Senior Information Security Governance Analyst

Location: South East
Salary: DOE
Salary band: Dependant upon experience
Contract type: Permanent
Date posted:

Blue Legal are seeking an experienced Senior Information Security Governance Analyst to join a Technology team in Southampton, with a specialist focus on Innovation and Projects. This is an exciting opportunity to play a key role in supporting the firm’s growing use of artificial intelligence, innovation and emerging technologies, while ensuring information assets remain appropriately protected, managed and governed.

Key Responsibilities

  • Provide information security and governance advice across innovation and AI initiatives throughout the Group.
  • Review projects and technology solutions, identifying potential security, privacy and data protection risks and recommending appropriate improvements.
  • Support the development and implementation of AI governance policies, procedures and user guidance.
  • Conduct AI risk assessments, identifying key risks and providing practical recommendations for mitigation.
  • Manage security and privacy assessments, including Data Protection Impact Assessments (DPIAs)and associated reviews.
  • Support the ongoing maintenance and development of the firm’s ISO 27001management system, as well as future ISO 42001
  • Contribute to information governance initiatives, including data classification and records management.
  • Support client and supplier assurance activities, ensuring appropriate information security and governance requirements are addressed.
  • Produce clear and accurate management reporting, including key risk indicators and governance metrics.
  • Build and maintain strong working relationships with stakeholders across the business and with third-party suppliers.
  • Promote cyber-security awareness, information governance and best practicacross the organisation.

You will bring:

  • At least three years’ experiencein an information security, data governance or related role.
  • Experience working across information security, cyber security, data governance or a similar discipline.
  • Strong knowledge of information security, data protection and governance principles.
  • Experience supporting risk assessments, security reviews and compliance activities.
  • An interest in AI, emerging technologies and AI governance.
  • Knowledge of privacy and data protection requirements.
  • An understanding of information security standards, particularly ISO 27001.
  • Experience developing or supporting policies, procedures and governance frameworks.
  • Strong stakeholder management and communication skills.
  • Excellent analytical and problem-solving abilities.
  • Relevant information security and/or data protection certifications would be beneficial.
  • Degree-level education would be advantageous.

 

 

 

Apply Now