Talent.com
Senior Analyst, Information Security
Senior Analyst, Information SecurityNorton Rose Fulbright LLP • Houston, TX, United States
[error_messages.no_longer_accepting]
Senior Analyst, Information Security

Senior Analyst, Information Security

Norton Rose Fulbright LLP • Houston, TX, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Job Description

We are a global law firm with a powerful strategic focus and real momentum. Our industry-focused strategy is seeing us take on pioneering work in places that others have yet to reach. Our shared values define our culture and our workplace. You will find us to be unusually collegial, team-oriented, and ready to innovate. We work seamlessly across practices, offices and around the world. This elimination of boundaries has allowed us to evolve into a law firm that works as hard for its culture as it does for its clients.

The Senior Information Security Analyst is one of several such Analyst roles in the firm. Each Analyst is responsible for assisting with the day to day operation of CISO office tasks. Analysts are also encouraged to participate in proactively identifying sources of vulnerability and threat.

The role will be part of a worldwide team that is empowered to operate the activities within their assigned function. Daily activities will focus heavily on request, event and incident management and direction will be provided by the Information Security Manager.

Norton Rose Fulbright is committed to the professional development of its staff. There will be significant development opportunities for the Senior Information Security Analyst role, both through on-the-job learning and targeted training. The CISO team also embrace a mentoring and meritocratic approach.

The success of this role is dependent upon building a lasting alignment between information security provisions and business requirements. In particular, the role must consider:

  • The special requirements of the Firm with regard to client confidentiality, as well as regulatory requirements such as data protection.
  • Achieving a balance between protecting the firm and ensuring that users can work effectively; being pragmatic but cognizant of risk.
Key Objectives:
  • Ensure that the Firm has the requisite capability to investigate, prevent and remediate against security breaches, viruses and deviations from security procedures.
  • Act as a technical expert in the security field with a solid understanding of Norton Rose Fulbright's Information Security infrastructure and act as its champion in relation to Information Security.
  • Assist with Information Security monitoring and act as a technical point of escalation for any alerted issues.
  • Manage the global Information Security incident / request queue.
  • Assist with a program of educational, procedural and technical improvements aligned with the Information Security Management System.
  • Assist with the management of technical controls defined within the Information Security Management System.
Responsibilities include, but are not limited to:
  • Act as a champion for Information Security best practice and policies.
  • Act as an intermediate escalation point and technical mentor for other members of the analyst team.
  • Operate and manage security incidents and requests to SLA guidelines.
  • Review, action, and escalate, any unusual event behavior identified.
  • Assist with development and maintenance of the Firm-wide security infrastructure configuration, policies and procedures, identifying improvements to procedures, and reporting on incidents.
  • Actively promote security governance in support of the Information Security policies, to ensure appropriate measures are taken to secure the Firm's confidentiality and integrity.
  • Encourage cooperative working with all business functions to achieve shared goals, ensuring skills transfer and technical security awareness within the teams. This includes writing process documents and conducting training.
  • Work cooperatively with project teams to ensure that new project and changes adhere to Information Security policies and governance standards.
  • Identify threats and vulnerabilities.
  • Keep a technical industry awareness of security risks and exposures and proactively promote effective counter-measures.
  • Configure appropriate security parameters in monitoring systems and act as a technical point of escalation for any alerted issues.
  • Perform document reviews and privileged account reviews.
Experience / Skills:
  • Technical bachelor's degree or equivalent IT / Information Security experience (required).
  • At least 5 years' experience working within Information Security infrastructure or vocation to move from another technical discipline.
  • Proven ability to adapt quickly to emerging threats or new information, shifting focus as needed.
  • Demonstrated expertise in Microsoft 365 Defender and Azure Sentinel for detecting, investigating, and responding to suspicious behaviors and anomalous activities.
  • Familiarity with endpoint security solutions and security infrastructure, including EDR, vulnerability management tools, DLP solutions, and removable media encryption.
  • Working knowledge of cloud based web and email filtering solutions such as , Zscaler, Mimecast, Proofpoint, or Cisco. Experience with securing cloud environments (AWS, Azure, GCP), including configuration management, identity and access controls, monitoring, and incident response.
  • Familiarity with cloud security tools (e.g., Microsoft Defender for Cloud, AWS Security Hub), and cloud compliance frameworks (e.g., CIS, CSA CCM) is highly desirable. Experience with security automation and orchestration, including the use of scripting languages (such as PowerShell or Python) and SOAR platforms to streamline incident response, automate repetitive tasks, and enhance overall security operations.
  • Strong knowledge of security technologies (e.g., firewalls, IDS/IPS, EDR, SIEM).
  • Security-related certification e.g. CompTIA Security+, GSEC, CISSP, CISA, CCSP (preferred).
  • Good understanding of security frameworks such as ISO 27001, NIST, Mitre (preferred).
  • Experience of introducing Information Security improvement through effective deployment of technology and / or processes to move to a proactive footing in security management or demonstrating similar in current technical discipline.
  • Ability to triage and remediate phishing and impersonation attacks in a timely and efficient manner as the risk dictates.
  • Experience working with a service management tool.
  • Familiarity with legal tech platforms (e.g., iManage, Relativity, NetDocuments) is a plus.
Personal Attributes:
  • Keen sense of responsibility, ability to set a professional example and desire to adhere to defined security practices.
  • Strong technical security understanding.
  • Self-motivated and able to work calmly and methodically under pressure.
  • Excellent interpersonal skills, exceptional levels of personal integrity and the ability to communicate clearly at all levels through reports, presentations and forming effective matrixed relationships.
  • Skilled in applying an agile approach to task management, ensuring responsiveness to dynamic risk landscapes.
  • Cooperative, service-orientated, individual and established team worker, comfortable working in a geographically dispersed team.
  • Good judgement when it comes to confidentiality and sensitivity of information of which they may become aware through the course of their duties.
  • Adaptable and keen to learn new skills.
The Team:

The scope of the Information Security function includes all strategic security planning and control oversight to ensure effective risk mitigation takes place within the firm. The Information Security team operates a number of security solutions directly, such as anti-malware solutions, Internet security proxy servers, and the vulnerability scanning platform, and rely on other departments (IT service delivery, HR, Facilities) to operate all other security controls.

The Information Security team is responsible for ensuring the overall effectiveness of the control framework and managing security incidents. The team work with unified principles and processes around the world while maintaining regional stakeholder relationships. They adhere to the international standard ISO 27001, and report to the Firm's CISO.

Norton Rose Fulbright US LLP is committed to providing employees with a comprehensive and competitive benefits package that supports you, your health, and your family. Benefit packages include access to three medical plans, dental, vision, life, and disability insurance. Employees can also access pre-tax benefits such as health savings and flexible spending accounts. Norton Rose Fulbright helps provide financial security by allowing employees to participate in a 401(k) savings plan and profit-sharing plans if eligible. Full- time employees are eligible to access fertility benefits designed to support fertility and family-forming journeys.

In addition to the Firm's health and welfare benefits above, we offer a competitive paid time off plan, which provides a minimum of 20 days off based on your role and tenure with the firm. The firm offers a generous paid parental leave benefit allowing parents to take a minimum of 14 weeks of paid leave to bond with your newborn, or adopted child(ren). Employees are also entitled to 11 Firm holidays.

Norton Rose Fulbright US LLP is an Equal Opportunity Employer and complies with all applicable federal laws and their implementing regulations that require the collection and recording of certain data and information. The information we receive will not be used to make any decision regarding employment and will be kept separate from your application. Similarly, self-identification information is kept confidential and used only in accordance with applicable federal laws and regulations. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.Norton Rose Fulbright is committed to providing reasonable accommodation as an Equal Opportunity Employer to applicants with disabilities. If you require assistance or accommodation to complete your application, please contact us.hr@nortonrosefulbright.com. Please provide your contact information and a description of your accessibility issue. We will make a determination on your request for reasonable accommodation on a case-by-case basis.

E-Verifyis a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.

Equal Employment Opportunity

[job_alerts.create_a_job]

Senior Analyst, Information Security • Houston, TX, United States

[internal_linking.similar_jobs]
Senior Officer - IAM AI Security

Senior Officer - IAM AI Security

Invesco • Houston, TX, United States
[job_card.full_time] +1
As one of the world's leading independent global investment firms, Invesco is dedicated to rethinking possibilities for our clients.By delivering the combined power of our distinctive investment ma...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Manager, Cyber Security

Senior Manager, Cyber Security

Confidential Company • Houston, TX, United States
[job_card.full_time]
The Senior Manager, Cyber Security is responsible for the daily execution and continuous improvement of cybersecurity across a decentralized, multi-business unit enterprise.This is a highly hands-o...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Security Architect

Senior Security Architect

TradeJobsWorkForce • 77249 Houston, TX, US
[job_card.full_time]
Senior Security Architect Job Duties: Enhances security team accomplishments and competence by planning delivery of solutions; answering technical and procedural questions for less experienced team...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior IT Auditor

Senior IT Auditor

Ivz • Houston, TX, United States
[job_card.full_time]
Invesco Internal Audit Senior IT Auditor.The Invesco Internal Audit function provides independent assurance, advisory, and investigative services for the organization.While partnering closely with ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security / Soc Analyst III

Security / Soc Analyst III

WaveStrong, Inc. • Houston, TX, US
[job_card.temporary]
[filters_job_card.quick_apply]
Exciting Security / Soc Analyst III, 6 months contract opportunity in Houston, TX.Incident Response, threat monitoring, and handling incidents (incident triage and response).Determine detection req...[show_more]
[last_updated.last_updated_30]
Senior IT Security Architect

Senior IT Security Architect

American International Group • Houston, TX, United States
[job_card.full_time]
Senior IT Security Architect page is loaded## Senior IT Security Architectlocations: VA-Reston: TX-Houstontime type: Full timeposted on: Offre publiée aujourd'huijob requisition id: JR2505095At AIG...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Philanthropy and Community Engagement Senior Analyst

Philanthropy and Community Engagement Senior Analyst

NRG Energy • Houston, TX, United States
[job_card.full_time]
Philanthropy and Community Engagement Senior Analyst.NRG is seeking a highly analytical, detail-oriented, and collaborative Senior Analyst to support the data, insights, and project management need...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Sr CI HUMINT Analyst with Security Clearance

Sr CI HUMINT Analyst with Security Clearance

The Mission Essential Group, LLC. • Galena Park, TX, United States
[job_card.full_time]
DESCRIPTION * Prepare intelligence reports and assessments for the supported Command's mission planning and force protection efforts.The primary focus is two-fold: (1) identify asymmetric threats a...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Director of DevOps & Security (DevSecOps)

Director of DevOps & Security (DevSecOps)

CornerStone TTS • Houston, TX, United States
[job_card.full_time]
Director of DevOps & Security (DevSecOps) Our technology organization is seeking a Director of DevOps & Security (DevSecOps) to lead the strategy, architecture, and operational execution of secure ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security IAM Lead - Remote

Information Security IAM Lead - Remote

Tailored Brands Inc • Houston, TX, United States
[filters.remote]
[job_card.full_time]
Information Technology (IT)Tailored Brands, Inc.We operate retail stores in all 50 states and Canada.Bank, Men's Wearhouse and Tux, K&G Fashion, and Joseph Abboud.Our Canadian stores are operated u...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Global Physical Security Data Analytics & Reporting Specialist

Global Physical Security Data Analytics & Reporting Specialist

Houston Staffing • Houston, TX, United States
[job_card.full_time]
Global Physical Security Data Analytics & Reporting Specialist.The Global Physical Security Data Analytics & Reporting Specialist is pivotal in supporting the Global Physical Security Organization ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior IT Security Analyst

Senior IT Security Analyst

Foxconn Industrial Internet • Houston, TX, US
[job_card.full_time]
[filters_job_card.quick_apply]
The Senior IT Security Analyst is responsible for safeguarding enterprise systems, networks, and data across both corporate and manufacturing environments.This role emphasizes hands-on expertise wi...[show_more]
[last_updated.last_updated_variable_days]
Chief Information Security Officer (CISO), Growth

Chief Information Security Officer (CISO), Growth

Confidential • Houston, TX, United States
[job_card.full_time]
Chief Information Security Officer (CISO), Growth.Accomplished provider of top-tier security services.The Company is seeking a Chief Information Security Officer (CISO) with a strong focus on growt...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Analyst

Analyst

TradeJobsWorkforce • 77017 Houston, TX, US
[job_card.full_time]
ESSENTIAL JOB FUNCTIONS Analyzes global markets for IT Services, servers, storage, backup, IT security, productivity software, remote monitoring services, hyperconvergence and IoT.Studies SMB and m...[show_more]
[last_updated.last_updated_30] • [promoted]
Information Security Analyst

Information Security Analyst

TradeJobsWorkForce • 77017 Houston, TX, US
[job_card.full_time]
Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Manager of Information Security

Senior Manager of Information Security

Pattern Energy Group • Houston, TX, United States
[job_card.full_time]
Senior Manager Of Information Security.Pattern Energy is a leading renewable energy company that develops, constructs, owns, and operates high-quality wind and solar generation, transmission, and e...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior HRIS Analyst, Integrations & Security

Senior HRIS Analyst, Integrations & Security

Wilson Elser • Houston, TX, United States
[job_card.part_time]
Senior HRIS Analyst, Integrations & Security.Wilson Elser is a leading defense litigation law firm with more than 1400 attorneys in 46 offices throughout the United States.Founded in 1978, we rank ...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Senior Analytics and Data Solutions Specialist

Senior Analytics and Data Solutions Specialist

Rice University • Houston, TX, United States
[job_card.full_time]
Senior Analytics And Data Solutions Specialist.This position is not eligible for employment visa sponsorship.Applicants must be authorized to work in the United States on a full-time, ongoing basis...[show_more]
[last_updated.last_updated_variable_days] • [promoted]