At a Glance
- Tasks: Support governance, lead audits, and enhance security resilience in a dynamic law firm.
- Company: Join a forward-thinking law firm on a major cyber transformation journey.
- Benefits: Enjoy hybrid working, competitive salary, and strong UK benefits.
- Why this job: Be part of a strategic cyber investment with a focus on innovation and security.
- Qualifications: Experience in information security or compliance; knowledge of ISO 27001 is essential.
- Other info: Opportunity to work across multiple jurisdictions and contribute to a secure future.
The predicted salary is between 47000 - 78000 £ per year.
Hybrid (Coventry, 3 Days Onsite + Flexible Working) | £55,000–£65,000 + Strong UK Benefits | Strategic Cyber Investment
Be part of a forward-thinking law firm undergoing a major cyber transformation. As an Information Security Analyst, you’ll support governance, lead audits, and build security resilience across multiple jurisdictions.
What You’ll Be Doing
- Maintain and improve the ISMS, including policies, procedures, and guidelines
- Ensure ongoing ISO 27001:2022 alignment across UK and international offices
- Conduct internal audits, lead remediation efforts, and support third-party reviews
- Run supplier due diligence and respond to client risk assessments
- Investigate and escalate incidents, contributing to ongoing threat awareness
- Deliver awareness training and drive adoption of secure behaviours
What You’ll Bring
- Experience in information security or compliance-based roles
- Knowledge of ISO 27001, Cyber Essentials, NIST or similar frameworks
- Ability to communicate and collaborate across business functions
- Comfortable working in cloud and Microsoft 365 environments
- Certifications like CISMP, CISSP or ISO 27001 Lead Auditor are a bonus
Information Security Analyst employer: Locke and McCloud
Contact Detail:
Locke and McCloud Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Analyst
✨Tip Number 1
Familiarise yourself with ISO 27001:2022 and other relevant frameworks. Understanding these standards will not only help you in interviews but also demonstrate your commitment to the role and the firm's security objectives.
✨Tip Number 2
Network with professionals in the information security field, especially those who have experience in law firms or similar environments. Engaging with them can provide insights into the specific challenges and expectations of the role.
✨Tip Number 3
Stay updated on the latest trends and threats in cybersecurity. Being knowledgeable about current issues will allow you to speak confidently about how you can contribute to the firm's security resilience during discussions.
✨Tip Number 4
Prepare to discuss your experience with audits and compliance in detail. Be ready to share specific examples of how you've led remediation efforts or improved security policies in previous roles, as this will showcase your practical skills.
We think you need these skills to ace Information Security Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in information security and compliance. Emphasise your knowledge of ISO 27001 and any certifications you hold, such as CISMP or CISSP.
Craft a Compelling Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Mention specific projects or experiences that demonstrate your ability to maintain and improve an ISMS and conduct audits.
Showcase Your Skills: Clearly outline your skills related to governance, risk assessments, and incident investigation. Use examples from previous roles to illustrate how you've contributed to security resilience.
Highlight Collaborative Experience: Since the role requires communication across business functions, include examples of how you've successfully collaborated with different teams to enhance security practices or deliver training.
How to prepare for a job interview at Locke and McCloud
✨Showcase Your Knowledge of Security Frameworks
Make sure to highlight your understanding of ISO 27001, Cyber Essentials, and NIST during the interview. Be prepared to discuss how you've applied these frameworks in previous roles, as this will demonstrate your expertise and relevance to the position.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to solve hypothetical security incidents or compliance challenges. Practise articulating your thought process and decision-making skills, as this will show your analytical abilities and how you handle real-world situations.
✨Emphasise Your Communication Skills
As an Information Security Analyst, you'll need to collaborate with various teams. Be ready to provide examples of how you've effectively communicated complex security concepts to non-technical stakeholders, showcasing your ability to bridge the gap between technical and business functions.
✨Demonstrate Your Commitment to Continuous Learning
The field of information security is always evolving. Share any recent training, certifications, or industry events you've attended. This shows your dedication to staying current with trends and best practices, which is crucial for a role focused on governance and resilience.