Chief Information Security Officer (CISO)

Friday 21 Nov 2025

Ref: 1709

Global Chief Information Security Officer (CISO) – Global Law Firm

 

Totum is delighted to be working exclusively with a leading global law firm to appoint their Chief Information Security Officer. Reporting directly to the Global CIO, this is a fantastic opportunity to join at an exciting time, with the firm expanding globally. The successful person will lead the firm’s global information security strategy and ensure the highest standards of cyber resilience across multiple jurisdictions.

 

As CISO, you will take ownership of developing and executing a comprehensive security strategy aligned with the firm’s business objectives and regulatory requirements. You will operate at the board level, providing clear, actionable insights to senior stakeholders, including the Executive Team, Risk Committees, and clients.

 

The position involves managing a 24/7 global security function, overseeing geographically dispersed teams, and working closely with the Security Operations (SecOps) team to foster a ‘one team’ approach. You will lead cyber incident response planning, ensure readiness for worst-case scenarios, and maintain critical accreditations such as ISO27001 and Cyber Essentials. You will also be expected to build strong relationships across the firm and promote a culture of security awareness globally.

 

We are seeking an experienced security leader with at least six years in a senior information security role, ideally as CISO within a global, regulated, or professional services environment. You will have demonstrable experience managing international teams, strong knowledge of frameworks such as ISO27001/27002, and the ability to translate technical risk into business language. Professional certifications such as CISSP, CISM, or CISA are essential, with CRISC or ISO 27001 Lead Auditor highly desirable.

 

The successful person will combine strategic vision with operational capability, possess excellent stakeholder management skills, and demonstrate commercial acumen to balance security with agility. You will also engage with regulators, clients, and cyber insurers, ensuring the firm meets all compliance and assurance requirements.

 

This role is based in London and requires some international travel. If you are a strategic thinker with strong leadership skills and a passion for delivering world-class security in a complex global environment, we would love to hear from you. Please contact Totum for a confidential discussion