Information Security Analyst
Job in
The Woodlands, Montgomery County, Texas, USA
Listing for:
Steptoe & Johnson PLLC
Full Time
position
Listed on 2026-08-09
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant, IT Project Manager
Salary/Wage Range or Industry Benchmark: 70000 - 100000 USD Yearly
USD
70000.00
100000.00
YEAR
Job Description & How to Apply Below
The Information Security Analyst is a crucial role in that it provides hands‑on technical expertise to the Information Technology department of the firm. This position is responsible for monitoring the information security environment to immediately detect, verify and respond swiftly to cyber threats, e.g. vulnerability exploitation, malware, cyber‑attacks, etc. This role effectively enhances the incident response operations of the organization by working closely with IT and business stakeholders to execute in a non‑disruptive manner across the firm.
This position reports directly to the Director of Information Security and is instrumental in increasing the security posture of the firm. Working in conjunction with our IT Trainer, IT Support, and IT Systems Teams, this position will be a key contributor in executing the firm’s Cybersecurity strategy and the creation of security processes relative to threat intelligence, security monitoring, security automation, and security awareness.
WORKING
RELATIONSHIPS:
REPORTS TO:
Director of Information Security
SUPERVISES:
None
PRIMARY DUTIES AND RESPONSIBILITIES:1. Review and monitor the network, reports, and system logs (SIEM) to detect security incidents and takes appropriate action to safeguard the confidentiality, integrity, and availability of the firm and client information. Maintain metrics on reported incidents and report to management actions taken for resolution2. Assist in the selecting, implementing, and managing of systems, tools, and processes that will keep the firm at the leading edge of security. This includes a continually evolving inventory of gaps to be mitigated and the formulation of a proactive strategy to evaluate and implement mitigating technologies.3. Work with the DIS to perform information security risk assessments; identify, investigate and document security exposures; propose solutions, recommendations, and/or alternatives; and implement approved procedures and products.4. Work with the DIS in the development and implementation of security policies and procedures while enforcing them using security tools, software settings, and profiles.5. Work with the IT Trainer to lead, initiate and champion information security awareness and education for all attorneys and staff.6. May require travel to different offices for projects, training, or risk mitigation7. Research and monitor advances in information security, technology, and changes in legislation that affect data security. Stay up to date on industry news to respond to emerging cyber threats.8. Lead and participate in initiatives to maintain business continuity and enhance preparedness.9. Identify and evaluate risks to technology and architecture to ensure the security of data assets and computing systems and compliance with regulations, research, and recommend best practices; and collaborate with systems and support staff and business users to implement secure systems, software, and technology solutions.10. Interface with other members of the IT Department to ensure that new projects or implementations of new technologies are secure.11. Maintain professional and technical knowledge by attending educational workshops, reviewing professional publications, establishing personal networks, participating in professional associations, and taking advantage of self-learning opportunities.12. Implement, administer, and support endpoint security software.13. Leverage firms’ threat intelligence sources & partners to maintain an understanding of emerging security threats and advanced threat actor’s capabilities.14. Integrate threat intelligence feeds and sources with the firm’s security monitoring infrastructure.15. Prepare status reports on security matters to develop security risk analysis scenarios and response procedures.16.
* Additional or different functions may be assigned from time to time.* Denotes essential functions of the position
* Additional or different functions may be assigned from time to time.
KNOWLEDGE, SKILLS AND ABILITIES REQUIRED:1.
EDUCATION:Bachelor’s Degree in Cybersecurity or 5+ years in Information Technology or an IT-related field.
Knowledge of a wide range of…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here: