IT Security and Risk Analyst
Listed on 2025-12-15
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
IT Security and Risk Analyst role at Seyfarth Shaw LLP
Why SeyfarthAt Seyfarth, we understand that great people are the key to our success, and we provide the opportunities to match. If you join us, you’ll work with state‑of‑the‑art technology in a friendly and professional environment, and we will continue to invest in your professional development. If you want the freedom to grow at a firm that is invested in your future, keep reading.
TheOpportunity
As an IT Security & Risk Analyst, you will support the Information Security Governance, Risk and Compliance (ISGRC) function, ensuring the firm can address rapidly changing threats, technologies, and business conditions. You will be a member of the firm’s IT Security and Risk Department, reporting directly to the IT Security & Risk Lead.
The Day‑to‑DayOn any given day, you will work with firm leadership, partners, and clients on a variety of security compliance requests and risk‑based initiatives.
Responsibilities- Conduct and manage internal risk reviews of new or existing infrastructure and applications.
- Conduct and manage third‑party risk assessments.
- Assist and manage client audits and ongoing compliance to completion.
- Follow up on deficiencies identified in monitoring reviews, self‑assessments, automated assessments, and audits to ensure appropriate remediation.
- Collaborate with control owners and key stakeholders to meet outside counsel guidelines or contractual requirements around information security standards.
- Produce metrics to monitor control objectives and track deficiencies or gaps in program requirements.
- Provide consulting to internal projects on security requirements and potential risks.
- Propose changes to existing policies, standards, and procedures to minimize risk and ensure compliance with client and regulatory requirements.
- Assist with Security Awareness initiatives.
- Maintain an up‑to‑date understanding of industry best practices and monitor the legal and regulatory environment for developments that may require changes to policies, standards, or practices.
- Bachelor’s degree or equivalent work experience.
- 3‑5 years of experience managing risk and supporting client audit engagements.
- Any of the following certifications: CRISC, CISM, PMP, CISSP, CISA (preferred).
- Knowledge of emerging technology and its security governance implications.
- Demonstrated understanding of security risk management concepts, cyber security frameworks (NIST, ISO, etc.), control standards, secure coding principles, and security technologies.
- Knowledge of information security fundamentals, best practices, and industry standards with prior responsibilities of protecting information assets.
- Knowledge of laws, regulations, and requirements related to information security.
- Strong organization and prioritization skills across multiple tasks.
- Commitment to continuous improvement and professional growth.
- Desire to ask questions, analyze, adapt, and make decisions grounded in doing what’s right for our clients and stakeholders.
Seyfarth offers competitive salary and benefits at all levels. Our culture embraces the entrepreneurial spirit and encourages collaboration across the firm.
More About SeyfarthWith more than 900 lawyers across 18 offices, Seyfarth Shaw LLP provides advisory, litigation, and transactional legal services to clients worldwide. Learn more at
Seyfarth Shaw is committed to equal employment opportunity and provides reasonable accommodations to applicants with disabilities. We value and encourage diversity and solicit applications from all qualified applicants without regard to protected categories.
Location Specific LanguageChicago:
The full‑time salary range for this role is $100,000 to $116,000 annually. This is the range we in good faith believe we would pay for this role in the listed locations. Pay within the range will be based on factors such as education, qualifications, experience, skills, geography, and business needs. The position is eligible for annual merit increase and bonus pay.
We offer a comprehensive benefits package including paid time off, medical/dental/vision insurance, and 401(k).
- This position is based in Atlanta, GA 30309.
- This position is based in Charlotte, NC 28202.
- This position is based in Chicago, IL 60606.
- This position is based in Dallas, TX 75201.
- This position is based in Houston, TX 77002.
- Mid‑Senior level
- Full‑time
- Information Technology
- Law Practice
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).