Reed Smith is a dynamic international law firm dedicated to helping clients move their businesses forward. With an inclusive culture and innovative mindset, we deliver smarter, more creative legal services that drive better outcomes for our clients. Our deep industry knowledge, long-standing relationships and collaborative structure make us the go-to partner for complex disputes, transactions and regulatory matters.
Our team of 3,000 people (including more than 1,600 lawyers) across more than 30 offices in the United States, Europe, the Middle East and Asia, operate as one global partnership to drive progress for our clients, for ourselves and for our communities.
The IT Security Compliance Administrator supports the firm's client security audit process. This role leads and standardizes the client audit initiative, responds to and collects evidence for client RFIs, RFPs, RAQs, and conducts both remote and on-site audits while continuously improving existing processes. The IT Security Compliance Administrator collaborates with internal IT and non-IT management to understand the firm's secure environments and accurately respond to client security inquiries. Additionally, this role also interfaces with clients, their security teams, and attorneys throughout the audit process.
As a key member of the IT Security Compliance team, the IT Security Compliance Administrator will also leads initiatives, including ISO 27001 compliance, penetration testing, incident response, vendor risk assessments, policy management, vulnerability management, and other compliance-related projects.
Job duties and responsibilities included are not exhaustive and may be supplemented as necessary. Reed Smith reserves the right to revise or modify job duties and responsibilities at any time.
Education: Bachelor's degree in computer science, Information Security, Business or Engineering; or equivalent work experience is required; CISA and/or CISSP certification preferred.
Experience:
Minimum of three to five years of experience in information systems, including project management experience.
Extensive understanding of contemporary hardware and software architectures.
Proven track record in developing security policies and procedures.
Experience in implementing internal audit programs and participating in IT audits.
Background in applying advanced IT Security concepts.
Understanding of the legal industry or professional services is preferred.
Experience planning and coordinating information security audits and related projects.
Skills:
Strong written and verbal communication skills, including the ability to convey security-related concepts to both technical and non-technical audiences and work effectively with all levels of firm personnel across cross-functional teams.
Proficiency in conducting audits, collecting and analyzing evidence, and implementing risk mitigation strategies.
Ability to interpret, apply, and ensure adherence to industry program policies, procedures, regulations, and laws in security compliance processes.
Demonstrated capability to develop, articulate, interpret, and implement security policies, guidance, and best practices across teams to support compliance and operational effectiveness.
Ability to collect, track, analyze, interpret, and present security metrics and complex data to evaluate security risks, system performance, and support decision-making.
Proficiency in managing information systems, understanding system terminology, concepts, and best practices.
Strong prioritization and time management skills, with the ability to manage multiple responsibilities, meet established timelines, and facilitate effective resolution of issues in collaboration with stakeholders.
High degree of professionalism, discretion, and sound judgment, with the ability to remain calm and responsive in dynamic or sensitive situations.
Proficiency in Microsoft Office Suite and security/compliance tracking tools to document and manage security initiatives.
Able to work independently or on a team, including in a remote or hybrid work environment with minimal oversight.
Supervisory Responsibilities: None
Equipment To Be Used: Personal computer and other office equipment such as telephone, calculator, copier, scanner, etc.
Essential Job Functions:
Ability to sit or stand for extended periods and perform tasks requiring prolonged and/or extensive computer use.
Ability to use computers, telecommunications, and digital collaboration tools to perform core job responsibilities.
Ability to engage in effective and professional communication.
Ability to analyze complex information while maintaining attention to detail, managing multiple priorities, and exercising sound judgment in decision-making.
Ability to access, use, and safeguard confidential and sensitive information while performing job responsibilities in work environments that support confidentiality, privacy, and information security requirements.
Ability to carry and monitor a 24/7 pager or similar communication device and respond in a timely manner to critical system incidents, security events, or business-impacting technology issues, including outside of standard business hours.
Ability to work extended or non-standard hours, including adjusting work schedules as needed to support project demands and global operations across multiple time zones.
Working Conditions: Works remotely. Occasionally called upon to work hours in excess of your normal daily schedule. Potential for in-office work requests as needed, so proximity to the office is important.
The position is remote; however, the individual must reside within 1–2 hours of commuting distance from the Pittsburgh office. This is to accommodate potential emergencies, special circumstances, or occasional in-office work requests. While the role primarily follows a regular schedule, there may be instances requiring flexibility to work beyond standard hours, making proximity to the office important.
Pay Ranges:
This represents the presently-anticipated low and high end of Reed Smith’s pay range for this position. Actual pay may vary based on various factors, including but not limited to location and experience.
Employee Benefits Overview
Our comprehensive benefits package includes:
Reed Smith offers a challenging work environment, business casual dress code and a total compensation package that includes a competitive salary, flexible benefits program, tuition assistance, and generous 401(k) plan.
Reed Smith is an Equal Opportunity Employer with Core Values of Integrity, Excellence, Teamwork & Respect, Innovation, and Impact. Reed Smith also provides reasonable accommodations in accordance with law, including in the application and interview process.
Qualified candidates only. No search firms.
Read Full Description