About the Role
Gibson Dunn is a leading global law firm seeking an Information Security Threat Analyst based in New York. This role is responsible for detecting, investigating, and responding to information security events and incidents, requiring a strong background in law firm technology and culture, and the ability to build trust with stakeholders.
Responsibilities
- Analyze and respond to security events and alerts from various sources.
- Contain and remediate information security incidents, escalating as needed.
- Review alerts, context, and logs using SIEM and related tools, documenting investigations.
- Manage threat intelligence feeds, focusing on improving quality and actionability.
- Define and own the firm’s threat intelligence strategy, considering AI's impact.
- Establish a proactive threat hunting capability.
- Build and mature the firm’s digital forensics capability, including tooling.
- Conduct forensic analysis in support of investigations, coordinating with relevant teams.
- Ensure evidence is collected and preserved forensically soundly with documented chain of custody.
- Serve as internal owner for red and purple team engagements, defining requirements and scope.
- Manage third-party providers for red/purple team exercises and track findings to remediation.
- Provide oversight and coordination of existing security vendors.
- Act as a key internal contact for vendor activity alignment with security priorities.
- Support security due diligence and assessment of third-party vendors.
Requirements
- Excellent interpersonal and leadership skills; able to brief executives under pressure.
- Ability to work in a multi-office environment and willingness to travel.
- Strong written and oral communication skills.
- Organized, responsive, and highly thorough problem solver.
- Proven discretion in handling highly confidential and privileged information.
- Sound judgment in a high-sensitivity environment.
- University degree in a technology-related discipline preferred.
- 3 years of experience in information security roles with a focus on incident response and detection, preferably within a global law firm.
- Demonstrable experience with core technologies used within a global law firm.
- Working knowledge of recognized security frameworks such as ISO27001 is helpful.
- Consideration for employment of qualified Applicants with Criminal Histories in a manner consistent with local law.
Skills
- Information Security
- Incident Response
- Threat Detection
- Threat Intelligence
- Digital Forensics
- SIEM
- Security Operations
- Vendor Management
- Risk Assessment
Location
- New York
Work Type
- Full-time
Experience Level
- 3 years of experience
Education Level
- University degree in a technology related discipline preferred
Salary/Compensations
- $120-150k
Benefits
- Health care
- Retirement benefits
- Paid days off, including sick time, and vacation time
- Parental leave
- Basic life insurance
- Flexible Spending Accounts
- Discretionary, performance-based bonuses
About the Company
- Gibson Dunn is a leading global law firm, advising clients on significant transactions and disputes.
- Our exceptional teams craft and deploy creative legal strategies that are meticulously tailored to every matter, however complex or high-stakes.
- The firm’s work is distinguished by a unique combination of precision and vision.
Equal Opportunity
- Gibson Dunn is committed to ensuring equal employment opportunities for all qualified applicants, including individuals with disabilities.
- We strive to ensure an inclusive and accessible hiring experience.
- The Firm will provide reasonable accommodations to qualified individuals with disabilities to enable participation in the application and recruitment process, unless doing so would impose an undue hardship, in accordance with applicable laws and regulations.
