Senior Information Security Analyst (SecOps)
DLA Piper is a bold, exceptional, collaborative, and supportive firm where our people are the backbone, heart, and soul. This is a place to engage in meaningful work and grow your career.
About the role
The Senior Information Security Analyst is responsible for identifying, investigating, and addressing both internal and external threats. This position requires a deep understanding of various threats, attacks, and malware to develop effective detection and protection measures for the enterprise. The role collaborates with the IT department to maintain security controls, including tuning detection systems, updating control policies, and automating processes. It involves managing relationships with security operations vendors and providing technical leadership and mentorship to a team of security analysts. This position drives initiatives for advanced threat detection, incident response, and vulnerability management to maintain a proactive and robust security posture.
Location
This hybrid position can be based in our Washington DC, Atlanta, Austin, Baltimore, Chicago, or Northern Virginia office.
Responsibilities
- Mentor and guide Information Security Analysts.
- Evaluate and improve various information security program functions at the Firm.
- Review Security Incident and Event Management (SIEM) systems, including reporting metrics and summaries regarding ongoing investigations and ticket tracking.
- Perform alert triage by investigating and analyzing security incidents, identifying root causes, and developing mitigation strategies.
- Ensure effective Endpoint Threat Detection, including EDR capabilities, traditional antivirus, asset management, and baseline/configuration management tools.
- Manage Next Generation Firewalls and/or Intrusion Detection/Prevention Systems (IDS/IPS).
- Engage in Threat Hunting and utilize Threat Intelligence.
- Use malware sandbox technologies and interpret results.
- Oversee Incident Response tools, processes, and capabilities.
- Apply experience or deep understanding of vulnerability and configuration management.
- Conduct independent project work.
- Provide leadership, coaching, mentoring, and professional development to a team of business professionals, including regular performance feedback.
Skills
- Communication Skills: Proficient in verbal and written communication, with the ability to convey technical information to non-technical audiences.
- Analytical Skills: Strong analytical abilities with keen attention to detail for identifying and addressing security events.
- SIEM Proficiency: Skilled in identifying, triaging, and analyzing security events using Security Information and Event Management systems.
- Incident Response Knowledge: Deep understanding of incident response processes and methodologies.
- Scripting Experience: Familiarity with scripting languages to automate security operations and enhance incident response.
- Attacker Methodology: Demonstrated understanding of methodologies used by attackers to support proactive defense measures.
- Intrusion Detection: Solid grasp of intrusion detection systems, AI-based attack detection and prevention, and SOC operations.
- Cloud Security: Knowledge of cloud infrastructure and security considerations in a cloud environment.
- Core Infrastructure Knowledge: Familiarity with core infrastructure components such as DNS, Active Directory, and Exchange.
- Security Tools Experience: Prior experience with tools like Microsoft Defender, CrowdStrike, and Palo Alto Networks.
- Professional Services Background: Experience in professional services sectors such as legal, finance, or consulting is preferred.
Qualifications
- Minimum Education: Bachelor’s Degree in Information Security, Cybersecurity, or similar fields.
- Preferred Education: Master’s Degree in Information Security, Cybersecurity, or similar fields.
- Certifications: Professional-level industry certification (e.g., CISSP, GIAC, SANS) preferred.
- Minimum Years of Experience: 7 years of experience in the Cybersecurity field.
Essential Job Expectations
- Effectively communicate, verbally and in writing, with clients, lawyers, business professionals, and third parties.
- Produce deliverables, answer phone calls, and reply to correspondence efficiently and responsively.
- Provide timely, accurate, and quality work product.
- Successfully meet deadlines, expectations, and perform work duties as required.
- Foster positive work relationships.
- Comply with all firm policies and practices.
- Engage in both physical and sedentary activity, such as working at a computer for extended periods, participating in digital/virtual conference calls, and attending meetings.
- Work under pressure and manage competing demands in a fast-paced environment.
- Perform all other duties, tasks, or projects as assigned.
Physical Demands
Sedentary work: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently or constantly to lift, carry, push, pull, or move objects, including the human body. Sedentary work involves sitting most of the time.
Work Environment
The selected individual may have the opportunity for a hybrid work arrangement, combining remote and in-office work, as determined in coordination with the hiring manager.
Pay
The firm’s expected hiring range for this position is $94,490 - $131,164, depending on the candidate’s geographic market location, experience, skills, educational and professional background, and overall qualifications.
Benefits
We offer a comprehensive package of benefits including medical, dental, vision insurance, and 401(k).