See all roles

Information Security Risk & Compliance Analyst

Work from home Full-time role Hiring

Ropes & Gray is a preeminent global law firm. The information security risk & compliance analyst assists in managing and executing the firm’s data security, compliance, and risk management programs while promoting a culture of information security throughout the organization.

Responsibilities

  • Assist in maintaining the firm’s ISO 27001:2022 Information Security Management System, assist with SOC2 audit preparedness and SOC2 audit completion, and support additional compliance activities as needed
  • Support the firm’s initiatives to be at the forefront of GenAI and legal technology, reviewing vendor offerings and providing guidance on secure-by-design principals that meet or exceed industry standards
  • Support monitoring of the firm’s policies and procedures
  • Help coordinate vulnerability management activities with guidance from other team functional areas
  • Assist in vendor risk management program tasks
  • Support responses to client audits, client RFPs, and related requests
  • Help coordinate third party technical risk assessments and audit activities
  • Assist in producing and maintaining information security documentation, including policies, procedures, standards, guidelines, and diagrams
  • Help assess potential items of risk and opportunities of vulnerability in the network
  • Assist in Change Management and architecture reviews of new and existing firm technology
  • Participate in knowledge transfer sessions and training with senior team members
  • Promote a culture of information security across business units under guidance
  • Learn about the role of systems and technology within the firm and their value to the business
  • Pursue relevant security certifications and attend industry seminars and continuing education events as assigned
  • Perform other related duties as assigned

Skills

  • Bachelor of Science in a technology-related discipline or 1-2 years of relevant experience
  • 1-2 years of experience in information security, IT risk management, or IT support
  • Basic knowledge of ISO 27001:2022 and risk management frameworks (ISO 27005, NIST, COBIT 5)
  • Knowledge of SOCII audit criteria and procedures
  • Basic understanding of HIPAA and data security regulations
  • Familiarity with Microsoft, Cisco, Unix/Linux, and mobile technologies
  • Strong written and oral communication skills
  • Organized, responsive, and willing to learn
  • Security certification (such as Security+, SSCP, or similar)

Benefits

  • Comprehensive health and well-being benefits
  • Personal and professional development
  • Career growth opportunities
  • A collegial and supportive culture

Company Overview

  • Ropes & Gray, a preeminent, global law firm, has been ranked in the top-three on The American Lawyer's prestigious "A-List" for eight consecutive years and listed on Law.com’s UK “A-List” for three years in a row. It was founded in 1865, and is headquartered in Boston, Massachusetts, USA, with a workforce of 1001-5000 employees. Its website is http://www.ropesgray.com/.
  • Company H1B Sponsorship

  • Ropes & Gray LLP has a track record of offering H1B sponsorships, with 26 in 2025, 23 in 2024, 24 in 2023, 38 in 2022, 21 in 2021, 21 in 2020. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    You might like

    [Remote] Customer Service & Sales Agent

    Work from home Full-time role

    [Remote] Virtual Phone Sales Representative

    Work from home Full-time role

    Transaction Counsel (Hybrid)

    Work from home Full-time role

    Account Manager

    Work from home Full-time role

    Outside Sales Representative

    Work from home Full-time role

    [Remote] Software Engineer

    Work from home Full-time role

    Accounts Receivable Coordinator

    Work from home Full-time role

    Life Insurance Agent

    Work from home Full-time role

    Deal Desk Associate

    Work from home Full-time role

    Analyst Relations & Insights Coordinator

    Work from home Full-time role

    Part‑Time Remote Live Chat & Data Entry Specialist – Flexible Schedule, $31/hr – Join arenaflex’s Innovative Team

    Work from home Full-time role

    Customer Success Manager

    Work from home Full-time role

    Experienced Online Live Chat Support Specialist – Remote Work Opportunity for Career Growth and Development

    Work from home Full-time role

    Experienced Data Entry Administrator – QIC DME Program Support

    Work from home Full-time role

    Experienced Licensed Customer Service Representative – Personal Lines Insurance

    Work from home Full-time role

    Technical Support Engineer

    Work from home Full-time role

    Data Entry & Claims Specialist – Detail‑Oriented Member Services & Benefit Administration Professional

    Work from home Full-time role

    Jobs Wells Fargo - VacancyGlobal

    Work from home Full-time role

    Senior Systems Services and Support Analyst (Oracle, Python, AWS)

    Work from home Full-time role

    Experienced Part-Time Retail Sales Associate - Disney Careers: Bringing Magic to Guests Worldwide with Exceptional Customer Service and Sales Excellence

    Work from home Full-time role