Senior Analyst, Information Security
Listed on 2026-01-20
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
Job Description
We are a global law firm with a powerful strategic focus and real momentum. Our industry‑focused strategy is seeing us take on pioneering work in places that others have yet to reach. Our shared values define our culture and our workplace. You will find us to be unusually collegial, team‑oriented, and ready to innovate. We work seamlessly across practices, offices and around the world.
This elimination of boundaries has allowed us to evolve into a law firm that works as hard for its culture as it does for its clients.
The Senior Information Security Analyst is one of several such Analyst roles in the firm. Each Analyst is responsible for assisting with the day to day operation of CISO office tasks. Analysts are also encouraged to participate in proactively identifying sources of vulnerability and threat.
The role will be part of a worldwide team that is empowered to operate the activities within their assigned function. Daily activities will focus heavily on request, event and incident management and direction will be provided by the Information Security Manager.
Norton Rose Fulbright is committed to the professional development of its staff. There will be significant development opportunities for the Senior Information Security Analyst role, both through on‑the‑job learning and targeted training. The CISO team also embrace a mentoring and meritocratic approach.
The success of this role is dependent upon building a lasting alignment between information security provisions and business requirements. In particular, the role must consider:
- The special requirements of the Firm with regard to client confidentiality, as well as regulatory requirements such as data protection.
- Achieving a balance between protecting the firm and ensuring that users can work effectively; being pragmatic but cognizant of risk.
- Ensure that the Firm has the requisite capability to investigate, prevent and remediate against security breaches, viruses and deviations from security procedures.
- Act as a technical expert in the security field with a solid understanding of Norton Rose Fulbright's Information Security infrastructure and act as its champion in relation to Information Security.
- Assist with Information Security monitoring and act as a technical point of escalation for any alerted issues.
- Manage the global Information Security incident / request queue.
- Assist with a program of educational, procedural and technical improvements aligned with the Information Security Management System.
- Assist with the management of technical controls defined within the Information Security Management System.
- Act as a champion for Information Security best practice and policies.
- Act as an intermediate escalation point and technical mentor for other members of the analyst team.
- Operate and manage security incidents and requests to SLA guidelines.
- Review, action, and escape any unusual event behavior identified.
- Assist with development and maintenance of the Firm‑wide security infrastructure configuration, policies and procedures, identifying improvements to procedures, and reporting on incidents.
- Actively promote security governance in support of the Information Security policies, to ensure appropriate measures are taken to secure the Firm's confidentiality and integrity.
- Encourage cooperative working with all business functions to achieve shared goals, ensuring skills transfer and technical security awareness within the teams. This includes writing process documents and conducting training.
- Work cooperatively with project teams to ensure that new project and changes adhere to Information Security policies and governance standards.
- Identify threats and vulnerabilities.
- Keep a technical industry awareness of security risks and exposures and proactively promote effective counter‑measures.
- Configure appropriate security parameters in monitoring systems and act as a technical point of escalation for any alerted issues.
- Perform document reviews and privileged account reviews.
- Technical bachelor's degree or equivalent IT / Information Security experience (required).
- At least 5 years' experience working…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).