×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Senior Analyst, Information Security

Job in Houston, Harris County, Texas, 77246, USA
Listing for: Phase2 Technology
Full Time position
Listed on 2026-09-12
Job specializations:
  • IT/Tech
    Cybersecurity
Salary/Wage Range or Industry Benchmark: 120000 - 170000 USD Yearly USD 120000.00 170000.00 YEAR
Job Description & How to Apply Below

Job Description

At Norton Rose Fulbright, people thrive because of a shared commitment to quality, unity and integrity. The highly regarded law firm consistently receives recognition from Great Place to Work and Top Workplaces, two companies that specialize in assessing organizational culture. Teams collaborate across regions, value new ideas and deliver meaningful client solutions, supported by a culture that embraces ambition, development and shared success.

With more than 3,000 lawyers and 3,000 business services professionals working together across 50 offices worldwide, this global law firm provides a full range of legal services to leading corporations and financial institutions operating in key markets and sectors.

The Senior Information Security Analyst is one of several senior analyst roles within the Firm's global Security Operations (SOC) team. Each Senior Analyst provides technical leadership in the SOC's day-to-day monitoring, detection and response activities, hunts for emerging adversary activity, and continuously improves the Firm's ability to detect and respond to threats at speed.

The role is part of a worldwide team empowered to operate the activities within its assigned function. daily activities focus on security monitoring, event and incident triage, incident response, request management, detection engineering and proactive threat hunting, with direction provided by the Information Security Manager.

Key responsibilities include, but are not limited to:
Security Monitoring, Detection & Response
  • Operate and manage security incidents and requests to SLA guidelines, acting as an intermediate escalation point for complex investigations.
  • Monitor, triage and investigate alerts across endpoints, cloud, identity, email and network telemetry, reviewing and escalating unusual event behavior.
  • Lead structured incident response aligned to a recognized lifecycle, including containment, eradication, recovery, evidence preservation and digital forensic analysis as authorized.
  • Triage and remediate phishing, vishing and impersonation attacks in a timely and efficient manner as the risk dictates.
  • Configure and tune appropriate security parameters in monitoring systems and act as a technical point of escalation for alerted issues.
Detection Engineering & Threat Hunting
  • Conduct proactive, hypothesis-driven threat hunting on a scheduled basis to identify adversary activity not surfaced by existing detections.
  • Design, test, tune and maintain detection rules and use cases (e.g. Sigma / KQL), and map detection coverage to the MITRE ATT&CK framework to identify and close detection gaps.
  • Maintain technical awareness of adversary tradecraft, emerging attack techniques and threat intelligence relevant to the legal sector, translating these into new or improved detections.
  • Automation & AI-Enabled Operations
  • Develop and maintain security automation and orchestration (SOAR) playbooks to streamline incident response and automate repetitive operational tasks.
  • Use AI-assisted detection, triage and investigation tooling effectively, and critically validate, tune and quality-assure AI-generated findings and recommendations
Governance, Improvement & Leadership
  • Act as a technical mentor for junior and peer analysts, supporting skills development and succession planning within the region.
  • Take ownership of one or more SOC processes, functions or technologies globally, ensuring their continued maintenance and improvement.
  • Assist with development and maintenance of SOC playbooks, runbooks, monitoring configuration and standard operating procedures, identifying improvements and reporting on incidents
Required experience and skills:
  • Technical bachelor's degree or equivalent IT / Information Security experience (required).
  • At least 5 years' experience working within security operations or Information Security infrastructure, or a strong vocation and demonstrable transferable experience from another technical discipline.
  • Proven ability to adapt quickly to emerging threats or new information, shifting focus as needed.
  • Demonstrated expertise in Microsoft 365 Defender and Microsoft Sentinel for detecting, investigating and responding to suspicious and anomalous activity.
  • Strong knowledge of core security technologies (firewalls, IDS/IPS, EDR, SIEM) and of structured incident-response methodologies (e.g. NIST).
  • Working knowledge of endpoint security and monitoring infrastructure (EDR, DLP, removable-media encryption) and of cloud-based web and email security solutions…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary