IG Compliance & Security Analyst
$88k - $124kCooley
IG Compliance & Security Analyst
Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy team.
Position summary: The Information Governance (IG) Compliance & Security Analyst executes day-to-day compliance and security activities, including performing vendor and internal security assessments, supporting audits, and responding to client security requests. This role tracks risks, monitors adherence to policies and frameworks (e.g., ISO 27001, NIST), and works to document evidence, manage findings, and support remediation efforts. The analyst partners with business teams to address compliance requirements, maintain audit readiness, and apply best practices to reduce risk.
Cooley (IG) embraces a culture of customer service excellence and all members of the department are expected to move this agenda forward. To that end, the IG Compliance & Security Analyst is expected to recognize that the Cooley IG Department is a service organization first and foremost and will be evaluated on this requirement equal in importance to the technical or operational responsibilities outlined later in this document. Specific duties and responsibilities include, but are not limited to, the following:
Position responsibilities:
- Perform vendor security assessments and audits to prove up vendor's compliance with firm security policies and procedures in connection with vendor contracts, or internal inquiries
- Respond to clients' security assessment requests and audits to demonstrate firm's security compliance
- Participate in the management of the firm's ISO 27001 certification by engaging with auditors, collecting and presenting evidence, understanding the relevant firm policies, and working in the GRC platform
- Conduct both internal and external audits to ensure compliance with all industry-mandated regulations
- Work on compliance initiatives to ensure operational effectiveness with applicable laws and regulations, as well as internal policies and procedures
- Monitor activities of assigned IS areas to ensure compliance with internal policies and standards
- Participate in the development and implementation of new business initiatives to ensure functionality required to support compliance
- Provide guidance to business functions on compliance/security-related matters
- Coordinate audit-related tasks to ensure the readiness of managers and their teams for audit testing and facilitate the timely resolution of any audit findings
- Conduct/support periodic risk assessments and develop appropriate mitigation plans in support of deliverables
- Conduct formal risk assessment reviews to determine the critical points of business exposure
- Evaluate and recommend commercial governance, risk and compliance vendors and tools
- Participate in the maintenance of the firm's governance, risk and compliance platforms..
- Develop and maintain metrics that assess the firm's governance, risk and compliance initiatives
- Assess and track the firm's compliance to existing and future global regulations in privacy and security
- Assess and track the firm's compliance with standard security frameworks such as ISO and NIST
- Assist in the identification of risks, threats and vulnerabilities to firm
- Track risks and mitigation efforts
- Continued education in governance, risk and compliance forums and organizations to learn new ideas to solve problems
- Collaborate with team in evaluating effectiveness of the internal security control framework and recommend adjustments as business needs change
- Perform periodic security risk assessments and advise business stakeholders on best practices to reduce risk and overall breach profile
- Adhere to department's internal workflow processes
- All other duties as assigned or required
Skills and experience:
Required:
- After orientation at Cooley LLP, exhibit proficiency in the Microsoft Office suite, iManage and other firm applications
- Ability to work extended and/or weekend hours, as required
- Ability to travel, as required
- 3+ years' experience in governance, risk and compliance (GRC) processes, solutions, information security and auditing; Eligible for consideration of Senior designation with 5+ years' directly applicable work experience, along with the proven ability to operate at an elevated level
- CISSP or equivalent certifications and/or experience
- Demonstrated ability to apply technology-related knowledge and experience in solving compliance issues
- Background in security controls, auditing, network and system security
- Proven practical experience in information security and well-rounded knowledge of technology
- Experience with managing and implementing ISO 27001 or NIST compliance practices
- Demonstrated experience evaluating the security posture of vendors and system architecture
- Prior experience implementing and running incident management programs and systems
- Prior experience in reviewing vendor agreements for security issues and providing recommendations
- Project management experience
Preferred:
- Bachelor's degree in Information Technology or Computer Information Systems
- Prior law firm experience
- Desired certifications: PCIP, ISA/QSA, CISSP, CISA, CISM, and related GIAC
- Experience acting in an independent audit function
- Experience implementing GDPR, HIPAA, SOC 2 audits
- Experience with Smarsh, Logicgate, Bitsight, Ironclad
- Proven experience in vendor contract administration.
- Additional security certifications
Competencies:
- Exceptional customer service skills
- Ability to express technical concepts in business terms
- Able to work well under deadlines in a changing environment and complete multiple projects effectively and concurrently
- Motivated team player with a commitment to contribute meaningfully to the team's objectives, and ambition to improve skillset
- Excellent analytical, problem-solving and project management skills
- Excellent oral and written communication skills, including technical and user documentation
- Excellent active listening skills
- Ability to balance security best practices with business objectives
- Proven track record of excellent decision-making, integrity and working with members of technology management, business users and employees
- Detail orientated and strong organizational skills
- Ability to work independently and under high pressure with tight schedules and deadlines
- Ability to interact well with all levels of business professionals
- Capable of grasping new concepts quickly and without prior experience
- Ability to interact and coordinate with several teams to achieve objectives
- Ability to solve problems independently and simultaneously, effectively managing multiple tasks
- Professional demeanor at all times
Cooley offers a competitive compensation and excellent benefits package and is committed to fair and equitable employment practices.
EOE.
The expected annual pay range for this position with a full-time schedule is $88,000 - $124,000. Please note that final offer amount will be dependent on geographic location, applicable experience and skillset of the candidate. Senior level candidates may be considered for this position and would be eligible for a higher salary range based on experience.
We offer a full range of elective benefits including medical, health savings account (with applicable medical plan), dental, vision, health and/or dependent care flexible spending accounts, pre-tax commuter benefits, life insurance, AD&D, long-term care coverage, backup care for children and/or adults and other parental support benefits. In addition to elective benefit options, benefited employees receive firm-paid life insurance, AD&D, LTD, short term medical benefits as well as 21 days of Paid Time Off ("PTO") and 10 paid holidays each year. We provide generous parental leave and fertility benefits. New employees will attend a detailed benefit orientation to learn more about our many benefits and resources.
$88k - $124k
IG Compliance & Security Analyst Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy team. Position summary Cooley Information Services (IS) embraces a culture of customer service excellence and all members of the department...SuggestedFull timeTemporary workWork experience placementFlexible hoursWeekend work$88k - $124k
Cooley LLP is looking for an IG Compliance & Security Analyst to join their Information Governance & Data Privacy team in Chicago. The role involves conducting audits for compliance, working on initiatives to ensure operational effectiveness and providing guidance on compliance...Suggested$57.5k - $89.5k
...Information Security Compliance Analyst In this hybrid role based at our Chicago Headquarters, you will support the Information security governance, risk management and compliance program, focusing on compliance and assurance. Facilitate the compliance and assurance...SuggestedFull timeTemporary workPart timeWork from home3 days per week- ...Security Analyst (XIN001_JB7T) Xinnovit is a global leader in technology consulting, outsourcing, and workforce management solutions. Our mission is to enable our clients to become more agile and competitive with the help of innovative technologies. We empower our...Suggested
- ...Effective Communication, Customer Focus, and Proactive Safety & Security' are what every employee needs to know and do to be most... ...of the future. Job Summary The Senior Safety & Security Analyst is a regionally embedded analyst on the Office of Intelligence...SuggestedHourly payPermanent employmentTemporary workWork experience placementInterim roleWork at officeLocal areaRelocationFlexible hours
$10 - $15 per hour
...About the job SAP Security Analyst Applicants outside US are encouraged to apply Position: SAP Security Analyst Rate: $1... ...upgrades Understands critical access restrictions and audit compliance requirement for tables and reports Understand...Remote work- ...I have an opportunity for "Security Analyst" _ (Chicago, IL - Onsite )" and I am looking for a candidate who can join Immediately if you are interested, reply to me with your updated resume or if you could refer someone I would really appreciate it. Position : Security...Immediate start
$136k - $187k
...Secure Every Identity, from AI to Human Identity is the key to unlocking the potential... ...their risk. As a senior level analyst of Customer Assurance, you will support... ...risk assessments and IT regulation and compliance standards Strong oral, written, and presentation...Work experience placementLocal areaWorldwideFlexible hours- ...This is a mid to senior SAP Security specialist. The person will handle user access, permissions, and system security in SAP S4HANA Public Cloud. They will also do some light SAP Basis administration and workflow configuration. Think of this role as the gatekeeper for...Work experience placementLive inFlexible hours
- ...IT Security Analyst – GRC Focus The Security Analyst will focus on client questionnaires, client assessments, and client engagement documents... ...will be client data security, information governance and compliance. Work performed by this individual results in the measurable...
- ...Security Analyst Client is a leader in the healthcare industry. Client is dedicated to providing excellence in healthcare and compassionate... ...of our clients products and services, while maintaining compliance with applicable regulatory standards. In this role, you...Weekend work
- ...Security Analyst The Security Analyst is responsible for managing third-party vulnerability data, executing scans using Sompo’s proprietary tools, and partnering with IT teams to prioritize remediation efforts. The role requires strong technical expertise in vulnerability...
- ...Offensive Security Analyst (Structured / Non-Exploit) - AI Training About the Role What if your ability to trace an attacker's footsteps - mapping kill chains, spotting defensive gaps, and modeling adversary behavior - could directly shape how the world's most...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
$77.4k - $135.4k
...will serve as a central coordinator for Security demand intake and work management across the enterprise. The Security Demand Analyst plays a key role in enhancing the operational... ...communication across Governance, Risk & Compliance (GRC), Identity & Access Management (IAM)...$80k - $100k
...Job Title: IT Security Analyst Reports to :Chief of Staff Salary Range : $80,000 - $100,000 Grade: 23 Location: 69 W. Washington... ..., ransomware, and email security threats. Perform compliance searches, email investigations, and security-related audits...Work experience placementWork at officeLocal area- ...As part of the Security and Network Operations Command Center staff you will be instrumental in supporting customers as part of our... ...the areas of security incident handling, intrusion prevention, compliance, and firewalling. Hands-on experience in one or more of the...Work experience placementCurrently hiringWork at officeNight shiftDay shiftAfternoon shift
- ...AI / Emerging Tech Security Analyst (AI Training) About the Role What if your security expertise could directly shape how the world's most powerful AI systems defend themselves against attack? We're looking for AI Security Analysts to probe frontier AI models...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...other scanning tools. Web application scanning and web application firewalls. Containers. CIS benchmarks, STIGs, or other security hardening standards. Additional Desirable Skills Or Experience SAML, Kerberos, OAuth, OIDC, LDAP. Powershell and...
$80k - $100k
...IT Security Analyst The IT Security Analyst supports the organization's cybersecurity operations by monitoring security alerts, analyzing... ...program, including simulated phishing campaigns, to ensure compliance. Support cybersecurity initiatives and projects to...Full timeWork at office- ...Job Description A client of Insight Global is looking for a remote workday finance security analyst. This analyst will work under the finance department and specifically support the finance workday modules on a daily basis. This analyst primarily supports end users...Remote work
- ...IT Security Operations Analyst The Security Analyst will support security operations and analysis of security related incidents, vulnerabilities... ...and assessing vendor security reviews Experience with compliance requirements (GDPR, CCPA, SoX) Experience with our...
- ...Senior Network Security Analyst, Chicago, IL The Senior Network Security Analyst position is part of a collaborative team that provides technical solutions and support to caregivers and employees across all locations. Essential responsibilities include providing...Work experience placementCasual workLocal areaAfternoon shift2 days per week
- ...Application Security Analyst (AI Training) About the Role We're partnering with leading AI research labs to build the next generation of security-aware AI systems - and we need people who know how software actually breaks in the real world. As an Application...Hourly payOngoing contractContract workFreelanceRemote workWorldwideFlexible hours
- ...Security Operations Analyst (AI Training) About the Role We're looking for experienced Security Operations Analysts to help evaluate and improve AI systems designed for modern SOC environments. Your real-world expertise in threat detection, alert triage, and incident...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Security/Technical Analyst The Security/Technical Analyst role is a technical analyst with good understanding of security concepts. This individual will be first in-line to triage requests on behalf of the Security Architecture team, analyzing information and ensuring...Contract work
- ...Network & Infrastructure Security Analyst (AI Training) About the Role We're partnering with the world's leading AI research teams to build next-generation security intelligence - and we need experienced practitioners to help get it right. As a Network & Infrastructure...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Hardware Security and Vulnerability Analyst - Remote EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status,...Remote work
- ...Security Operations Analyst The Security Operations Analyst function is responsible for providing continuous threat monitoring and incident response services. This individual is responsible for monitoring, developing, and maintaining the tools, technologies, and processes...
- ...Technical Security Analyst This position, reporting to the Director, Infrastructure, Operations, and Security will strategically and tactically lead the overall defining, implementing, and assessing the organizations strategy and programs of work to ensure the security...Flexible hours
- Delphi Technologies is seeking a Hardware Security and Vulnerability Analyst. This remote role involves extracting and analyzing firmware to identify vulnerabilities and developing exploits. Candidates should have a Bachelor's degree in Electrical or Computer Engineering...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IG Compliance & Security Analyst. Be the first to apply!
- information security compliance analyst Chicago, IL
- senior compliance officer Chicago, IL
- compliance associate Chicago, IL
- compliance data analyst Chicago, IL
- senior regulatory affairs specialist Chicago, IL
- senior compliance analyst Chicago, IL
- compliance analyst Chicago, IL
- cybersecurity policy and compliance analyst Chicago, IL
- regulatory officer Chicago, IL
- coding compliance specialist Chicago, IL

