The Sr. Security Engineer will work in conjunction with a team of IT operations professionals to ensure the Firm’s data, computer systems, and infrastructure are secure through analysis, testing, and investigation. The Sr. Security Engineer will take a lead role in performing necessary installations, upgrades, and improvements for the Firm’s current cybersecurity infrastructure.
Primary Responsibilities:
- Collaborate with the Firm’s Information Technology leadership to develop and update strategy to support the Firm’s security architecture
- Partners with various business groups in the Firm to ensure security best practices are followed in the design and implementation of new projects
- Administers vulnerability management platform, including configurations, vulnerability scanning, reporting, and endpoint agent updates
- Administers EDR platform, including event investigations, alert and report design, policy configurations, and endpoint agent updates
- Works with Cloud Engineer and Operations staff to ensure Microsoft cloud design and implementation follow security best-practices
- Conducts regular audits to ensure EDR and vulnerability scanning applications are installed and functioning as expected
- Monitors SIEM and Microsoft Azure environment for evidence of current or previous security events, as well as, performs improvements to Splunk alerts, reports, and dashboards
- Leads incident response in cases of confirmed security incidents, including minimization of business impact, communication of findings and mitigation, forensics collection, and hardening recommendations
- Monitors outside threat intelligence sources for both general industry and the legal industry and makes recommendations to ensure the firm is well positioned against future threats
- Works with technical operations teams to ensure security controls such as firewalls, MFA, and NAC functioning as expected
- Prepares reports of security performance metrics, events, incident findings, and other security related outputs
- Works with Risk and Audit teams to ensure all relevant certification tasks and client inquiries are addressed in a timely manner
Qualifications:
- Bachelor's degree preferred
- Current security certifications preferred
- 3 – 5 years of work experience as a security analyst or information security engineer
- Hands on experience in security software and systems including firewalls, intrusion detection systems, anti-virus/EDR software, identity monitoring solutions, authentication platforms, log management , web-content filtering platforms, and vulnerability management systems
- Splunk, Crowdstrike, and Qualys software experience preferred
- Azure cloud security experience is a plus
- Ability to work in complex IT environments with minimal supervision and collaborate effectively with multiple teams in a dynamic environment
- Experience in project task planning, implementation, and documentation
- Strong communication skills
Cozen O’Connor is an Equal Opportunity Employer, including disabled and veterans.
Cozen O'Connor actively welcomes applicants who have previously left the workforce and are looking to return to their careers. Gaps in experience are not penalized.
Cozen O’Connor is committed to employing a diverse complement of attorneys and staff, and to fostering greater inclusion in the legal profession. We understand the organizational effectiveness that comes from welcoming and valuing differences within the firm, and we know that assembling a team with a rich diversity of perspectives and experience is necessary to provide the highest quality legal service. We encourage candidates to apply and join us in this effort.