Job DescriptionSecurity Analyst
Location: Los Angeles, CA - Hybrid, 3 Days On-Site
Salary: $85,000-$100,000 annually
Employment Type: Non-Exempt
Department: Information Security
Reports Directly To: Chief Information Security Officer (CISO)
What You'll DoSecurity Operations & Monitoring
- Monitor security alerts, logs, dashboards, and SIEM platforms to identify suspicious activity and potential threats.
- Perform initial triage of security events, escalate appropriately, and clearly document actions taken.
- Assist with security audits and verification of security controls.
- Support access reviews and investigate potentially inappropriate access to applications, file shares, and collaboration tools.
Incident Response & Threat Management
- Support the incident response lifecycle, including identification, containment, eradication, recovery, and post-incident documentation.
- Assist with investigating malware alerts, phishing reports, suspicious logins, and other potential security events.
- Work with IT teams to coordinate remediation and resolution.
- Monitor emerging vulnerabilities and threats affecting law firms and professional-services organizations.
- Participate in post-incident reviews and help identify opportunities to strengthen security controls and procedures.
Vulnerability, Risk & Third-Party Security
- Assist with vulnerability scanning, validation, remediation tracking, and reporting.
- Support vendor and third-party cybersecurity assessments and maintain related documentation.
- Help respond to client security questionnaires and audits by gathering evidence and accurately describing security controls.
- Apply fundamental risk-management principles to help prioritize findings and recommend practical improvements.
Security Technology & Automation
- Support the implementation and ongoing maintenance of security technologies, including endpoint protection, MFA, email security, and SIEM platforms.
- Assist with automation and integration of security platforms using scripting or workflow tools.
- Help test and evaluate new security technologies and updates.
- Maintain clear documentation, configurations, procedures, and security playbooks.
Security Awareness & Business Partnership
- Support monthly security awareness initiatives, including phishing campaigns and related training.
- Help educate employees on secure solutions and best practices.
- Partner with IT and business teams to address security needs in a professional, service-oriented manner.
- Contribute to security policies, standards, and guidelines designed for both technical and non-technical audiences.
- Participate in cross-functional security and technology projects.
What We're Looking ForRequired
- 2+ years of experience in information security or related technical experience, such as IT support/help desk, systems administration, networking, SOC experience, internships, or relevant academic projects.
- Working understanding of fundamental security concepts, including phishing, MFA, least privilege, patching, and logging.
- Basic understanding of TCP/IP and common networking concepts.
- Ability to follow established procedures and runbooks, document work clearly, and exercise good judgment when escalating issues.
- Strong customer-service mindset and professional communication skills, particularly when working with attorneys and business professionals.
- High degree of discretion and sensitivity when handling confidential and client-related information.
- Ability to work on-site in the Los Angeles office three days per week.
- Must be available to assist during a significant security incident and bring the firm-provided laptop during vacation when required for major security incidents.
- Must be able to successfully complete a background investigation.
Preferred
- Basic scripting or automation experience, such as PowerShell or Python.
- Familiarity with Azure and/or AWS environments.
- Understanding of identity and access management concepts.
- Knowledge of ITIL or service-management principles.
- Familiarity with Power BI.
- Hands-on exposure to one or more of the following:
- SIEM platforms such as Microsoft Sentinel or Splunk
- Vulnerability management tools such as Tenable or Rapid7
- Firewalls such as Fortinet or Palo Alto
- Endpoint protection technologies
- Email security platforms
- CompTIA Security+ or equivalent certification.
- CISSP certification or progress toward certification.
- Cloud security certifications such as AZ-500 or AWS Security Specialty.
Education & Experience
A bachelor's degree in Information Security, Computer Science, Engineering, or a related discipline is preferred, but equivalent practical experience will be considered.
Physical Requirements
- Prolonged periods of sitting, reading, writing, and typing at a computer.
- May occasionally be required to lift up to 20 pounds.