{"21685002":{"jobPath":"/jobs/21685002/instructor-of-health-information-technology","source":"naylor","job":"21685002","jobTitle":"Instructor of Health Information Technology"},"21683122":{"jobPath":"/jobs/21683122/senior-director-enterprise-risk-management-and-compliance","source":"naylor","job":"21683122","jobTitle":"Senior Director, Enterprise Risk Management and Compliance"},"21685046":{"jobPath":"/jobs/21685046/security-manager","source":"naylor","job":"21685046","jobTitle":"Security Manager"},"21685123":{"jobPath":"/jobs/21685123/security-officer","source":"naylor","job":"21685123","jobTitle":"Security Officer"},"21683780":{"jobPath":"/jobs/21683780/supervisor-cardiology-it","source":"naylor","job":"21683780","jobTitle":"Supervisor Cardiology IT"},"21686538":{"jobPath":"/jobs/21686538/data-scientist-is-clinical-research-full-time-8-hour-days-exempt-non-union","source":"naylor","job":"21686538","jobTitle":"Data Scientist - IS Clinical Research - Full Time 8 Hour Days (Exempt) (Non-Union)"},"21683899":{"jobPath":"/jobs/21683899/director-indirect-procurement-it","source":"naylor","job":"21683899","jobTitle":"Director, Indirect Procurement - IT"},"21683898":{"jobPath":"/jobs/21683898/director-indirect-procurement-it","source":"naylor","job":"21683898","jobTitle":"Director, Indirect Procurement - IT"},"21683896":{"jobPath":"/jobs/21683896/senior-analyst-it-client-services","source":"naylor","job":"21683896","jobTitle":"Senior Analyst, IT Client Services"},"21683013":{"jobPath":"/jobs/21683013/management-info-syst-supv-2-it-support-services-supervisor","source":"naylor","job":"21683013","jobTitle":"Management Info Syst Supv 2 - IT Support Services Supervisor"},"21685312":{"jobPath":"/jobs/21685312/it-service-support-analyst-2","source":"naylor","job":"21685312","jobTitle":"IT Service Support Analyst 2"},"21685112":{"jobPath":"/jobs/21685112/senior-iam-architect-is-t-information-security","source":"naylor","job":"21685112","jobTitle":"SENIOR IAM ARCHITECT, IS&T Information Security"},"21686149":{"jobPath":"/jobs/21686149/senior-it-epic-analyst-epic-security","source":"naylor","job":"21686149","jobTitle":"Senior IT EPIC ANALYST (Epic Security)"},"21686545":{"jobPath":"/jobs/21686545/administrative-operations-analyst-is-admin-full-time-8-hour-days-non-exempt-non-union","source":"naylor","job":"21686545","jobTitle":"Administrative Operations Analyst - IS Admin - Full Time 8 Hour Days (Non-Exempt) (Non-Union)"},"21685078":{"jobPath":"/jobs/21685078/temporary-it-assistant","source":"naylor","job":"21685078","jobTitle":"Temporary IT Assistant"},"21686548":{"jobPath":"/jobs/21686548/edw-architect-ii-is-clinical-research-full-time-8-hour-days-exempt-non-union","source":"naylor","job":"21686548","jobTitle":"EDW Architect II - IS Clinical Research - Full Time 8 Hour Days (Exempt) (Non-Union)"},"21685291":{"jobPath":"/jobs/21685291/security-supervisor","source":"naylor","job":"21685291","jobTitle":"Security Supervisor"},"21685070":{"jobPath":"/jobs/21685070/clinical-assistant-or-associate-professor-non-tenure-track-computer-science-cybersecurity","source":"naylor","job":"21685070","jobTitle":"Clinical Assistant or Associate Professor, Non-Tenure Track, Computer Science - Cybersecurity"},"21683901":{"jobPath":"/jobs/21683901/director-indirect-procurement-it","source":"naylor","job":"21683901","jobTitle":"Director, Indirect Procurement - IT"},"21683902":{"jobPath":"/jobs/21683902/director-indirect-procurement-it","source":"naylor","job":"21683902","jobTitle":"Director, Indirect Procurement - IT"},"21683888":{"jobPath":"/jobs/21683888/privacy-manager","source":"naylor","job":"21683888","jobTitle":"Privacy Manager"},"21683306":{"jobPath":"/jobs/21683306/sr-government-reporting-accountant","source":"naylor","job":"21683306","jobTitle":"Sr. Government Reporting Accountant"},"21683900":{"jobPath":"/jobs/21683900/director-indirect-procurement-it","source":"naylor","job":"21683900","jobTitle":"Director, Indirect Procurement - IT"},"21686011":{"jobPath":"/jobs/21686011/senior-erp-security-administrator","source":"naylor","job":"21686011","jobTitle":"Senior ERP Security Administrator"},"21684314":{"jobPath":"/jobs/21684314/ai-governance-and-ops-coord-ent","source":"naylor","job":"21684314","jobTitle":"AI Governance and Ops Coord-ENT"}}
Reporting to the Director of Information Technology, the Information Security Manager is responsible for implementing, maintaining, and advancing the Firm’s information security program. This role combines information security leadership with system engineering expertise and provides escalation support for the IT Help Desk team.
Key Responsibilities
Security Governance & Compliance
Ensure compliance with industry standards and regulations through regular audits and reporting on Microsoft 365 security configurations.
Facilitate Information Security Committee meetings, preparing memos and reports.
Lead the Firm to obtain SOC 2 certification by developing and updating security policies, procedures, and standards, and driving their implementation.
Microsoft 365 Security Management
Configure and manage security features across Microsoft 365, including Azure Active Directory, Microsoft Defender for Identity, and Microsoft Defender for Office 365.
Implement and enforce identity and access management controls, including Multi-Factor Authentication (MFA) and conditional access policies.
Threat Detection & Incident Response
Collaborate with security vendors (e.g., CrowdStrike) to optimize systems and enhance threat detection and response capabilities.
Lead incident response efforts, conduct forensic analysis, and prepare post-incident reports to ensure continuous improvement.
User Awareness & Training
Partner with the training team to develop and deliver security awareness programs, promoting best practices across the Microsoft 365 environment.
Collaboration & IT Support
Work closely with internal IT staff and outsourced security teams to integrate Microsoft 365 and other security measures into the broader organizational security strategy.
Act as a technical escalation point for the IT Help Desk team, providing after-hours support when required.
Monitor system patching, backups, and continuity processes, ensuring optimal performance and reliability.
Technology & Project Management
Plan, coordinate, and execute complex technology projects.
Identify problem trends, recommend solutions, and research emerging technologies.
Recommend and support hardware/software solutions, including HP servers, workstations, laptops, printers, and peripherals.
Requirements
Law firm IT and security experience required.
10+ years of experience in a professional services or corporate environment.
Proven ability to make sound decisions under high-pressure situations.
Strong leadership, teamwork, analytical, and problem-solving skills.
Excellent communication skills across all organizational levels.
Highly organized with strong attention to detail; able to thrive in a fast-paced, evolving environment.
Susman Godfrey is America’s premier litigation boutique. Our talented group of lawyers handle high-stakes litigation for both plaintiffs and defendants nationwide. Excellence is a core value of the firm. We hire the best, reward success, and handle every case with a relentless focus on winning at trial.