Nelson Mullins Riley And Scarborough - Columbia, SC

posted 4 months ago

Full-time - Mid Level
Columbia, SC
501-1,000 employees
Professional, Scientific, and Technical Services

About the position

Nelson Mullins, an AmLaw 100 law firm, is seeking an Information Security Analyst to join its Information Technology group in Columbia, SC. In this role, you will be responsible for implementing and maintaining information security controls, monitoring systems, and processes. As an Information Security Analyst, you will be part of a dynamic IT team dedicated to serving the Firm's nationwide platform. Your typical responsibilities will include maintaining and executing information security plans, checklists, and procedures. You will implement and manage protections such as firewalls, encryption programs, anti-virus, anti-spam, and other security software or systems. Additionally, you will handle incident management for email and data loss prevention (DLP), and ensure that procedures and processes conform to ISO27001:2022, SOC II, HIPAA, and applicable standard compliance frameworks. Monitoring for security variances, anomalies, and posture using approved software or services will be part of your duties, along with recommending changes or modifications to the security program. You will participate in the security aspects of project management, research industry trends, and stay current with new and emerging information security threats and technologies. Furthermore, you will develop and implement remediation or mitigation strategies for threats to the integrity of Firm systems or data, evaluate risk aspects for new products and services from third parties, and resolve trouble tickets or end-user requests. Investigating security breaches and maintaining incident response procedures and artifacts consistent with Firm policies will also be part of your role.

Responsibilities

  • Implement and maintain information security controls, monitoring systems, and processes.
  • Maintain and execute information security plans, checklists, and procedures.
  • Implement and manage protections such as firewalls, encryption programs, anti-virus, anti-spam, and other security software or systems.
  • Handle incident management for email and data loss prevention (DLP).
  • Ensure procedures and processes conform to ISO27001:2022, SOC II, HIPAA, and applicable standard compliance frameworks.
  • Monitor for security variances, anomalies, and posture using approved software or services.
  • Recommend changes or modifications to the security program.
  • Participate in the security aspects of project management.
  • Research industry trends and stay current with new and emerging information security threats and technologies.
  • Develop and implement remediation or mitigation strategies for threats to the integrity of Firm systems or data.
  • Evaluate risk aspects for new products and services from third parties.
  • Resolve trouble tickets or end-user requests.
  • Investigate security breaches and maintain incident response procedures and artifacts consistent with Firm policies.

Requirements

  • At least 2 years of experience in IT system/security administration.
  • Strong knowledge and experience with Active Directory and Microsoft Entra, Office365, Defender.
  • Strong knowledge of email security, routing, flows, and Data Loss Prevention.
  • Familiarity with NIST 800-53.
  • General knowledge of network security including encryption and key management best practices.
  • Thorough understanding of network roles, responsibilities, groups, and authentication.
  • Proficient, or able to gain proficiency with, a broad array of security software applications and tools.
  • Strong resourcefulness and problem-solving aptitude.
  • Strong, professional and objectively assertive communication skills.
  • Knowledge and automation via scripting, such as Powershell or Python, experience a strong plus.
  • Workflow/automation knowledge and experience a strong plus (ServiceNow, IntApp, MS Flow).

Nice-to-haves

  • Knowledge of automation via scripting, such as Powershell or Python.
  • Experience with workflow/automation tools like ServiceNow, IntApp, MS Flow.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service