Senior Information Security Governance Analyst
Location: South East
Salary: DOE
Salary band: Dependant upon experience
Contract type: Permanent Date posted:
Blue Legal are seeking an experienced Senior Information Security Governance Analyst to join a Technology team in Southampton, with a specialist focus on Innovation and Projects. This is an exciting opportunity to play a key role in supporting the firm’s growing use of artificial intelligence, innovation and emerging technologies, while ensuring information assets remain appropriately protected, managed and governed.
Key Responsibilities
- Provide information security and governance advice across innovation and AI initiatives throughout the Group.
- Review projects and technology solutions, identifying potential security, privacy and data protection risks and recommending appropriate improvements.
- Support the development and implementation of AI governance policies, procedures and user guidance.
- Conduct AI risk assessments, identifying key risks and providing practical recommendations for mitigation.
- Manage security and privacy assessments, including Data Protection Impact Assessments (DPIAs)and associated reviews.
- Support the ongoing maintenance and development of the firm’s ISO 27001management system, as well as future ISO 42001
- Contribute to information governance initiatives, including data classification and records management.
- Support client and supplier assurance activities, ensuring appropriate information security and governance requirements are addressed.
- Produce clear and accurate management reporting, including key risk indicators and governance metrics.
- Build and maintain strong working relationships with stakeholders across the business and with third-party suppliers.
- Promote cyber-security awareness, information governance and best practicacross the organisation.
You will bring:
- At least three years’ experiencein an information security, data governance or related role.
- Experience working across information security, cyber security, data governance or a similar discipline.
- Strong knowledge of information security, data protection and governance principles.
- Experience supporting risk assessments, security reviews and compliance activities.
- An interest in AI, emerging technologies and AI governance.
- Knowledge of privacy and data protection requirements.
- An understanding of information security standards, particularly ISO 27001.
- Experience developing or supporting policies, procedures and governance frameworks.
- Strong stakeholder management and communication skills.
- Excellent analytical and problem-solving abilities.
- Relevant information security and/or data protection certifications would be beneficial.
- Degree-level education would be advantageous.
Apply Now Email to a friend
