Join to apply for the Senior Data Security Analyst role at Morrison Foerster
3 days ago Be among the first 25 applicants
Join to apply for the Senior Data Security Analyst role at Morrison Foerster
Get AI-powered advice on this job and more exclusive features.
This range is provided by Morrison Foerster. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range
$128,000.00/yr - $178,000.00/yr
Direct message the job poster from Morrison Foerster
At MoFo, we couldn’t write our own success story without yours. Ready to write your story?
Join MoFo as a SENIOR DATA SECURITY ANALYST on our Information Technology team!
This role can be based in San Francisco, Palo Alto, Los Angeles, San Diego, Denver, Austin, Boston, New York or Washington, D.C.
https://www.mofo.com/offices
ABOUT THE ROLE
The Senior Data Security Analyst will lead the ground-up development of a firm-wide data compliance function within the Information Security team. This greenfield role is ideal for someone eager to take ownership of design, implementation, and continuous improvement of controls that protect sensitive information across its lifecycle. The analyst will have the opportunity to shape tooling, process, and policy interfaces in partnership with Legal, Privacy, Compliance, and IT. The analyst will work across business, legal, compliance, and technical teams to ensure sensitive data is adequately classified, accessed, retained, and protected. This individual will serve as the first operational lead for data compliance within Information Security and is expected to work independently to establish foundational processes, tools, and reporting mechanisms. Ensures client service and satisfaction are attained in all areas of position. This position plays a mission-critical role in shaping how Information Security enables trusted, policy-aligned, and auditable data practices across the firm.
Data Compliance Oversight
- Design and implement technical and procedural safeguards for firm-wide data classification, monitoring, and protection.
- Develop and maintain workflows to support data lifecycle policies and retention rules.
- Conduct data protection risk assessments to identify and mitigate risks related to access, sharing, and policy enforcement.
- Maintain operational documentation related to technical controls, exception processes, and compliance monitoring.
Program Implementation and Enablement
- Serve as the operational lead for establishing and running the firm’s first dedicated data compliance capability, including control development, tooling integration, and cross-functional coordination.
- Define control effectiveness criteria, metrics, and benchmarks.
- Partner with IT to evaluate and implement tooling that supports classification, DLP, and data visibility.
- Establish and maintain triage and remediation workflows for data protection incidents or policy violations.
- Respond to and lead investigations involving potential data handling or protection violations.
- Contribute to root cause analysis and future-proofing of technical controls.
- Maintain logs and documentation to support internal audit or legal inquiries.
Cross-Functional Engagement
- Act as liaison between Information Security and other departments (e.g., Legal, Privacy, Compliance) to ensure cohesive execution of firm data policies.
- Provide technical input and operational support for data-focused initiatives or assessments.
Reporting & Analytics
- Create and maintain dashboards and compliance metrics for reporting to senior leadership and risk committees.
- Document control performance and identified risk decisions for audits, assessments, and external disclosures.
ABOUT YOU
- Bachelor’s degree or higher in Information Security, Computer Science, Engineering, or related field.
- Minimum 5–7 years of experience in information security, privacy operations, or data risk management.
- Demonstrated ability to build or significantly contribute to a data compliance or protection function.
- Familiarity with regulatory and contractual data handling standards (e.g., GDPR, HIPAA, CCPA).
- Hands-on experience with classification frameworks, access controls, and technical enforcement strategies.
- Experience implementing or managing DLP, file monitoring, or data classification tools preferred.
- Experience supporting compliance efforts tied to large-scale regulatory requirements (e.g., NIST 800-53, NIST 800-171, CJIS, HIPAA, or equivalent) preferred.
- CISSP, CISA, CIPP/US, or equivalent certifications.
Teamwork and Applied Skills
- Strong sense of ownership and follow-through with the ability to work independently in a high-responsibility role.
- Proven ability to translate complex regulatory and legal requirements into practical technical controls.
- Excellent organizational and project management skills.
- High client service orientation and ability to balance competing priorities.
- Strong interpersonal and cross-functional communication skills.
- Ability to analyze risk, anticipate compliance gaps, and recommend forward-looking solutions.
- High degree of integrity, discretion, and judgment in handling sensitive information.
- Comfortable navigating ambiguity and building structure in greenfield environments.
- Collaborative team player with the ability to influence without authority.
- Commitment to continuous improvement and scalable program design.
ABOUT MOFO
At MoFo, we collaborate as one firm, across borders, practice areas, and business functions and value fresh ideas and innovation over conformity and competition.
- About Us: https://www.mofo.com/about
- Diversity + Inclusion: https://careers.mofo.com/careers-diversity
- Commitment to Pro Bono: https://careers.mofo.com/careers-pro-bono
- The MoFo Foundation: https://www.mofo.com/culture/mofo-foundation
ABOUT OUR BENEFITS
MoFo offers a comprehensive benefits package starting on your first day.
- A variety of options for medical, dental, vision, life and disability coverage to meet the needs of you and your family.
- Industry-leading parental leave and family benefits including adoption and fertility treatment options and backup child and elder care.
- Global wellness program, including free access to Talkspace and Calm apps.
- Annual community service day to make an impact on your community and a birthday holiday just for fun.
- Education reimbursement annually.
- Dedicated Talent Development team.
- Competitive annual profit-sharing contribution.
Where required by law, salary ranges are stated below. Additional compensation may include a discretionary bonus, overtime as applicable, health/welfare benefits, retirement contributions, paid holidays, and PTO. The range displayed is specifically for positions performed in those cities/states and may vary based on factors including but not limited to the following: local market data and ranges; an applicant's skills and prior relevant experience; and certain degrees, licensing, and certifications. The application deadline is December 20, 2025.
New York, San Francisco, Palo Alto salary range: $128k to $178k
Los Angeles, San Diego, Boston, Washington, D.C. salary range: $122k to $169k
Denver salary range: $114k to $159k
For questions regarding this position, please e-mail jobs@mofo.com
Seniority level
Seniority level
Mid-Senior level
Employment type
Job function
Job function
Information TechnologyIndustries
Law Practice and Legal Services
Referrals increase your chances of interviewing at Morrison Foerster by 2x
Inferred from the description for this job
Medical insurance
Vision insurance
401(k)
Get notified about new Data Security Analyst jobs in San Francisco, CA.
Senior Data Security Analyst - Data Classification & Governance
Information Security Officer (Administrator III) - Information Technology Services
Information Security Officer (Administrator III) - Information Technology Services
Information Security Officer (Administrator III) - Information Technology Services
San Francisco, CA $12,915.00-$162,000.00 2 days ago
Global Security Operations Analyst (Hybrid Wednesday-Sunday. Wed-Sat 2pm-10:30pm, Sunday 8am-4:30pm)
San Francisco, CA $57,400.00-$73,300.00 2 months ago
Global Security Operations Analyst (Hybrid Wednesday-Sunday. Wed-Sat 2pm-10:30pm, Sunday 8am-4:30pm)
JUSTIS Senior IS Business Analyst - Department of Technology (1053)
San Francisco, CA $126,958.00-$159,744.00 5 days ago
JUSTIS Senior IS Business Analyst - Department of Technology (1053)
San Francisco, CA $126,958.00-$159,744.00 4 days ago
Security SOC Analyst (SIEM: CrowdStrike, Forcepoint, Cortex OR Logscale)
San Francisco, CA $114,750.00-$124,850.00 2 weeks ago
JUSTIS Senior IS Business Analyst - Department of Technology (1053)
San Francisco, CA $126,958.00-$159,744.00 5 days ago
Classroom Management & Reservations Analyst (7397U), Office of the Registrar - #78250
San Francisco, CA $180,000.00-$210,000.00 3 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.