools

Cloud Services (SaaS, PaaS, IaaS)

Job description

Join Freshfields' Information Security Group (ISG) as an Information Security Auditor and play a key role in strengthening our information and cyber security operations during a period of significant technological change.

Key Responsibilities:

  • Perform security assessments for 150+ new and current suppliers annually.
  • Audit ISO controls across the firm's core operations.
  • Regularly update policies, processes, and risk mitigation measures.
  • Ensure compliance with security standards like ISO27001 and NIST.
  • Assess and address third-party security risks, providing recommendations for improvements.

Who We're Looking For:

  • IT/Information Security Auditing experience, ideally in third-party risk management.
  • Strong knowledge of ISO 27001, with relevant auditing qualifications (Lead/Internal Auditor, etc.).
  • Proven ability to collaborate across teams, influencing stakeholders and translating complex technical requirements.
  • Motivated, proactive, and eager to learn and grow in the security space.

Desirable Skills:

  • Certifications like CISM, CISSP, CISA.
  • Knowledge of Cloud services (SaaS, PaaS, IaaS).
  • Familiarity with global cyber security and privacy laws.

If you're detail-oriented, organized, and excited to be a part of a forward-thinking team, apply now to make an impact!

Inclusion
Freshfields is an equal opportunities employer and all applications received by the firm will be considered by the firm on the basis of their merit alone. We welcome applications from all suitably qualified individuals regardless of background. All offers of employment will be conditional on the candidate having/securing the right to work in the UK and providing the firm with evidence of that right (as required by the Immigration, Asylum and Nationality Act 2006) prior to employment commencing.

Freshfields is a Ban the Box employer. We ask applicants to disclose criminal convictions only when a conditional job offer is made. A conviction does not automatically lead to withdrawal of the offer: we make decisions on a case-by-case basis and take a number of factors into account (e.g., the role you are applying for and the circumstances of the offence). You would have the opportunity to discuss the matter with us before we make a decision.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.