Security Analyst

Bond, Schoeneck & King

Buffalo, Northern (NY, KY)

Hybrid

USD 95,000 - 105,000

Full time

9 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Bond, Schoeneck & King PLLC is seeking a full-time Security Analyst to bolster our information security program. The hybrid role supports the IT department across multiple offices in Buffalo, Albany, and Syracuse, collaborating with attorneys and staff.

You will monitor security events, assist in incident response, and help manage vulnerabilities to reduce risk while enabling legal practice. Requirements include a bachelor’s degree in cyber security or related field and 2+ years in a

Qualifications

  • Bachelor’s degree in cyber security, computer science, engineering, or related field required.
  • 2+ years of experience in a cybersecurity or IT role.
  • Proficiency with SIEM, IDS/IPS, EDR, and vulnerability scanners.
  • Strong analytical, problem-solving, and communication skills for non-technical stakeholders.

Responsibilities

  • Monitor, investigate, and respond to security events with clear documentation and timely escalation.
  • Mature the security operations program including vulnerability management and awareness.
  • Translate security issues into practical risk language for IT leadership.
  • Support incident response, containment, eradication, and recovery activities.
  • Assist with governance, risk, and compliance documentation and reporting.

Skills

Analytical skills
Problem-solving
Communication skills
Attention to detail
Team player
Ability to explain security to non-IT

Education

Bachelor's degree in cyber security
Bachelor's degree in computer science
Bachelor's degree in engineering
Security certifications (Security+, CySA+, SSCP, CISSP Associate, AZ-500, SC-200, SC-300)

Tools

SIEM
IDS/IPS
EDR
Vulnerability scanners

Job description

Bond, Schoeneck& King, PLLC, a law firm of 300 attorneys in over 30 practice groups, isaccepting applications for a full-time Security Analyst to support ourInformation Technology Department. This position supports and advancesthe Firm’s information security program by protecting confidential client,attorney, and business information across firm systems, cloud platforms,endpoints, networks, and third-party services. The Security Analyst partnerswith IT, attorneys, administrative departments, vendors, and leadership toreduce cyber risk while enabling the efficient practice of law. This is ahybrid opportunity that can be based out of the following office locations:Buffalo,NY, Albany, NY, Syracuse, NY.**Position Responsibilities*** Monitor, investigate, and respond to security events with sound judgment, clear documentation, and timely escalation* Help mature the Firm’s security operations, vulnerability management, identity governance, awareness and reporting capabilities* Translate technical security issues into practical risk language for IT leadership and non-technical stakeholders**Security Monitoringand Detect*** Monitor alerts and telemetry from SIEM, XDR/EDR, email security, identity, cloud, network, and vulnerability management platforms* Triage suspicious activity, validate severity, correlate indicators, and document findings in clear incident or case records* Recommend tuning, automation, and process improvements to reduce noise and improve detection quality**Incident Responseand Investigation*** Assist with identification, containment, eradication, recovery and post-incident documentation for cybersecurity incidents* Escalate material events promptly with evidence, impact assessment, business context, and recommended next steps* Contribute to playbooks, tabletop exercises, lessons learned, and continuous improvement of incident response procedures**Vulnerability andExposure Management*** Support recurring vulnerability scanning, risk prioritization, remediation tracking, and exception documentation* Partner with infrastructure, application teams to address vulnerabilities based on exploitability, business criticality, and client confidentiality risk* Prepare status updates and metrics that show remediation progress, aging risk, recurring issues, and barriers to closure**Identity, Access,and Data Protection*** Assist with access reviews, privileged access monitoring, conditional access, MFA compliance, and joiner/mover/leaver control validation* Support protection of sensitive firm and client information through monitoring, policy enforcement, encryption, data loss prevention, and secure collaboration practices* Identify access or configuration gaps that could affect confidentiality, ethical wall obligations, or client expectations**Governance, Risk,and Compliance Support*** Maintain security documentation, standard operating procedures, control evidence, expectation records, and management reporting materials* Use recognized security frameworks and standards to help align security practices with firm risk tolerance and professional services expectations**Security Awarenessand Advisory Support*** Support security awareness campaigns, phishing simulations, targeted guidance, and practical education for attorneys and staff* Support identifying recurring user behavior risks and recommend training, technical controls, or process refinements**Job Requirements*** Bachelor’s Degree in cyber security, computer science, engineering, or related field is required* Security Certifications such as Security+, CySA+, SSCP, CISSP Associate, AZ-500, SC-200, Sc-300, or similar credentials.* Experience: 2+ years of experience in a cybersecurity or IT role.* Technical Skills: Proficiency in using cybersecurity tools such as SIEM (Security Information and Event Management), IDS/IPS (Intrusion Detection System/Intrusion Prevention System), EDR (Endpoint Detection and Response), and vulnerability scanners.* Analytical Skills: Strong analytical and problem-solving skills. Ability to analyze complex data sets and identify patterns and anomalies.* Communication Skills: Excellent verbal and written communication skills. Ability to communicate technical information to non-technical stakeholders.* Attention to Detail: High level of attention to detail and accuracy. Ability to work under pressure and manage multiple tasks simultaneously.* Team Player: Ability to work effectively as part of a team and collaborate with colleagues from various departments.* Proficiency in information security frameworks, including ISO 27000, NIST, or COBIT.* Knowledge of security standards such as HIPAA, NIST, PCI, SOX, DFARS, FISMA, NYDFS, and others.* Participate in a 24x7 on call rotation.* Some travel may be required to Regional OfficesAt Bond, exceptionalwork product and a collegial work environment are cornerstones of our success.We are committed to the communities in which we live and work. Bond has longrecognized the value, both to its team and to our communities, of active participationin and support of charitable, governmental, professional and community-basedorganizations. This position's salary range is between $95,000 to $105,000,negotiable based on years’ experience.**An offer of employment from Bond is contingent on:*** Completion of a satisfactory conflicts check* Completion of a satisfactory background check* Completion of a satisfactory reference check**Click to Apply***Bond,Schoeneck & King PLLC provides all employees and applicants an equalemployment opportunity in the manner required by law in all aspects ofemployment regardless of race, color, religion, creed, national origin, age,sex, sexual orientation, gender identity or expression, marital status,military status, disability, predisposing genetic characteristics, domesticviolence victim status or any other status protected by local, state or federallaw. We thank all applicants for their interest and will contact thosecandidates who are under consideration.*
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Analyst
Security Analyst

Bond, Schoeneck & King PLLC • City of Syracuse (NY)

Hybrid
USD 95,000 - 105,000
Security Operations Analyst — Incident Response & Risk
Security Operations Analyst — Incident Response & Risk

Bond, Schoeneck & King PLLC • City of Syracuse (NY)

Hybrid
USD 95,000 - 105,000
Information Technology Support Specialist
Information Technology Support Specialist

Bond, Schoeneck & King PLLC • Buffalo (NY)

On-site
USD 55,000 - 65,000
Conflict Analyst
Conflict Analyst

Bond, Schoeneck & King PLLC • City of Syracuse (NY)

On-site
USD 50,000 - 72,000
Security Operations Analyst (Hybrid Role)
Security Operations Analyst (Hybrid Role)

Bond, Schoeneck & King • Buffalo (NY), Northern (KY)

Hybrid
USD 95,000 - 105,000
Proposal and Editorial Specialist
Proposal and Editorial Specialist

Bond, Schoeneck & King • City of Rochester (NY), Northern (KY)

Hybrid
USD 70,000 - 85,000
Conflict Analyst
Conflict Analyst

Bond, Schoeneck & King, PLLC • City of Syracuse (NY)

On-site
USD 50,000 - 72,000
Office Coordinator
Office Coordinator

Bond, Schoeneck & King PLLC • City of Rochester (NY)

On-site
USD 52,000 - 60,000
Paralegal
Paralegal

Bond, Schoeneck & King, PLLC • City of Rochester (NY)

On-site
USD 60,000 - 70,000
Proposal and Editorial Specialist
Proposal and Editorial Specialist

Bond, Schoeneck & King PLLC • City of Syracuse (NY)

Hybrid
USD 70,000 - 85,000