Senior Analyst, Information Security
Norton Rose Fulbright
Job Description
At Norton Rose Fulbright, people thrive because of a shared commitment to quality, unity and integrity. The highly regarded law firm consistently receives recognition from Great Place to Work and Top Workplaces, two companies that specialize in assessing organizational culture. Teams collaborate across regions, value new ideas and deliver meaningful client solutions, supported by a culture that embraces ambition, development and shared success. With more than 3,000 lawyers and 3,000 business services professionals working together across 50 offices worldwide, this global law firm provides a full range of legal services to leading corporations and financial institutions operating in key markets and sectors.
The Senior Information Security Analyst is one of several senior analyst roles within the Firm's global Security Operations (SOC) team. Each Senior Analyst provides technical leadership in the SOC's day-to-day monitoring, detection and response activities, hunts for emerging adversary activity, and continuously improves the Firm's ability to detect and respond to threats at speed.
The role is part of a worldwide team empowered to operate the activities within its assigned function. daily activities focus on security monitoring, event and incident triage, incident response, request management, detection engineering and proactive threat hunting, with direction provided by the Information Security Manager.
Security Monitoring, Detection & Response
Operate and manage security incidents and requests to SLA guidelines, acting as an intermediate escalation point for complex investigations.
Monitor, triage and investigate alerts across endpoints, cloud, identity, email and network telemetry, reviewing and escalating unusual event behavior.
Lead structured incident response aligned to a recognized lifecycle, including containment, eradication, recovery, evidence preservation and digital forensic analysis as authorized.
Triage and remediate phishing, vishing and impersonation attacks in a timely and efficient manner as the risk dictates.
Configure and tune appropriate security parameters in monitoring systems and act as a technical point of escalation for alerted issues.
Detection Engineering & Threat Hunting
Conduct proactive, hypothesis-driven threat hunting on a scheduled basis to identify adversary activity not surfaced by existing detections.
Design, test, tune and maintain detection rules and use cases (e.g. Sigma / KQL), and map detection coverage to the MITRE ATT&CK framework to identify and close detection gaps.
Maintain technical awareness of adversary tradecraft, emerging attack techniques and threat intelligence relevant to the legal sector, translating these into new or improved detections.
Automation & AI-Enabled Operations
Develop and maintain security automation and orchestration (SOAR) playbooks to streamline incident response and automate repetitive operational tasks.
Use AI-assisted detection, triage and investigation tooling effectively, and critically validate, tune and quality-assure AI-generated findings and recommendations
Governance, Improvement & Leadership
Act as a technical mentor for junior and peer analysts, supporting skills development and succession planning within the region.
Take ownership of one or more SOC processes, functions or technologies globally, ensuring their continued maintenance and improvement.
Assist with development and maintenance of SOC playbooks, runbooks, monitoring configuration and standard operating procedures, identifying improvements and reporting on incidents
Required experience and skills:
Technical bachelor's degree or equivalent IT / Information Security experience (required).
At least 5 years' experience working within security operations or Information Security infrastructure, or a strong vocation and demonstrable transferable experience from another technical discipline.
Proven ability to adapt quickly to emerging threats or new information, shifting focus as needed.
Demonstrated expertise in Microsoft 365 Defender and Microsoft Sentinel for detecting, investigating and responding to suspicious and anomalous activity.
Strong knowledge of core security technologies (firewalls, IDS/IPS, EDR, SIEM) and of structured incident-response methodologies (e.g. NIST).
Working knowledge of endpoint security and monitoring infrastructure (EDR, DLP, removable-media encryption) and of cloud-based web and email security solutions (e.g. Zscaler, Mimecast, Proofpoint, Cisco).
Ability to triage and remediate phishing and impersonation attacks in a timely and efficient manner as the risk dictates.
Experience working with a service management tool (e.g. ServiceNow).
In addition to the core foundation above, the Senior Analyst must bring demonstrable, in-depth expertise in at least one of the following domains, with solid working knowledge across the remainder:
Identity & Access - deep experience detecting and responding to identity-based attacks across Active Directory and Entra ID / Azure AD, including conditional access, privileged access, authentication protocols and identity threat detection and response (ITDR).
Cloud Security - deep experience monitoring and responding to threats across a major cloud platform (Azure, AWS or GCP), including cloud logging and telemetry, posture signals, and cloud-native detection and response.
Windows & Linux Operating Systems - deep host-level investigation and forensic capability across both Windows and Linux, including event log and audit analysis, process and memory investigation, and OS hardening.
Security Automation & Detection Engineering - advanced scripting (PowerShell and/or Python) and SOAR playbook development, and/or detection engineering (Sigma / KQL) to automate response and expand detection coverage at scale.
Preferred Certifications
One or more of the following certifications are preferred:
Security Operations / SIEM: Microsoft SC-200 (Security Operations Analyst), GIAC GSOC
Incident Handling & Response: GIAC GCIH, Blue Team Level 1 (BTL1)
Specialist Technical Certifications: AZ-500 (Azure Security Engineer), SC-300 (Microsoft Identity and Access Administrator), GCFA (GIAC Certified Forensic Analyst), GCFE (GIAC Certified Forensic Examiner), GIAC GPYC (Python Coder)
Foundational / Broad Security Certifications: CompTIA Security+, GIAC GSEC, CISSP, CCSP
The Team:
The Security Operations (SOC) team is a dedicated sub-team of Global Information Security responsible for near-24x7 monitoring, detection and response to security incidents. Operating in shifts across time zones, the team is the Firm's first line of defense against cyber threats, triaging alerts from multiple sources and acting swiftly to contain and remediate when a threat is confirmed, collaborating with regional IT teams to prevent recurrence.
The wider Information Security function is responsible for ensuring the overall effectiveness of the control framework and managing security incidents. The team works with unified principles and processes around the world while maintaining regional stakeholder relationships. It adheres to the international standard ISO/IEC 27001 and reports to the Firm's Global CISO.
Norton Rose Fulbright US LLP is committed to providing employees with a comprehensive and competitive benefits package that supports you, your health, and your family. Benefit packages include access to three medical insurance plans, dental insurance, vision insurance, life insurance, and disability insurance. Employees can also access pre-tax benefits such as health savings and flexible spending accounts. Norton Rose Fulbright helps provide financial security by allowing employees to participate in a 401(k) savings plan and profit-sharing plans if eligible. Full- time employees are eligible to access fertility benefits designed to support fertility and family-forming journeys. Employees may also access commuter benefits where applicable and student loan assistance refinancing options.
In addition to the Firm's health and welfare benefits above, we offer a competitive paid time off plan, which provides a minimum of 20 days off based on your role and tenure with the firm. The firm offers a generouspaid maternity leave and paid paternity leave (parental leave) benefit allowing parents to take a minimum of 14 weeks of paid leave to bond with your newborn or adopted child(ren). Employees may also access child care support through a back-up care program. Employees are also entitled to 11 Firm holidays.
Norton Rose Fulbright US LLP is an Equal Opportunity Employer and complies with all applicable federal laws and their implementing regulations that require the collection and recording of certain data and information. The information we receive will not be used to make any decision regarding employment and will be kept separate from your application. Similarly, self-identification information is kept confidential and used only in accordance with applicable federal laws and regulations. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.Norton Rose Fulbright is committed to providing reasonable accommodation as an Equal Opportunity Employer to applicants with disabilities. If you require assistance or accommodation to complete your application, please contact View email address on click.appcast.io. Please provide your contact information and a description of your accessibility issue. We will make a determination on your request for reasonable accommodation on a case-by-case basis.
E-Verifyis a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.
Equal Employment Opportunity
Norton Rose Fulbright US LLP will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the firm, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c).
$105.4k - $207.8k
...capabilities that advance data governance, information protection, and regulatory compliance.... ...ends on 12/31/2026. Work you'll do As a Senior Engineering Management Specialist on the... ...Purview and adjacent Microsoft security and compliance technologies.Advising clients...SeniorLocal areaVisa sponsorship- DLA Piper is seeking a Senior Information Security Analyst to lead threat detection, incident response, and vulnerability management. You will work with IT to tune controls, update policies, and automate processes while mentoring a team of security analysts. Ideal candidates...SeniorWork at office
- ...Qualifications (Must Have) ~ Bachelor’s degree in Management Information Systems, Business Administration, or related field. ~8+... ...Enterprise systems analysis, architecture, and information security principles Experience working in an Agile/Scrum environment...Senior
- ...Title: Senior Business Systems Analyst Location: Hybrid (Austin, TX) - Locals only Stronger... ...with major course work in management information systems or business administration (... ...data migration and integration secure file transfers enterprise system...SeniorContract workLocal area
- Procore Technologies in Austin, TX is seeking a Senior Cybersecurity Risk Analyst to join the GRC organization. You will manage technical risk across the cloud and information assets, collaborating with security, engineering, IT and business teams. The role emphasizes AI...Senior
- ...at weaver.com.Position ProfileWeaver is looking for a senior associate or a supervisor to join our team in the Governance... .... Weaver’s GRC - IT team focuses on assisting the Information Technology/Information Security functions within organizations, while specializing in...SeniorFull timeFlexible hours
- Norton Rose Fulbright US LLP is seeking a Senior Information Security Analyst to lead security operations, monitoring, detection and response across endpoints, cloud, identity, email and network telemetry. You will drive proactive threat hunting, rule design and incident...Senior
$94.49k - $131.16k
...is a place you can engage in meaningful work and grow your career. Let’s see what we can achieve. Together.SummaryThe Senior Information Security Analyst is responsible for identifying, investigating, and addressing both internal and external threats. This position...SeniorFull timeWork at officeRemote workRelocationVisa sponsorshipRelocation package- ...place to grow your career! We are seeking a seasoned security professional to join our Information Security team and help strengthen Cirrus Logic’s overall... ..., and overall security posture for stakeholders and senior leadership.Required Skills and Qualifications· 8+ years...SeniorFull timeWork at officeRemote workWork visa2 days per week
$112.5k - $147.5k
...: Circle is looking for an experienced Senior Analyst, IT Internal Controls & SOX Compliance... ...will partner closely with Engineering, Security, Finance, Compliance, and business stakeholders... ....Bachelor's degree in Accounting, Information Systems, Computer Science, Business, or...SeniorFlexible hours- EY is seeking an Information Security Consultant to support innovation projects and manage security risk using latest technologies in Austin, Texas. The successful candidate will work in cloud technologies, DevOps environments, and collaborate within Agile teams. Key qualifications...SeniorFlexible hours
$105.4k - $207.8k
...continuous controls monitoring, and AI-assisted security operations—built with strong governance,... ...ends on 12/31/2026.Work you'll doAs a Senior Consultant, Strategy, Growth and... ...classification, personally identifiable information handling, least-privilege access, encryption...SeniorLocal areaVisa sponsorship$116.2k - $229.1k
Position Summary Dayforce Integration Data Management - Senior ConsultantOur Human Capital practice is at the forefront of transforming... ...or data transformation scriptingExperience with data privacy, security, or compliance practices in enterprise technology...SeniorLocal areaVisa sponsorship$85k
Job Description The Senior Security Operations Center Analyst will be responsible for planning and implementing security measures to protect computer... ...will deliver cyber intelligence services and material to information technology and business leaders. Identify new threat...SeniorFull timeWork at office- RELOCATE TO VIRGINIA OPPORTUNITY Join our esteemed team of healthcare professionals committed to advancing healthcare through cutting-edge research, comprehensive training, and compassionate care. UVA Health is an integrated health system with a world-class academic...SeniorLive inLocal areaRelocationRelocation package
$102k - $132k
...Sr. Analyst, Data Engineering Data Engineering is the practice of designing, building, and maintaining systems that collect, store... ...ELT processing, data transformation, data quality, governance, security, and AI-ready data architectures across enterprise platforms....Senior$97.5k - $127.5k
...We have built a flexible work environment where new ideas are encouraged and everyone is a stakeholder.Circle is looking for a Senior Analyst, AML Know Your Customer to join its Compliance Operations team and conduct detailed periodic reviews and projects in Circle’s KYC...SeniorRemote workFlexible hours$111.76k - $153.67k
...highly motivated and detail-oriented Senior Cybersecurity Risk Analyst to join our Governance, Risk, and... ...management, you'll be a key partner to security, engineering, IT, and business... ...and manage security risks across our information asset ecosystem.This role is...SeniorFull timeLocal area- ...with external clients, sharing your views and recommendations with clients and colleaguesAbility to synthesize complex issues, engage senior leaders, and drive consensusExposure to managing projects and programs that significantly improve revenue cycle performance, e.g....SeniorApprenticeshipEasy work
$107k - $145k
...leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.About the RoleThe Senior Commissions Analyst is a subject matter expert responsible for complex payout calculations, reconciliations, and root-cause analysis across...SeniorFull timeImmediate startFlexible hours- ...DNV Energy Systems in North America is seeking a Senior Solar Energy Analyst to join the Solar Energy Assessments team. You will conduct long‑term solar resource and energy production assessments for utility‑scale and distributed solar projects across North America, analyzing...Senior
- ...(GRC) Associate plays a critical role in supporting the organization's GRC program, with a specialized focus on security framework compliance and information security risk management. Reporting to the Vice President of Information Security Governance, Risk, and Compliance...SeniorPermanent employmentTemporary workWork at officeFlexible hours
- ...A leading technology firm in Austin, TX is seeking a Mid-Senior level professional to implement and manage accessibility initiatives. The candidate will collaborate with agency coordinators, analyze web content, and ensure compliance with federal and state accessibility...SeniorContract work
- ...of executive protection, residential security, protective intelligence, threat management... ...and builds the threat profiles that inform how the program allocates its... ...consequential.About the RoleWe are hiring a Senior Intelligence Analyst to lead the analytical function of...SeniorWork at officeLocal areaRemote work
$63 - $66 per hour
...Type: C2C, Full TimeClient: TechMContact: Meghana GorusuCompany: SRI Tech SolutionsRole: Senior Product AnalystLocation: Austin, TX (onsite)Role Summary:The Senior Product Analyst is responsible for measuring and analyzing how effectively customer service tools and AI-...SeniorHourly payFull time- ...Analyst/Associate, Asset Management Austin, TX As an Asset Management Analyst/Associate at LV Collective, you’ll play a pivotal role in maximizing the value of our national portfolio of assets through strategic analysis, financial planning, and cross-functional...Senior
$145k - $189k
Job Title: Salesforce - Senior Business Analyst You are an experience Salesforce Business Analyst... ...alignment* Capture data, reporting, security, and user experience needs at a functional... ...the pay range or other compensation information in this posting, please contact us at...SeniorTemporary workLocal area- ...Senior Relativity Archiving Analyst Employment Type: Full-Time, Experienced CGS is seeking a Senior... ...Must be able to obtain a Public Trust security clearance Ideally, you will... ...the computer science or management information/technology disciplines. Experience...SeniorFull timeFlexible hours
- ...creation for our shareholders.How you will make an impact: The Senior Risk Analyst advances the company’s risk management function through... ...role improves the accuracy, completeness, and timeliness of information used by brokers, carriers, underwriters, Accounting, EHS,...SeniorImmediate startRemote work
$102k - $170k
...Obtain Public TrustWe are seeking a Data Analyst with strong child welfare domain... ...to skill sets, experience and training, security clearances, licensure and certifications... ...Francisco.If you have visited our website for information about employment opportunities, or to apply...SeniorFull timeRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Analyst, Information Security. Be the first to apply!


