Enable job alerts via email!

Security Analyst

Locke & Mccloud

Greater London

Hybrid

GBP 55,000 - 65,000

Full time

30 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking law firm as a Security Analyst, playing a pivotal role in their cyber transformation journey. This position offers the opportunity to enhance security governance, lead audits, and build resilience across multiple jurisdictions. You'll be responsible for maintaining the Information Security Management System (ISMS), ensuring compliance with ISO 27001:2022, and conducting internal audits. The role also involves delivering awareness training to promote secure behaviors within the organization. If you're passionate about information security and thrive in a collaborative environment, this is your chance to make a significant impact.

Qualifications

  • Experience in information security or compliance-based roles is essential.
  • Knowledge of ISO 27001, Cyber Essentials, or similar frameworks is required.

Responsibilities

  • Maintain and improve the ISMS, including policies and procedures.
  • Conduct internal audits and lead remediation efforts across jurisdictions.

Skills

Information Security
Compliance
Communication
Collaboration
Incident Investigation

Education

Certifications like CISMP, CISSP or ISO 27001 Lead Auditor

Tools

ISO 27001
Cyber Essentials
NIST
Microsoft 365

Job description

Security Analyst

Hybrid (London, 3 Days Onsite + Flexible Working)| £55,000–£65,000 + Strong UK Benefits | Strategic Cyber Investment

Be part of a forward-thinking law firm undergoing a major cyber transformation. As anSecurity Analyst, you’ll support governance, lead audits, and build security resilience across multiple jurisdictions.

What You’ll Be Doing

  • Maintain and improve the ISMS, including policies, procedures, and guidelines

  • Ensure ongoing ISO 27001:2022 alignment across UK and international offices

  • Conduct internal audits, lead remediation efforts, and support third-party reviews

  • Run supplier due diligence and respond to client risk assessments

  • Investigate and escalate incidents, contributing to ongoing threat awareness

  • Deliver awareness training and drive adoption of secure behaviours

What You’ll Bring

  • Experience in information security or compliance-based roles

  • Knowledge of ISO 27001, Cyber Essentials, NIST or similar frameworks

  • Ability to communicate and collaborate across business functions

  • Comfortable working in cloud and Microsoft 365 environments

  • Certifications like CISMP, CISSP or ISO 27001 Lead Auditor are a bonus

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.