Blue Legal
Senior Information Security Governance Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior Information Security Governance Analyst
Location: Southampton
We are seeking an experienced Senior Information Security Governance Analyst to join our Technology team in Southampton, with a specialist focus on Innovation and Projects. This is an exciting opportunity to play a key role in supporting the firm's growing use of artificial intelligence, innovation and emerging technologies, while ensuring information assets remain appropriately protected, managed and governed.
You will work across the business to embed information security, privacy and governance requirements into innovation and AI projects, helping ensure new technologies are introduced securely, responsibly and in line with regulatory and governance requirements. Working closely with the Information Security & Data Protection Team, Innovation Team, Technology department and wider business stakeholders, you will provide expert guidance, challenge where appropriate and help shape the firm's approach to secure innovation and AI governance.
Key Responsibilities
- Provide information security and governance advice across innovation and AI initiatives throughout the Group.
- Review projects and technology solutions, identifying potential security, privacy and data protection risks and recommending appropriate improvements.
- Support the development and implementation of AI governance policies, procedures and user guidance.
- Conduct AI risk assessments, identifying key risks and providing practical recommendations for mitigation.
- Manage security and privacy assessments, including Data Protection Impact Assessments (DPIAs) and associated reviews.
- Support the ongoing maintenance and development of the firm's ISO 27001 management system, as well as future ISO 42001 requirements.
- Contribute to information governance initiatives, including data classification and records management.
- Support client and supplier assurance activities, ensuring appropriate information security and governance requirements are addressed.
- Produce clear and accurate management reporting, including key risk indicators and governance metrics.
- Build and maintain strong working relationships with stakeholders across the business and with third-party suppliers.
- Promote cyber-security awareness, information governance and best practice across the organisation.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
About You
We are looking for a proactive and commercially minded Information Security Governance professional with experience across information security, data governance or risk management. You will be a confident communicator who enjoys working across both technical and business environments and has a genuine interest in artificial intelligence, innovation and emerging technologies.
You will bring:
- At least three years' experience in an information security, data governance or related role.
- Experience working across information security, cyber security, data governance or a similar discipline.
- Strong knowledge of information security, data protection and governance principles.
- Experience supporting risk assessments, security reviews and compliance activities.
- An interest in AI, emerging technologies and AI governance.
- Knowledge of privacy and data protection requirements.
- An understanding of information security standards, particularly ISO 27001.
- Experience developing or supporting policies, procedures and governance frameworks.
- Strong stakeholder management and communication skills.
- Excellent analytical and problem-solving abilities.
- Relevant information security and/or data protection certifications would be beneficial.
- Degree-level education would be advantageous.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
What You'll Bring
You will be someone who is:
- Professional, proactive and solutions-focused.
- Genuinely interested in AI, innovation, cyber security and information governance.
- Confident communicating with and influencing stakeholders at different levels.
- Comfortable collaborating across both business and technical teams.
- Able to manage multiple priorities while working independently.
- Highly organised with excellent attention to detail.
- Motivated, adaptable and keen to develop your knowledge.
- Calm and effective when working in a fast-paced environment.
Why Join?
This is an excellent opportunity for an experienced Information Security Governance professional to take a leading role in an organisation that is actively embracing AI and innovation, while maintaining the highest standards of information security, privacy and governance. You will have the opportunity to influence how emerging technologies are adopted, work with stakeholders across the organisation and contribute to the development of the firm's approach to AI governance and secure innovation.
If you are looking for a role where your expertise can help enable innovation while ensuring security and governance remain at the heart of technology change, we would be keen to hear from you.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London