DAC Beachcroft
Chief Information Security Officer (CISO)

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Department: CSG - Business Operations (Audit / Risk / Client Account Management / Finance / Legal / People / Procurement / Property and Facilities / Sales and BD / IT)
Location: Remote - England and Wales
Description
Are you an experienced information security leader looking to make a real impact? We're seeking a Chief Information Security Officer (CISO) to take ownership of our information security strategy, regulatory compliance, and cyber resilience framework.
As CISO, you will play a pivotal role in protecting sensitive client data, legal case information, and financial records while ensuring compliance with GDPR, SRA requirements, and broader regulatory obligations. This is a strategic leadership position offering the opportunity to shape and mature our security posture across the organisation.
About the Role
Working closely with the Chief Technology Officer and senior leadership team, you will develop and implement a comprehensive security strategy that protects the business from evolving cyber threats while maintaining regulatory compliance and client trust.
You will act as the organisation's subject matter expert for information security, data protection, risk management, and incident response.
What you will do?
- Develop and own the organisation's information security strategy, roadmap, and risk management framework.
- Working with our MSSP, lead the response to security incidents, coordinating investigations, remediation activities, and stakeholder communications.
- Working with our Group Legal and colleagues, implement effective risk and compliance governance to ensure GDPR and data protection compliance, including DPIAs, data processing agreements, and data subject requests.
- Ensure compliance with Solicitors Regulation Authority (SRA) requirements and relevant information security standards.
- Manage third-party security assessments and vendor risk reviews, including technology, finance, and AI solution providers.
- Establish and maintain security controls covering data classification, access management, encryption, monitoring, and logging.
- Drive a culture of security awareness through training, education, and incident response exercises.
- Manage relationships with external Managed Security Service Providers (MSSPs) to ensure effective service delivery and governance.
- Provide clear, business-focused reporting on security risks to executive leadership and regulators where required.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Who you are
- Significant experience in information security, including leadership experience at CISO, Head of Security, or equivalent level.
- Strong knowledge of GDPR, UK GDPR, the Data Protection Act 2018, and wider UK regulatory requirements.
- Experience operating within highly regulated environments.
- Proven experience in cyber incident response, breach management, and digital forensics.
- Strong understanding of the latest information security technologies and best practice deployment, particularly within Microsoft Azure environments.
- Excellent communication and stakeholder management skills with the ability to translate technical risks into business language.
- Experience developing security strategies, policies, and governance frameworks.
What's in it for you?
- High levels of flexibility and a great work-life balance - https://www.dacbeachcroft.com/en/Work-with-us/Whats-in-it-for-you
- A well-rounded remuneration package (which includes private medical insurance, income protection insurance and discounted gym membership, amongst many other benefits)
- Opportunities for growth and progression including professional funding
- In person and remote social events
- Opportunity to get involved in a range of Environmental, Social and Governance (ESG) activities
- We are dedicated to building a diverse, inclusive and authentic workplace, which aligns closely to our cultural principles (Determined, Clear, Creative and Supportive). If you are excited about this role and being part of our culture, but your past experience does not align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles!


Get help with your application
Your very own career expert that helps elevate your application to the next level.
We are happy to talk flexible working with our Flex Forward scheme. We would encourage you to talk to us about our approach to flexible working during the hiring process if you would like to explore this further.
Note for Recruitment Agencies
DAC Beachcroft manages all vacancies via our in-house recruitment teams, prioritising direct sourcing and referrals. When external support is required, roles are released to selected agencies on our Preferred Supplier List (PSL).
Speculative CVs sent to any DAC Beachcroft employee without prior instruction from our recruitment teams (LLP and CSG) will not be accepted, and no fees will be payable.
For PSL queries, please contact: recruitment@dacbeachcroft.com or csgrecruitment@dacbeachcroft.com
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location