Senior Information Security Officer

Londonfull-timesenior
OtherInformation Security Officer
0 views0 saves0 applied

Quick Summary

Overview

About the role We’re looking for a skilled Senior Information Security Officer to join Definely at a pivotal stage of growth. In this role, you’ll take ownership of implementing and maintaining our security standards, supporting compliance programs, and promoting secure practices across engineering…

Key Responsibilities

Governance & Compliance Own and evolve Definely’s Information Security Management System (ISMS). Lead ISO 27001 and SOC 2 Type II audits, ensuring controls remain effective.

Technical Tools
awsazuresaas

About the Role

~1 min read

We’re looking for a skilled Senior Information Security Officer to join Definely at a pivotal stage of growth. In this role, you’ll take ownership of implementing and maintaining our security standards, supporting compliance programs, and promoting secure practices across engineering and business teams.

You’ll play a key role in ensuring our systems and processes align with ISO 27001 and SOC 2 requirements, contributing to risk assessments, and supporting incident response activities. Working closely with product and engineering teams, you’ll help embed security into the design of our Microsoft Word add-ins and AI-driven features.

As we scale, you’ll also provide IT support across the business, helping to manage devices, onboard new team members, and support day-to-day IT operations to ensure our people can work securely and efficiently.

This is an exciting opportunity to have a direct impact on the security posture of a fast-growing LegalTech company, helping safeguard enterprise customers’ most sensitive data while also shaping how we scale IT and security together.

Responsibilities

~1 min read
  • Own and evolve Definely’s Information Security Management System (ISMS).

  • Lead ISO 27001 and SOC 2 Type II audits, ensuring controls remain effective.

  • Drive readiness for ISO/IEC 42001 AI certification

  • Apply prior experience successfully obtaining ISO and SOC certifications

  • Manage customer due diligence requests and run Definely’s SafeBase-powered Trust Center; streamline customer security questionnaires, DPAs, and RFP security sections.

  • Embed secure SDLC practices across product teams, from design to release.

  • Perform threat modelling, define non-functional security requirements, and review designs for security impact.

  • Guide security considerations in our AI/LLM-enabled products.

  • Own the company-wide incident response plan and lead tabletop exercises.

  • Perform ongoing risk assessments, vendor security reviews, and DPIAs.

  • Ensure strong access management, secrets management, and cloud security hygiene.

  • Provide day-to-day IT support for employees, including device management, troubleshooting, and access provisioning.

  • Support onboarding and offboarding processes to ensure secure and efficient setup of accounts, devices, and permissions.

  • Help scale internal IT processes and tooling as the company grows.

  • Deliver security training and awareness across the company.

  • Communicate risks and incidents clearly to technical and non-technical stakeholders.

  • Proven experience in information security within a SaaS or product led environment

  • Strong track record of delivering ISO 27001, SOC 2, or similar certifications, with interest in ISO/IEC 42001 AI standards

  • Experience with compliance tooling such as Drata and working with ISO auditors, ideally in the UK

  • Solid understanding of GDPR and data protection best practices

  • Deep knowledge of secure SDLC, threat modelling, and securing AI and LLM based systems

  • Strong cloud security expertise across Azure or AWS, including access control, secrets management, and incident response

  • Experience running IT operations in a scaling business, including device management, SaaS tooling, and identity systems such as SSO and IAM

  • Excellent communication skills, with the ability to work cross functionally and manage customer security and due diligence processes

  • Relevant certifications such as CISSP, CISM, CCSK, or ISO 27001 Lead Auditor, and a degree in a related field

  • 💰 Competitive salary & annual bonus

  • 📈 Equity in Definely

  • 🎉 Quarterly team socials + holiday parties

  • 🏠 Hybrid working + 🌍 1 month “work from anywhere”

  • 🏖️ 25 days holiday + bank holidays

  • 🎂 Take your birthday off

  • 📚 £750 annual learning & development budget

  • 🩺 Private healthcare (incl. dental & optical)

  • 👶 Enhanced parental leave + Workplace Nursery salary sacrifice scheme

  • 🚲 Additional perks: Cycle to Work

  • 💻 Top-quality equipment

Definely builds specialist review tools for lawyers working on complex contracts. As AI accelerates the volume and pace of legal decisions, Definely ensures lawyers can understand the full structure of a contract, see the implications of every change, and negotiate with confidence and control.

Launched in September 2020 by Nnamdi Emelifeonwu and Feargus MacDaeid, who worked together at Freshfields, Definely is trusted by over 150+ in-house legal teams and private practice firms, with thousands of users globally. Its customers include top Magic Circle and AMLaw 200 firms, including A&O Shearman, Slaughter and May, DLA Piper, KPMG, Samsung and IKEA.

We recently raised our Series B and are backed by Microsoft, Google, and Octopus Ventures. This is a rare opportunity to shape a new category at the moment it becomes essential.

‍By submitting your application, you agree that DEFEYENE LEGAL SOLUTIONS LIMITED ('Definely') may collect, process, and store your personal data as part of our recruitment process. We will use the information you provide to assess your qualifications for the role you are applying for and to communicate with you regarding your application.Your personal data will be stored for up to 12 months, after which it will be securely deleted unless we have another lawful basis to retain it. You have the right to access, correct, or request the deletion of your data at any time.For more details on how we handle your personal data and your rights, please send us an email to hr@definely.com and we will send your our privacy policy.

Location & Eligibility

Where is the job
London
Hybrid — some on-site time required
Who can apply
Open to applicants worldwide

Listing Details

Posted
May 7, 2026
First seen
May 7, 2026
Last seen
May 8, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
54%
Scored at
May 7, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

definelycareersSenior Information Security Officer