At a Glance
- Tasks: Monitor and investigate security alerts, support incident response, and improve security operations.
- Company: Join Withers, a law firm dedicated to people, performance, and collaboration for over 130 years.
- Benefits: Enjoy flexible working, competitive benefits, and a supportive environment for personal growth.
- Other info: Hybrid work model with opportunities for career advancement and professional development.
- Why this job: Be part of a team tackling real-world challenges in a dynamic and innovative legal environment.
- Qualifications: 3+ years in cyber security with strong communication skills and a desire to learn.
The predicted salary is between 45000 - 55000 £ per year.
We are looking for an experienced IT Security Analyst to support security operations across the firm's global technology estate. The successful candidate should have practical experience working with modern enterprise security platforms covering endpoint detection and response, extended detection and response, cloud security, threat monitoring, behavioural analytics and vulnerability management, and be comfortable engaging with IT teams, senior stakeholders and third-party vendors. Experience in a medium to large, multi-site professional services environment is desirable. Strong written and verbal communication skills are essential, including the ability to explain technical security matters clearly to legal, business and IT stakeholders. The role requires good judgement, personal organisation, professionalism and the ability to prioritise effectively under pressure. A pragmatic, service-focused approach is essential.
Areas Of Focus And Responsibilities
- Monitor, triage and investigate security alerts across the firm’s security monitoring and response platforms, including suspicious activity, root cause analysis and proportionate remediation.
- Support incident response activities, including containment, eradication, recovery, evidence preservation and clear documentation of findings and actions.
- Maintain and improve security monitoring, detection rules, alert workflows, operational playbooks, procedures and management reporting.
- Assist with vulnerability management, supplier and client due diligence returns, audit responses, evidence gathering and compliance monitoring against policies, standards and regulatory or client requirements.
- Provide practical, risk-based security advice for change advisory matters, projects, cloud services, new technologies and internal security queries.
- Support disaster recovery, business continuity and resilience testing.
- Work with colleagues across all offices to support a consistent global approach to security operations, incident response and alignment with the firm’s security standards and risk appetite.
- Maintain current knowledge of supported technologies, emerging cyber threats and security best practice.
This list of duties and responsibilities is not exhaustive. It is intended to describe the general content of, and requirements for the performance of this job, and as such, the role may also include the undertaking of additional tasks as required.
Skills And Attributes
- 3+ years' experience in cyber security, security operations, incident response or a related technology role, ideally within a medium to large professional services environment.
- Practical experience of security monitoring, alert triage, threat detection, incident response, business email compromise, suspicious user activity and vulnerability management.
- Hands-on experience with modern security operations tooling, including SIEM/XDR, endpoint protection, cloud security, email security, data loss prevention, information protection, behavioural analytics and vulnerability management platforms.
- Good understanding of identity, access and cloud security, including Entra ID, MFA, Conditional Access, privileged access, SaaS logging, endpoint telemetry, evidence preservation and audit trails.
- Awareness of common attack techniques and frameworks, including MITRE ATT&CK, and relevant security, privacy and assurance frameworks such as ISO 27001, NIST CSF, Cyber Essentials and GDPR.
- Ability to manage security findings through to remediation, including prioritisation, risk acceptance, progress tracking and clear incident, risk and management reporting.
- Most important is a desire to learn, develop and help keep the firm secure, resilient and trusted by its clients.
The Essentials
- 930am to 530pm with reasonable out-of-hours flexibility required for urgent security incidents, investigations and response activities as part of the security team.
- Hybrid working policy with a minimum of 2 days per week worked in the office.
- 12 week probation period.
- 4 week notice period.
- Flexible benefits package including pension, private medical, season ticket loan, subsidised gym memberships, lifestyle discount scheme, on site café.
Equal Opportunities Employment Statement
It is the policy of Withers to provide equal opportunities for all employees in relation to recruitment, training and promotion. Decisions in these areas will be made only by reference to the requirements of the job and shall not be influenced by any consideration of age, disability, gender reassignment, marriage or civil partnership, pregnancy or maternity, race including colour, nationality and ethnic and national origin, religion or belief, sex or sexual orientation.
IT Security Analyst employer: Withers
Withers is an exceptional employer that fosters a collaborative and supportive work culture, making it an ideal place for professionals in the legal field. Located in Greater London, the firm offers flexible working conditions under its Mobile Working policy, ensuring a healthy work-life balance while promoting continuous learning and development opportunities for its employees. Joining Withers means being part of a prestigious law firm that values attention to detail and effective communication, providing a rewarding environment for career growth.