What are the responsibilities and job description for the IT Security & Compliance Analyst position at Aderant?
Overview
Aderant is seeking an IT Security & Compliance Analyst .
Aderant is a global industry leading software company providing comprehensive business management solutions for law firms and other professional services organizations with a mission to help them run a better business. We are motivated by a collective desire to drive the legal industry to the forefront of innovation. With over 2,500 clients around the world, including 95 of the top AmLaw 100 firms, we are changing the outside perception of the legal sphere; where there was once resistance to modernization, we are creating a culture that embraces new ideas and technology.
At Aderant, the "A" is more than just a letter. It is a representation of how we fulfill our foundational purpose, serving our clients. It embodies our core values and reminds us that to achieve success, every day must start with the "A". We bring the "A" to life by fostering a culture of innovation, collaboration, and personal growth. We encourage our diverse teams to bring their whole selves to work - ideas, experience, and passion - to drive our mission forward. Our people are our strength.
Role Description
Under the guidance and oversight of the Manager, Cybersecurity & Compliance the Information IT Security & Compliance Analyst will work with stakeholders, including IT, Cloud Operations, Business, Product, Sales, and Software Development team members to enhance security controls and mitigate risks. You will be responsible for supporting governance, risk, and compliance activities along with participating in projects designed to reduce overall risk to the organization. The ideal candidate is passionate about information security technology and the opportunity to play a foundational role in a highly respected team, is self-motivated, and has excellent project management and communication skills.
Qualifications
- 2 to 5 years of relevant experience in an Information Security or Compliance role
- The ability to identifies opportunities to reduce risk, detect and remediate vulnerabilities and ensure compliance and audit readiness.
- Experience with industry and regulatory frameworks and standards, including but not limited to : ISO 27001 and 27002, PCI DSS, NIST Cyber Security Framework (CSF), , Center for Internet Security (CIS) Top 20 Critical Security Controls (CSC), General Data Protection Regulation (GDPR) articles and recitals, and / or California Consumer Privacy Act (CCPA).
- Understanding of or experience with AICPA SOC 1 controls and SOC 2 Trust Services Criteria.
- Basic technical understanding of cloud service platforms (AWS, Azure, etc.)
- Strong Microsoft Suite skills specifically Excel, Power Point, and Teams
- Experience with GRC, identity, and audit solutions (OneTrust)
- Strong communication and collaborative skills
- Strong analytical skills and the ability to understand and document complex business process data flows.
- The ability to work on multiple projects in parallel.
- Professionalism, attention to detail, strong organizational skills, team-focus, dedication, resourcefulness, and an eagerness to learn.
- Multi-tasking and time management skills
- The ability to mentor and oversee the work of other analysts
Preferred Qualifications :
Responsibilities