Information Security Officer

4 weeks ago


London, United Kingdom Ashurst Full time

About Ashurst

Ashurst is a leading progressive global law firm with a rich history spanning more than 200 years. We are proud of our history and are future-focused, having expanded into new technologies through our NewLaw division, Ashurst Advance, and our consulting arm. Our in-depth understanding of our clients and commitment to providing excellent standards of service have seen us become a trusted adviser to local and global corporates, financial institutions and governments in all areas of commercial law. To find out more please visit .

Department/Role overview

The successful candidate will play a crucial role in ensuring the security of our systems and data by evaluating the risks associated with third-party vendors and internal projects, and recommending appropriate risk mitigation strategies.

The Information Security Officer (Digital) will work closely with cross-functional teams, including the Office of the Chief Digital Officer, Risk & Compliance, project management, and technical teams, to ensure compliance with security standards and best practices.

Main responsibilities

Assessing Security Risks (SCTY - Level 4, BURM - Level 4)

  • Conduct vendor risk assessments and project security risk assessments based on established methodologies and frameworks.
  • Evaluate security risks associated with third-party vendors and internal projects, considering factors such as security, privacy, and compliance.
  • Identify vulnerabilities and potential risks and provide recommendations for risk mitigation strategies.
  • Apply knowledge of industry best practices and regulatory requirements to assess and mitigate security risks.

Information Security (SCTY - Level 4)

  • Ensure compliance with security policies, standards, and procedures in vendor relationships and project activities.
  • Develop and maintain security assessment frameworks and methodologies for vendor risk assessments and project security risk assessments.
  • Stay informed about emerging security threats, industry trends, and regulatory requirements related to vendor management and project security.
  • Participate in incident response activities and contribute to security incident investigations and remediation efforts.

Supplier Relationship Management (SUPP - Level 4)

  • Collaborate with procurement teams to assess and manage security risks associated with vendors.
  • Review vendor security documentation, such as questionnaires, audits, and certifications, to evaluate their security posture.
  • Provide guidance to procurement teams regarding security requirements and standards for vendor selection and ongoing monitoring

Risk Management (BURM - Level 4)

  • Apply risk management principles to identify, assess, and prioritise security risks.
  • Collaborate with project managers and technical teams to assess security risks and propose appropriate risk mitigation strategies.
  • Track and monitor the implementation of security remediation plans.

Security Compliance Management (SCAD - Level 3, SCTY - Level 4, AUDT - Level 4

  • Conduct periodic reviews and audits to ensure compliance with security policies, standards, and regulatory requirements.
  • Support the development and enforcement of security policies, standards, and procedures related to vendor management and project security.
  • Provide security awareness training and guidance to staff as required.

Risk and Control: Ensure that all activities and duties are carried out in full compliance with our regulatory requirements and internal policies.

Essential skills and experience

  • Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent work experience).
  • Professional certifications such as CISA, CISM, or similar credentials are preferred.
  • Strong knowledge of information security principles, best practices, and standards (e.g., ISO 27001, NIST).
  • Experience in conducting vendor risk assessments and project security risk assessments.
  • Familiarity with security frameworks and assessment methodologies.
  • Knowledge of regulatory requirements related to data privacy and protection (e.g., GDPR, CCPA) is a plus.
  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to work independently and collaboratively in a team-oriented environment.
  • Attention to detail and a commitment to maintaining high-quality standards.

Other Responsibilities (as required)

  • Other suitable duties, consistent with the duties and responsibilities of the position as directed by the supervisor or nominated delegate.

Background checks

In order to comply with regulatory and client requirements, Ashurst will undertake appropriate vetting of staff. When applicants accept a job offer, Ashurst, alongside a specialist provider, will undertake professional verification and background checks. These checks are only undertaken with consent, and in accordance with our legal and regulatory obligations.

#J-18808-Ljbffr

  • London, United Kingdom Information Security Solutions Full time

    Title: Head of Operational Security Reference No: 2181 Company: Online Location: London, UK Reports to CISO Day Rate: TBC Duration 5 months The Role This role reports to the CISO and is part of the security leadership team. The Person: An analytical problem solver with demonstrable long-term experience leading and improving operational security...


  • London, United Kingdom Digby Morgan Full time

    summary - _ city of london, london_ - _ contract_- specialism - it- sub specialism - network, systems & security- reference number - PR-1258548 - job details Information Security Officer - 100% Remote - contract flexible based upon experience. Are you a seasoned Information Security Officer with a passion for safeguarding digital assets and ensuring robust...


  • London, United Kingdom Akkodis Full time

    **Information Security Officer** Akkodis are currently working in partnership with a global technical service provider to recruit an experienced Information Security Officer who will be responsible for maintaining ISMS that align with company standards. **Please note this is a remote role and successful applicants can be based UK wide.** **The Role** As...


  • London, United Kingdom BPM Tech UK Full time

    **Job Type** **Permanent** **Location** **Remote work** **Area** **London, England** **Sector** **Info Sec** **Salary** - £35000 - £40000 per annum **Currency** **GBP** **Start Date** - 2023/11/21 **Job Ref** - V-37210-1 **Job Views** - 4 **Description** **Information Security Officer** **Role**:Information Security...


  • London, United Kingdom BPM Tech UK Full time

    **Job Type** **Permanent** **Location** **Remote work** **Area** **London, England** **Sector** **Info Sec** **Salary** - £35000 - £40000 per annum **Currency** **GBP** **Start Date** - 2023/11/21 **Job Ref** - V-37210-1 **Job Views** - 4 **Description** **Information Security Officer** **Role**:Information Security...


  • London, United Kingdom Comtecs Ltd Full time

    IT Security Officer / InfoSec Officer / Information Security Officer - Governance, Risk, Compliance; Implementation of Security Controls; Risk Assessments; Security Audits; InfoSec Advisory; Incident Management. CISM, CISSP, CySA+, CASP+ etc; ISO 27001,NIST, Cyber Essentials Plus. London / Remote (Hybrid 1 Days Per Week In Office). £80k - £85k +...

  • Security Officer

    1 week ago


    London, United Kingdom Security Full time

    **_Be our star, join us and create your own successful story _** We are currently looking for **Security Officer **to join our team. **_ Our Benefits Package Includes:_** - **Competitive Salary**: - **Holidays**: 22.4 days paid holidays per year, inclusive 8 bank and public holidays - **Uniform**: - **Contributory pension scheme and Life Assurance**: -...

  • Security Officer

    3 weeks ago


    London, United Kingdom Security Full time

    **“The world is yours with Meliá”** Joining Meliá is to embark on a journey without borders because the possibilities of growing and training here are endless. It is to know that the world is yours and that you can work in many countries. And all with the feeling that you are part of a big family. ***Salary package: from £26,000 to £27,685**//...


  • London, United Kingdom Synapri Full time

    Permanent - Hybrid - Information Security Officer ✨Synapri are currently working with a leading sports broadcaster based out of SE London / Kent to recruit an Information Security Officer on a permanent, hybrid basis.As an Information Security Officer, you will contribute to the development, enhancement, and management of our client’s information...


  • London, United Kingdom Viqu Limited Full time

    Role - Information Security Officer Location - SE London Type - Permanent Structure - Hybrid Salary - Open to discussion About the role and responsabilities for the Information Security Officer role: A well known brand in the automotive and sports car scene is looking for a Information Security Officer to join them permanently click apply for full job...

  • Information Officer

    1 month ago


    London, United Kingdom UK Health Security Agency Full time

    **Details**: **Reference number**: - 299950**Salary**: - £27,690 - £32,203- Grade EO. Inner London - £27,690 - £32,203 per annum.**Job grade**: - Executive Officer**Contract type**: - Permanent**Type of role**: - Knowledge and Information Management - Science**Working pattern**: - Full-time**Number of jobs available**: - 1Contents Location About...

  • Information Officer

    1 month ago


    London, United Kingdom UK Health Security Agency Full time

    **Details**: **Reference number**: - 304981**Salary**: - £27,690 - £32,203**Job grade**: - Executive Officer**Contract type**: - Permanent**Type of role**: - Administration / Corporate Support - Analytical**Working pattern**: - Full-time**Number of jobs available**: - 1Contents Location About the job **Benefits**: Things you need to...

  • Information Officer

    2 months ago


    London, United Kingdom UK Health Security Agency Full time

    **Details**: **Reference number**: - 281232**Salary**: - £27,690 - £32,203**Job grade**: - Executive Officer**Contract type**: - Permanent**Type of role**: - Administration / Corporate Support - Analytical - Architecture and Data**Working pattern**: - Flexible working, Full-time, Homeworking, Part-time**Number of jobs available**: -...


  • London, United Kingdom Investigo Full time

    Role - Information Security Officer Contract Length - 3 Months Rate - £550-600 per day (Outside IR35) Location - London **Overview** The role brings a mix of strategic, technical and operational responsibilities. You will develop information security strategy, policies and procedures, simultaneously inspiring, training and influencing your peers to set...


  • London, United Kingdom Synapri Full time

    Synapri are currently working with a leading sports broadcaster based out of SE London / Kent to recruit an Information Security Officer on a permanent, hybrid basis. As an Information Security Officer, you will contribute to the development, enhancement, and management of our client’s information security GRC function. You will lead the monitoring and...

  • Information Officer

    1 month ago


    London, United Kingdom UK Health Security Agency Full time

    Job title -Information Officer Profession - Clinical and Public Health Directorate - IPC, Outbreaks and AMR Stewardship Team, HCAI, Fungal, AMR, AMU & Sepsis Division, Clinical and Emerging Infections Directorate Full Time equivalent - 37.5 hours No of Roles - 1 Contract Type - Permanent Location - 61 Colindale Avenue, London NW9 5EQ UKHSA offers...


  • London, UK, United Kingdom VIQU Limited Full time

    Role - Information Security Officer Location - SE London Type - Permanent Structure - Hybrid Salary - Open to discussion About the role and responsabilities for the Information Security Officer role: A well known brand in the automotive and sports car scene is looking for a Information Security Officer to join them permanently. You will be a key member of a...


  • London, United Kingdom VIQU Limited Full time

    Role - Information Security OfficerLocation - SE LondonType - PermanentStructure - Hybrid Salary - Open to discussion About the role and responsabilities for the Information Security Officer role:A well known brand in the automotive and sports car scene is looking for a Information Security Officer to join them permanently. You will be a key member of...

  • Security Officer

    3 days ago


    London, United Kingdom 2012 Security Full time

    Corporate Security Officer We have day and night shifts available, average of 48 hours a week. Duties will include - asset protection - patrolling all floors of the building - locking and unlocking - proactively dealing with any incidents that may occur. You must have excellent communication skills, a smart and professional appearance, be mobile and have...

  • Security Officer

    1 month ago


    London, United Kingdom Guardior Security Ltd Full time

    **Job Summary**: We are seeking a highly skilled and experienced Security Officer to join our team at a prestigious construction project in East London. As a Security Officer, you will be responsible for implementing security protocols and ensuring the safety of our premises, staff, and visitors. This is a critical role that requires strong communication...