Foot Anstey LLP
Senior Cyber and Information Security Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Job Title: Senior Cyber and Information Security Manager
Ready to take your career to the next level?
We're one of the UK's most forward-thinking law firms, built on a foundation of innovation, collaboration, and ambition. Join us, and let's shape the future together.
Being refreshingly human starts with how we hire. We believe a diverse mix of perspectives makes us stronger, not just as a business, but in creating a culture where we all feel we truly belong and can thrive. That's why we're committed to removing barriers and creating fair opportunities for everyone.
We are in a period of exclusive direct sourcing for this role and are not currently accepting applications from recruitment agencies.
The role in 60 seconds
Role: Senior Cyber and Information Security Manager
Team: IT - Technology Operations
Location: Hybrid working from Bristol, Exeter, Plymouth, or Southampton
Working Pattern: Full-time
Why this role matters: This is a pivotal opportunity to shape and lead our cyber and information security strategy, protecting our people, systems, and client data whilst ensuring we remain ahead of evolving threats, regulatory requirements, and client expectations.
What you'll do
As our Senior Cyber and Information Security Manager, you'll lead the continued development of our cyber and information security function within our growing national law firm.
In this role, you'll:
- Define and deliver our cyber and information security strategy and roadmap.
- Act as a trusted advisor to senior leaders on cyber risk, governance, and compliance.
- Own and continually enhance our Information Security Management System (ISMS).
- Lead our approach to ISO 27001, NIST CSF, Cyber Essentials Plus, and wider security best practice.
- Oversee security operations, incident response, and threat management activities.
- Manage key security suppliers, partners, and managed service providers.
- Support client audits, due diligence requests, and regulatory requirements.
- Drive security awareness and embed a security-first culture across the firm.
- Lead and develop a small team of Cyber and Information Security professionals.
- Work collaboratively with Technology, Risk, Compliance, and business teams to strengthen our security posture.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
This is a highly visible role offering the opportunity to influence strategy, shape security culture, and play a key role in our ongoing growth journey.
What we're looking for
We're looking for an experienced cyber and information security professional who combines technical expertise with strong stakeholder management and leadership skills.
You'll bring:
- Significant experience in a senior cyber or information security role.
- Experience within a regulated or professional services environment.
- Strong knowledge of ISO 27001, NIST CSF, Cyber Essentials Plus, and security governance frameworks.
- Hands-on experience across risk management, incident response, and security operations.
- Proven ability to engage, influence, and build credibility with senior stakeholders.
- Experience leading, mentoring, or developing security professionals.
- A strong understanding of GDPR and data protection principles.
- A proactive, pragmatic, and solutions-focused approach.
Qualifications
- CISM certification (required).
- CISSP and/or ISO 27001 Lead Implementer/Auditor certification desirable.
- Commitment to ongoing professional development.
Desirable experience
- Leading ISO 27001 implementation and certification programmes.
- Legal sector experience.
- Managing external audits, client assurance activities, and third-party security assessments.
What if I don't tick every box?
We're not box tickers. We appreciate the need for everyone to find a role that challenges them and gives them room for growth.
If you bring transferable skills and a fresh perspective, we'd love to hear from you. If this role excites you and you have the skills to succeed, we encourage you to apply.
Join a seriously ambitious firm
At Foot Anstey, we're committed to making a difference for our people, our clients, and society. Here's what makes us stand out:


Get help with your application
Your very own career expert that helps elevate your application to the next level.
- An ambitious growth strategy that opens up opportunities for our people to make their mark.
- A client base that spans household names, thriving startups, and ambitious enterprises.
- A culture built on our values of being refreshingly human, entrepreneurial, inclusive, and collaborative.
- A strong focus on being a responsible business with a commitment to sustainability and giving back to our communities.
- Comprehensive professional development and training – whatever your role and level, we have training that will support you to achieve your goals.
Progressive benefits tailored to you
We believe our people are our greatest asset. That's why we offer a comprehensive benefits package designed to support your professional growth and personal wellbeing, including:
- Competitive salary and performance-linked bonus.
- Enhanced parental leave policies.
- Private healthcare and wellbeing initiatives.
- An open, flexible working environment.
Find out more about our benefits and work environment here.
Ready to apply?
Hit the "Apply Now" button.
Send us your CV and a quick note on why this role is perfect for you.
Our team will review your application and be in touch, whatever the outcome.
Invited for interview?
With a straightforward process typically involving two interviews, our talent acquisition team will guide you through every step, ensuring you feel confident and prepared to show us what you can do.
We want you to be able to showcase your talent and to feel comfortable being yourself throughout the process. If there's anything we can do to support you or make things more accessible, just let us know – you can tell us at any stage of the process.
If you'd like to visit our offices prior to your interview or would like help testing your kit for your virtual interview, just let us know.
Let's make your next career move the start of something extraordinary.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location