Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IG Compliance & Security Analyst

$88k - $124k

Cooley

IG Compliance & Security Analyst

Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy team.

Position summary: The Information Governance (IG) Compliance & Security Analyst executes day-to-day compliance and security activities, including performing vendor and internal security assessments, supporting audits, and responding to client security requests. This role tracks risks, monitors adherence to policies and frameworks (e.g., ISO 27001, NIST), and works to document evidence, manage findings, and support remediation efforts. The analyst partners with business teams to address compliance requirements, maintain audit readiness, and apply best practices to reduce risk.

Cooley (IG) embraces a culture of customer service excellence and all members of the department are expected to move this agenda forward. To that end, the IG Compliance & Security Analyst is expected to recognize that the Cooley IG Department is a service organization first and foremost and will be evaluated on this requirement equal in importance to the technical or operational responsibilities outlined later in this document. Specific duties and responsibilities include, but are not limited to, the following:

Position responsibilities:

  • Perform vendor security assessments and audits to prove up vendor's compliance with firm security policies and procedures in connection with vendor contracts, or internal inquiries
  • Respond to clients' security assessment requests and audits to demonstrate firm's security compliance
  • Participate in the management of the firm's ISO 27001 certification by engaging with auditors, collecting and presenting evidence, understanding the relevant firm policies, and working in the GRC platform
  • Conduct both internal and external audits to ensure compliance with all industry-mandated regulations
  • Work on compliance initiatives to ensure operational effectiveness with applicable laws and regulations, as well as internal policies and procedures
  • Monitor activities of assigned IS areas to ensure compliance with internal policies and standards
  • Participate in the development and implementation of new business initiatives to ensure functionality required to support compliance
  • Provide guidance to business functions on compliance/security-related matters
  • Coordinate audit-related tasks to ensure the readiness of managers and their teams for audit testing and facilitate the timely resolution of any audit findings
  • Conduct/support periodic risk assessments and develop appropriate mitigation plans in support of deliverables
  • Conduct formal risk assessment reviews to determine the critical points of business exposure
  • Evaluate and recommend commercial governance, risk and compliance vendors and tools
  • Participate in the maintenance of the firm's governance, risk and compliance platforms..
  • Develop and maintain metrics that assess the firm's governance, risk and compliance initiatives
  • Assess and track the firm's compliance to existing and future global regulations in privacy and security
  • Assess and track the firm's compliance with standard security frameworks such as ISO and NIST
  • Assist in the identification of risks, threats and vulnerabilities to firm
  • Track risks and mitigation efforts
  • Continued education in governance, risk and compliance forums and organizations to learn new ideas to solve problems
  • Collaborate with team in evaluating effectiveness of the internal security control framework and recommend adjustments as business needs change
  • Perform periodic security risk assessments and advise business stakeholders on best practices to reduce risk and overall breach profile
  • Adhere to department's internal workflow processes
  • All other duties as assigned or required

Skills and experience:

Required:

  • After orientation at Cooley LLP, exhibit proficiency in the Microsoft Office suite, iManage and other firm applications
  • Ability to work extended and/or weekend hours, as required
  • Ability to travel, as required
  • 3+ years' experience in governance, risk and compliance (GRC) processes, solutions, information security and auditing; Eligible for consideration of Senior designation with 5+ years' directly applicable work experience, along with the proven ability to operate at an elevated level
  • CISSP or equivalent certifications and/or experience
  • Demonstrated ability to apply technology-related knowledge and experience in solving compliance issues
  • Background in security controls, auditing, network and system security
  • Proven practical experience in information security and well-rounded knowledge of technology
  • Experience with managing and implementing ISO 27001 or NIST compliance practices
  • Demonstrated experience evaluating the security posture of vendors and system architecture
  • Prior experience implementing and running incident management programs and systems
  • Prior experience in reviewing vendor agreements for security issues and providing recommendations
  • Project management experience

Preferred:

  • Bachelor's degree in Information Technology or Computer Information Systems
  • Prior law firm experience
  • Desired certifications: PCIP, ISA/QSA, CISSP, CISA, CISM, and related GIAC
  • Experience acting in an independent audit function
  • Experience implementing GDPR, HIPAA, SOC 2 audits
  • Experience with Smarsh, Logicgate, Bitsight, Ironclad
  • Proven experience in vendor contract administration.
  • Additional security certifications

Competencies:

  • Exceptional customer service skills
  • Ability to express technical concepts in business terms
  • Able to work well under deadlines in a changing environment and complete multiple projects effectively and concurrently
  • Motivated team player with a commitment to contribute meaningfully to the team's objectives, and ambition to improve skillset
  • Excellent analytical, problem-solving and project management skills
  • Excellent oral and written communication skills, including technical and user documentation
  • Excellent active listening skills
  • Ability to balance security best practices with business objectives
  • Proven track record of excellent decision-making, integrity and working with members of technology management, business users and employees
  • Detail orientated and strong organizational skills
  • Ability to work independently and under high pressure with tight schedules and deadlines
  • Ability to interact well with all levels of business professionals
  • Capable of grasping new concepts quickly and without prior experience
  • Ability to interact and coordinate with several teams to achieve objectives
  • Ability to solve problems independently and simultaneously, effectively managing multiple tasks
  • Professional demeanor at all times

Cooley offers a competitive compensation and excellent benefits package and is committed to fair and equitable employment practices.

EOE.

The expected annual pay range for this position with a full-time schedule is $88,000 - $124,000. Please note that final offer amount will be dependent on geographic location, applicable experience and skillset of the candidate. Senior level candidates may be considered for this position and would be eligible for a higher salary range based on experience.

We offer a full range of elective benefits including medical, health savings account (with applicable medical plan), dental, vision, health and/or dependent care flexible spending accounts, pre-tax commuter benefits, life insurance, AD&D, long-term care coverage, backup care for children and/or adults and other parental support benefits. In addition to elective benefit options, benefited employees receive firm-paid life insurance, AD&D, LTD, short term medical benefits as well as 21 days of Paid Time Off ("PTO") and 10 paid holidays each year. We provide generous parental leave and fertility benefits. New employees will attend a detailed benefit orientation to learn more about our many benefits and resources.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the IG Compliance & Security Analyst in Boston, MA vacancy
  • $88k - $124k

    Cooley LLP is seeking an IG Compliance & Security Analyst in Boston, Massachusetts. This role involves conducting audits, ensuring compliance with industry regulations, and guiding business functions on compliance matters. Applicants should have over 3 years of experience... 
    Suggested

    Cooley LLP

    Boston, MA
    3 days ago
  • $110k - $115k

     ...Strong leadership team with experience from many successful startups around the world Insurify is hiring a Senior Security and Compliance Analyst to help design and enforce security controls to protect systems, data, and infrastructure while ensuring alignment... 
    Suggested
    Work at office

    Insurify

    Cambridge, MA
    4 days ago
  • Cygnus Professionals Inc is seeking a Security Analyst to enhance the security of information systems in compliance with industry standards. Candidates should have a Bachelor’s degree in Business or Computer Science, coupled with 5-7 years of IT experience and 3 years in... 
    Suggested
    Contract work

    Cygnus Professionals Inc

    Boston, MA
    3 days ago
  • $125k - $175k

     ...advance clinical research and improve patient care. One mission. One team. That's OneStudyTeam. We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and Compliance (GRC) to support and enhance our security and compliance programs... 
    Suggested
    Full time
    Remote work
    Visa sponsorship
    Work visa

    OneStudyTeam

    Boston, MA
    9 days ago
  • $145k - $177k

     ...Senior It Security, Risk & Compliance Analyst Ardelyx is a commercial-stage biopharmaceutical company focused on redefining treatment approaches for patients with significant unmet medical needs. By combining scientific innovation with a collaborative, purpose-driven... 
    Suggested
    Full time
    Work experience placement
    Work at office
    Flexible hours

    Ardelyx

    Waltham, MA
    1 day ago
  •  ...consulting firm in Wakefield is looking for an experienced Information Security Analyst. You will lead the design, implementation, and management of the information security program, ensuring compliance with NIST, CMMC, and SOC-2 frameworks. The successful candidate will... 

    GEI Consultants

    Wakefield, MA
    4 days ago
  •  ...use case development lifecycle| experience with project work and delivery. Skills: Incident Management~Proofpoint Email Security Experience Required: 8-10 Primary Skills: SME on the Proofpoint Platform. Demonstrated Experience on the deployment of Proofpoint... 

    SysMind Tech

    Boston, MA
    4 days ago
  •  ...every community in the Commonwealth. To know more about EOHHS please visit JOB OVERVIEW: EOHHS is seeking to hire a IT Security Analyst to join our team supporting our Medicaid Management Information System (MMIS) team. The IT Security Analyst will assist in... 
    Work experience placement
    Live in
    Work at office
    Work from home
    Monday to Friday
    Early shift

    3B Staffing LLC

    Quincy, MA
    4 days ago
  • $40 per hour

    A cybersecurity firm is looking for experienced professionals to evaluate AI-generated security content. The role involves solving technical cybersecurity problems, providing feedback to improve AI systems, and writing clear technical explanations. Candidates should have... 
    Hourly pay
    Remote work
    Flexible hours

    DataAnnotation

    Boston, MA
    3 days ago
  • $28.85 per hour

     ...Job Description Job Specification: Title: Security Operations Center Supervisor Schedule: Thursday-Saturday (10...  ...and assets. The supervisor is responsible for managing SOC Analysts, ensuring compliance with post orders, coordinating incident response, and... 
    Work at office
    Local area
    Shift work
    Night shift

    Securitas

    Quincy, MA
    2 days ago
  •  ...human work, shift people up, and finally focus on achieving the security outcomes that teams have been searching for. We are seeking...  ...world's first Agentic Security Platform. As a Tier 3 Security Analyst at 7AI, you will serve as the technical leader and point of escalation... 
    Shift work

    SevenAI

    Boston, MA
    4 days ago
  •  ...Security Analyst Headquartered in New Jersey (U.S), Cygnus Professionals Inc. is a next generation global information technology Solution...  ...Bachelor's degree in Business, with IT audit or compliance experience, or Computer Science, with business and IT Audit/... 
    Contract work
    Immediate start

    Cygnus Professionals

    Boston, MA
    3 days ago
  •  ...IS&T) is seeking applicants with diverse skills and experiences to join our innovative and inclusive community. Join us as an Security Analyst II where you will be responsible for responding to cyber security events at the university. You will assist with analyzing data... 
    For contractors
    Work at office

    Boston University

    Boston, MA
    2 days ago
  • $110k - $150k

     ...Job Description Job Role: Security Analyst - Proofpoint Job Location: North Quincy, MA (Day 1 Onsite) Job Type: Full Time...  ...optimization. Collaborate with Security Operations, Compliance, and Legal teams during incident investigations and policy updates... 
    Full time

    Diverse Lynx

    Quincy, MA
    3 days ago
  •  ...The IT Security team is responsible for overseeing the security of the firm's data and systems. The team manages server and endpoint security, network security, edge security, regulatory compliance and operational security concerns globally. The team is responsible for... 

    CERES Group

    Boston, MA
    4 days ago
  • $40 per hour

    A cybersecurity tech company is seeking experienced cybersecurity professionals to evaluate AI-generated content and solve technical problems. Ideal candidates will have over 2 years of hands-on experience in the cybersecurity field, with strong writing and analytical skills...
    Hourly pay
    Remote work

    DataAnnotation

    Boston, MA
    3 days ago
  • A cybersecurity firm is seeking experienced professionals to provide evaluations of AI-generated security content and to resolve technical issues related to cybersecurity. The role offers flexibility as it can be performed remotely, allowing you to choose your projects... 
    Remote work

    DataAnnotation

    Boston, MA
    3 days ago
  •  ...The client is seeking a highly motivated Senior Security Analyst to join the Security and Access Control Team. This is an exciting...  ...and testing systems roles and administration UIs to ensure compliance with security and privacy standards. • Contribute to the continual... 
    Work experience placement
    Work at office

    Mindlance

    Quincy, MA
    16 hours ago
  • $80k - $100k

     ...'re shaping it, one bold step at a time. To those who see AI as a driver of progress, come build the future together. As a Security Analyst I, you'll help protect the systems that power our products by monitoring, investigating, and responding to security events across... 
    Full time
    Immediate start

    DraftKings

    Boston, MA
    4 days ago
  • $40 per hour

    A cybersecurity company seeks experienced professionals to evaluate AI-generated security content and solve technical problems. The role is remote and offers flexible scheduling with projects paid hourly starting at $40+. Candidates should have 2+ years of cybersecurity... 
    Hourly pay
    Remote work
    Flexible hours

    DataAnnotation

    Boston, MA
    3 days ago
  • $40 per hour

    A leading AI cybersecurity firm is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This remote role allows flexible scheduling and offers projects paid hourly starting at $40+ USD. Candidates... 
    Hourly pay
    Remote work
    Flexible hours

    DataAnnotation

    Boston, MA
    3 days ago
  • $90.78k

     ...We are seeking a seasoned Security Governance/Risk professional to support and strengthen enterprise security governance for Federal and DoD customers. This role is responsible for performing complex risk analyses, establishing and advising on Information Assurance and... 
    Work at office

    MAXIMUS

    Boston, MA
    2 days ago
  • $40 per hour

     ...for experienced cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Boston, MA
    2 days ago
  •  ...and rigor. About the Role We are seeking a mid-level Security Analyst to join our team. This role will focus on monitoring, analyzing...  ...the organization while supporting vulnerability management, compliance initiatives, and continuous security improvement.... 
    Remote work
    Relocation package
    Flexible hours

    Code Metal

    Boston, MA
    3 days ago
  • $22 - $24 per hour

     ...JOB SPECS: Title: Security Dispatcher (Security Operations Center) Location: Boston, MA (near South Station) Schedule: Wednesday-Saturday (10pm-8am) Salary: $22.00-$24.00/hour (depending on experience) Alarm Dispatcher We help make your world a safer... 
    Weekly pay
    Local area
    Remote work
    Worldwide
    Flexible hours

    Securitas Security Services USA, Inc.

    Boston, MA
    1 day ago
  • $22 - $24 per hour

     ...Security Dispatcher (Security Operations Center) Location: Boston, MA (near South Station) Schedule: Wednesday-Saturday (10pm-8am) Salary: $22.00-$24.00/hour (depending on experience) Alarm Dispatcher We help make your world a safer place. Securitas is... 
    Weekly pay
    Local area
    Remote work
    Worldwide
    Flexible hours

    Securitas

    Boston, MA
    6 days ago
  •  ...SOC Analyst Location: New York City, Boston MA, Atlanta GA Shift: 3PM to 12AM EST Mon - Fri & participate in an on-call rotation...  ...SOC Analyst serves as the first line of defense for information security operations monitoring, investigating, and responding to potential... 
    Shift work

    Axelon

    Boston, MA
    4 days ago
  • $166k - $220k

     ...Anduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense technologies...  ...reporting agency. Use of this provider helps to ensure compliance with applicable laws and protect technology, intellectual... 
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Boston, MA
    16 hours ago
  • $65k - $72k

     ...our anchor CPA firm client, splitting your time roughly 50/50 between supplementing their internal help desk and working as a security analyst inside the security program ForgePath manages on their behalf. You will be ForgePath's hands-on presence in their office.This... 
    Work at office

    Forge Path

    Cambridge, MA
    2 days ago
  • Boston University is seeking a Security Analyst II to respond to cyber security events. This role involves analyzing data from multiple security sources, monitoring threats, and collaborating with cross-functional teams to enhance security. Candidates should have at least... 

    Boston University

    Boston, MA
    16 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IG Compliance & Security Analyst. Be the first to apply!