Rodeo
Get started

Gibson Dunn

Deputy Chief Information Security Officer

London
Posted about 8 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Gibson Dunn

Gibson Dunn is a leading global law firm, advising clients on significant transactions and disputes. Our exceptional teams craft and deploy creative legal strategies that are meticulously tailored to every matter, however complex or high-stakes. The firm’s work is distinguished by a unique combination of precision and vision.

Deputy Chief Information Security Officer (Deputy CISO)

Based in London, the Deputy Chief Information Security Officer (Deputy CISO) serves as the second-in-command of the information security organization, partnering with the CISO to define and execute the enterprise security strategy. This role combines strategic leadership with operational oversight, ensuring security programs run effectively while preparing to assume full CISO responsibilities when needed.

This role reports to the Chief Information Security Officer.

Responsibilities Include

Strategic Leadership

  • Partner with the CISO to develop and maintain the enterprise information security strategy, roadmap, and governance framework.
  • Represent the security organization to executive leadership, the board, and other internal and external stakeholders in collaboration with the CISO.
  • Drive alignment between security initiatives and business objectives across the Firm.
  • Lead strategic planning for emerging risks, regulatory changes, and technology shifts.

Operational Oversight

  • Support the CISO with the day-to-day management of the security function, including security operations, security engineering & architecture, governance, risk & compliance and physical security.
  • Manage security metrics, reporting, and executive dashboards to provide visibility into risk posture.
  • Maintain a list of inflight security initiatives and report status to the CISO and other stakeholders.
  • Coordinate cross-functional security initiatives with IT, information governance and other areas of the business as required.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Team Leadership & Development

  • Lead, mentor, and develop a team of security managers and senior technical staff.
  • Build a high-performing, inclusive security culture focused on continuous improvement.
  • Own workforce planning, hiring, and succession planning for the security organization.
  • Foster professional development and career growth across the team.

Incident & Crisis Management

  • Serve as key member of the incident response team.
  • Lead post-incident reviews and drive lessons-learned improvements.
  • Support proactive crisis tabletop exercises.

Qualifications

  • Proven ability to communicate security risk to executive audiences in business terms.
  • Confident communicator who builds trust with technical/non-technical stakeholders.
  • Ability to balance long-term vision with pragmatic, risk-based prioritization.
  • Works effectively across organizational boundaries; influences without authority and provides calm, decisive leadership during incidents and crises.

Experience

  • Bachelor's degree in computer science, information security, or related field (or equivalent experience); master’s degree preferred.
  • 10+ years of progressive experience in information security, with at least 5 years in senior leadership roles.
  • Industry certifications such as CISSP, CISM, CISA, or CRISC.
  • Background in both enterprise and cloud-native security environments.
  • Demonstrated experience building and leading security teams with a track record of leading security during M&A, digital transformation, or rapid growth.
  • Deep expertise across multiple security domains: governance/risk/compliance, security architecture, operations, identity & access management, application security, or cloud security.
  • Strong understanding of regulatory and compliance frameworks relevant to the industry.
  • Experience managing security budgets and vendor relationships.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Gibson Dunn will consider for employment qualified Applicants with Criminal Histories in a manner consistent with the requirements of local law.


For technical difficulties with our online application, please contact us at staffrecruiting@gibsondunn.com. Our recruiting support team will respond as soon as possible.


Gibson Dunn is committed to ensuring equal employment opportunities for all qualified applicants, including individuals with disabilities. We strive to ensure an inclusive and accessible hiring experience. The Firm will provide reasonable accommodations to qualified individuals with disabilities to enable participation in the application and recruitment process, unless doing so would impose an undue hardship, in accordance with applicable laws and regulations.

If you require a reasonable accommodation to complete an application, participate in an interview, or otherwise take part in the recruitment process, please contact us at recruiting-accommodations@gibsondunn.com. Please note, this is a dedicated email inbox established exclusively to assist applicants with accommodation request related to the recruitment process. Inquiries about the status of an application or other non-accommodation matter will not receive a response.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Strategic Leadership
Information Security Strategy
Operational Oversight
Governance Risk & Compliance
Incident Response
Crisis Management
Team Leadership
Security Architecture
Cloud Security
Identity & Access Management
Application Security
Vendor Management
Budget Management
Stakeholder Management
Workforce Planning
Risk Prioritization

Location

London, England, United Kingdom

Sign up to applySee more jobs like this