Cyber Security Compliance Manager - ISO 27001 (Boston) Job at Blue Bridge People, Boston, MA

YmRyTWdTSEhHbVdIcG9ZcmFCc0VndTdVbFE9PQ==
  • Blue Bridge People
  • Boston, MA

Job Description

Cyber Security Compliance Manager - ISO 27001

This range is provided by Blue Bridge People. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

$155,000.00/yr - $175,000.00/yr

Additional compensation types

Annual Bonus

This is a direct hire role that would sit 2-3 days a week in the client's Boston or Washington DC offices.

About the Role:

We are seeking an experienced Information Security Compliance Manager with a background in professional services or law firm environments to lead compliance initiatives and oversee security audits. This role requires extensive expertise in ISO 27001 audits and will be a key driver in ensuring the firm’s security policies and risk management processes align with regulatory and client requirements. Working closely with the Director of Information Security , the selected candidate will play a strategic leadership role in safeguarding the firm’s data and technology infrastructure while maintaining compliance with client-mandated security standards.

Key Responsibilities:

  • Approve risk decisions and policy exceptions in coordination with the Director of Information Security , ensuring alignment with the firm’s security strategy.
  • Supervise the Cyber Security Compliance Analyst , guiding risk assessments, vulnerability management, security process audits, and compliance reporting.
  • Lead and oversee ISO 27001 audits , including internal assessments and firm-wide compliance efforts.
  • Manage client-driven cybersecurity audits and ensure adherence to security-related Outside Counsel Guidelines (OCGs) .
  • Support information security governance within system development, covering production acceptance, change management, user administration, security logging, and secure workflow processes.
  • Administer the firm’s application security review process , ensuring new technology services comply with security policies.
  • Monitor and enhance security incident response processes, prioritizing and addressing security threats effectively.
  • Lead enterprise-wide security projects , implementing best-in-class security protections to safeguard firm and client data.
  • Act as a trusted cybersecurity advisor , fostering a culture of security awareness across the firm.
  • Provide professional client service , ensuring internal and external stakeholders receive clear, proactive communication regarding security policies and initiatives.
  • Take on additional responsibilities as needed to support the firm’s security and compliance objectives.

What You Will Bring:

  • Extensive experience with ISO 27001 audits and other major cybersecurity frameworks (NIST, SOC 2, etc.), preferably in a law firm or professional services environment .
  • Strong technical background in security risk management, compliance, and regulatory requirements for the legal industry.
  • Hands-on experience with cybersecurity tools, security logging, risk analysis, vulnerability management, and governance frameworks .
  • Proficiency in network security, databases, and enterprise system operations .
  • Exceptional ability to analyze risks, anticipate obstacles, and develop strategic security solutions .
  • Proven leadership experience in managing security teams and projects, with strong decision-making and communication skills.
  • Ability to influence senior leadership and collaborate with cross-functional teams on security compliance initiatives.

Required Qualifications:

  • Bachelor’s Degree in Cybersecurity, Computer Science, or a related technical field .
  • Security certification preferred (CISSP, CISM, CRISC, or equivalent) .
  • Minimum 5 years of experience supporting information security in a law firm or professional services environment .
  • Supervisory experience within a cybersecurity organization .

Seniority level

Mid-Senior level

Employment type

Full-time

Job function

Information Technology

Industries

Business Consulting and Services

#J-18808-Ljbffr

Job Tags

Full time, 2 days per week, 3 days per week,

Similar Jobs

鴻準精密 Foxconn Technology Co., Ltd.

Chief Operating Officer(USA) Job at 鴻準精密 Foxconn Technology Co., Ltd.

# # : , , # : # Led operations management, supervised daily business operations, formulated operational strategies, enhanced production efficiency, and implemented cost...

Jordan Jankowski Team

Real Estate Sales Specialist Job at Jordan Jankowski Team

 ...for ambitious, self-motivated individuals for rewarding full-time sales positions! Do you have an enthusiastic personality and enjoy...  ...line? Successful candidates will display drive, plus have a high level of energy, schedule flexibility, and an insatiable desire... 

MultiTech Systems

Data Entry Clerk - Remote Work From Home Job at MultiTech Systems

 ...We are seeking a detail-oriented and highly motivated Data Entry Clerk to join our growing team. This is a fully remote, work-from-home position, offering a flexible schedule and the opportunity to contribute to a dynamic organization within the Information Technology... 

First Brands Group, LLC

Production Supervisor Job at First Brands Group, LLC

 ...integrity via pattern wear program. Maintain Faro Arm dimensional program on stools, patterns, core boxes, and core setters. Use Lean/Six Sigma processes to recommend and implement improved methods and cost saving processes. Work with Sales and Pre-Production... 

Peak Recruiting Solutions

Commercial Roofing Estimator Job at Peak Recruiting Solutions

 ...present detailed reports on estimated costs, including labor, materials, equipment, and overhead. Maintain relationships with subcontractors and suppliers to obtain pricing information and negotiate contracts. Assist in the development of bid proposals and...