{"21619659":{"jobPath":"/jobs/21619659/risk-management-professional-risk-management-ft-days","source":"naylor","job":"21619659","jobTitle":"Risk Management Professional - Risk Management - FT Days"},"21617931":{"jobPath":"/jobs/21617931/senior-information-technology-auditor","source":"naylor","job":"21617931","jobTitle":"Senior Information Technology Auditor"},"21614224":{"jobPath":"/jobs/21614224/business-administrator-school-of-information-technology-cech","source":"naylor","job":"21614224","jobTitle":"Business Administrator, School of Information Technology, CECH"},"21618203":{"jobPath":"/jobs/21618203/compliance-audit-manager","source":"naylor","job":"21618203","jobTitle":"Compliance Audit Manager"},"21620863":{"jobPath":"/jobs/21620863/executive-director-baroni-center-for-government-contracting","source":"naylor","job":"21620863","jobTitle":"Executive Director, Baroni Center for Government Contracting"},"21617056":{"jobPath":"/jobs/21617056/assistant-professor-in-government-and-statistical-data-sciences","source":"naylor","job":"21617056","jobTitle":"Assistant Professor in Government and Statistical & Data Sciences"},"21619257":{"jobPath":"/jobs/21619257/information-technology-procurement-and-contracts-officer","source":"naylor","job":"21619257","jobTitle":"Information Technology Procurement and Contracts Officer"},"21619651":{"jobPath":"/jobs/21619651/clinical-applications-professional-3-clinical-documentation-it-applications-ancillary-ft-day","source":"naylor","job":"21619651","jobTitle":"Clinical Applications Professional 3 - Clinical Documentation - IT Applications-Ancillary - FT - Day"},"21617055":{"jobPath":"/jobs/21617055/assistant-professor-of-government-latin-american-politics","source":"naylor","job":"21617055","jobTitle":"Assistant Professor of Government (Latin American Politics)"},"21617592":{"jobPath":"/jobs/21617592/it-business-relationship-manager-iii","source":"naylor","job":"21617592","jobTitle":"IT Business Relationship Manager III"},"21622550":{"jobPath":"/jobs/21622550/lead-information-security-administrator","source":"naylor","job":"21622550","jobTitle":"Lead Information Security Administrator"},"21620012":{"jobPath":"/jobs/21620012/internal-audit-intern","source":"naylor","job":"21620012","jobTitle":"Internal Audit Intern"},"21620356":{"jobPath":"/jobs/21620356/campus-security-officer","source":"naylor","job":"21620356","jobTitle":"Campus Security Officer"},"21620051":{"jobPath":"/jobs/21620051/it-servicing-ngs-product-summer-intern","source":"naylor","job":"21620051","jobTitle":"IT Servicing NGS Product Summer Intern"},"21614317":{"jobPath":"/jobs/21614317/senior-analyst-it-client-support","source":"naylor","job":"21614317","jobTitle":"Senior Analyst, IT Client Support"},"21617269":{"jobPath":"/jobs/21617269/environmental-epidemiologist-health-risk-assessor","source":"naylor","job":"21617269","jobTitle":"Environmental Epidemiologist/Health Risk Assessor"},"21613763":{"jobPath":"/jobs/21613763/campus-security-guard","source":"naylor","job":"21613763","jobTitle":"Campus Security Guard"},"21623549":{"jobPath":"/jobs/21623549/manager-financial-risk-regulatory-multiple-positions","source":"naylor","job":"21623549","jobTitle":"Manager, Financial Risk & Regulatory - Multiple Positions"},"21619523":{"jobPath":"/jobs/21619523/director-of-it-engineering","source":"naylor","job":"21619523","jobTitle":"Director of IT Engineering"},"21620016":{"jobPath":"/jobs/21620016/catastrophe-risk-summer-intern","source":"naylor","job":"21620016","jobTitle":"Catastrophe Risk Summer Intern"},"21617422":{"jobPath":"/jobs/21617422/department-chair-nuclear-science-and-security","source":"naylor","job":"21617422","jobTitle":"Department Chair, Nuclear Science and Security"},"21616198":{"jobPath":"/jobs/21616198/security-officer-hs","source":"naylor","job":"21616198","jobTitle":"Security Officer (HS)"},"21617121":{"jobPath":"/jobs/21617121/it-network-administrator","source":"naylor","job":"21617121","jobTitle":"IT Network Administrator"},"21620141":{"jobPath":"/jobs/21620141/information-security-professional","source":"naylor","job":"21620141","jobTitle":"Information Security Professional"},"21619280":{"jobPath":"/jobs/21619280/instructor-cybersecurity","source":"naylor","job":"21619280","jobTitle":"Instructor - Cybersecurity"}}
Reporting to the Director of Information Technology, the Information Security Manager is responsible for implementing, maintaining, and advancing the Firm’s information security program. This role combines information security leadership with system engineering expertise and provides escalation support for the IT Help Desk team.
Key Responsibilities
Security Governance & Compliance
Ensure compliance with industry standards and regulations through regular audits and reporting on Microsoft 365 security configurations.
Facilitate Information Security Committee meetings, preparing memos and reports.
Lead the Firm to obtain SOC 2 certification by developing and updating security policies, procedures, and standards, and driving their implementation.
Microsoft 365 Security Management
Configure and manage security features across Microsoft 365, including Azure Active Directory, Microsoft Defender for Identity, and Microsoft Defender for Office 365.
Implement and enforce identity and access management controls, including Multi-Factor Authentication (MFA) and conditional access policies.
Threat Detection & Incident Response
Collaborate with security vendors (e.g., CrowdStrike) to optimize systems and enhance threat detection and response capabilities.
Lead incident response efforts, conduct forensic analysis, and prepare post-incident reports to ensure continuous improvement.
User Awareness & Training
Partner with the training team to develop and deliver security awareness programs, promoting best practices across the Microsoft 365 environment.
Collaboration & IT Support
Work closely with internal IT staff and outsourced security teams to integrate Microsoft 365 and other security measures into the broader organizational security strategy.
Act as a technical escalation point for the IT Help Desk team, providing after-hours support when required.
Monitor system patching, backups, and continuity processes, ensuring optimal performance and reliability.
Technology & Project Management
Plan, coordinate, and execute complex technology projects.
Identify problem trends, recommend solutions, and research emerging technologies.
Recommend and support hardware/software solutions, including HP servers, workstations, laptops, printers, and peripherals.
Requirements
Law firm IT and security experience required.
10+ years of experience in a professional services or corporate environment.
Proven ability to make sound decisions under high-pressure situations.
Strong leadership, teamwork, analytical, and problem-solving skills.
Excellent communication skills across all organizational levels.
Highly organized with strong attention to detail; able to thrive in a fast-paced, evolving environment.
Susman Godfrey is America’s premier litigation boutique. Our talented group of lawyers handle high-stakes litigation for both plaintiffs and defendants nationwide. Excellence is a core value of the firm. We hire the best, reward success, and handle every case with a relentless focus on winning at trial.