Senior Information Security Analyst (SecOps)
DLA Piper is, at its core, bold, exceptional, collaborative and supportive. Our people are the backbone, heart and soul of our firm. Wherever you are in your professional journey, DLA Piper is a place you can engage in meaningful work and grow your career.
About the role
The Senior Information Security Analyst is responsible for identifying, investigating, and addressing both internal and external threats. This position requires a deep understanding of various threats, attacks, and malware to develop effective detection and protection measures for the enterprise. The role collaborates with the IT department to maintain security controls, including tuning detection systems, updating control policies, and automating processes. Additionally, this position involves directly managing relationships with security operations vendors and providing technical leadership and mentorship to a team of security analysts. The role plays a critical part in driving initiatives for advanced threat detection, incident response, and vulnerability management to maintain a proactive and robust security posture. The ideal candidate will combine extensive technical expertise in Security Operations (SecOps) with proven leadership skills.
Location
This position can sit in our Washington DC, Atlanta, Austin, Baltimore, Chicago, or Northern Virginia office and offers a hybrid work schedule.
Responsibilities
- Mentor and guide Information Security Analysts.
- Evaluate the effectiveness of and improve various information security program functions at the Firm.
- Review Security Incident and Event Management (SIEM) systems, including regularly reporting metrics and summaries regarding ongoing investigations and ticket tracking.
- Perform alert triage, investigating and analyzing security incidents, identifying root causes, and developing appropriate mitigation strategies.
- Ensure effective Endpoint Threat Detection, including EDR capabilities, traditional antivirus, asset management, and familiarity with baseline and configuration management tools.
- Manage Next Generation Firewalls and/or Intrusion Detection/Prevention Systems (IDS/IPS).
- Engage in Threat Hunting and utilize Threat Intelligence.
- Utilize malware sandbox technologies and interpret the results.
- Oversee Incident Response tools, processes, and capabilities.
- Possess experience or a deep understanding of vulnerability and configuration management.
- Conduct independent project work.
- Provide leadership to and manage a team of business professionals, including coaching, mentoring, and professional development.
- Provide performance feedback on a regular basis.
Skills
- Communication Skills: Proficient in both verbal and written communication, with the ability to convey technical information to non-technical audiences.
- Analytical Skills: Strong analytical abilities with keen attention to detail, essential for identifying and addressing security events.
- SIEM Proficiency: Skilled in identifying, triaging, and analyzing security events using Security Information and Event Management systems.
- Incident Response Knowledge: Deep understanding of incident response processes and methodologies.
- Scripting Experience: Familiarity with scripting languages to automate security operations and enhance the incident response process.
- Attacker Methodology: Demonstrated understanding of the methodologies used by attackers, supporting proactive defense measures.
- Intrusion Detection: Solid grasp of intrusion detection systems, AI-based attack detection and prevention strategies, and SOC (Security Operations Center) operations.
- Cloud Security: Knowledge of cloud infrastructure and security considerations in a cloud environment.
- Core Infrastructure Knowledge: Familiarity with core infrastructure components such as DNS, Active Directory, and Exchange.
- Security Tools Experience: Prior experience with security tools like Microsoft Defender, CrowdStrike, and Palo Alto Networks is desirable.
- Professional Services Background: Experience in professional services sectors such as legal, finance, or consulting is preferred.
Qualifications
- Minimum Education: Bachelor's Degree in Information Security, Cybersecurity, or similar fields.
- Preferred Education: Master's Degree in Information Security, Cybersecurity, or similar fields.
- Certifications: Professional-level industry certification (e.g., CISSP, GIAC, SANS, etc.) preferred.
- Minimum Years of Experience: 7 years of experience working within the Cybersecurity field.
Essential Job Expectations
- Effectively communicate, verbally and in writing, with clients, lawyers, business professionals, and third parties.
- Produce deliverables, answer phone calls, and reply to correspondence in an efficient and responsive manner.
- Provide timely, accurate, and quality work product.
- Successfully meet deadlines, expectations, and perform work duties as required.
- Foster positive work relationships.
- Comply with all firm policies and practices.
- Engage in both physical and sedentary activity, such as working at a computer for extended periods, participating in digital/virtual conference calls, and attending meetings as needed.
- Ability to work under pressure and manage competing demands in a fast-paced environment.
- Perform all other duties, tasks, or projects as assigned.
Physical Demands
Sedentary work: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull, or otherwise move objects, including the human body. Sedentary work involves sitting most of the time.
Work Environment
The individual selected for this position may have the opportunity for a hybrid work arrangement comprised of remote and in-office work, the requirement for which will be determined in coordination with the hiring manager or supervisor.
Pay
The firm’s expected hiring range for this position is $94,490 - $131,164 depending on the candidate’s geographic market location. The compensation offered for employment will also depend on other factors including the candidate’s experience, skills, educational and professional background, and overall qualifications.
Benefits
We offer a comprehensive package of benefits including medical/dental/vision insurance and 401(k).