IG Compliance & Security Analyst
Cooley
Chicago, IL
IG Compliance & Security Analyst Cooley is seeking an IG Compliance & Security Analyst to join the Information Governance & Data Privacy team. Position summary: The Information Governance (IG) Compliance & Security Analyst executes day-to-day compliance and security activities, including performing vendor and internal security assessments, supporting audits, and responding to client security requests. This role tracks risks, monitors adherence to policies and frameworks (e.g., ISO 27001, NIST), and works to document evidence, manage findings, and support remediation efforts. The analyst partners with business teams to address compliance requirements, maintain audit readiness, and apply best practices to reduce risk. Cooley (IG) embraces a culture of customer service excellence and all members of the department are expected to move this agenda forward. To that end, the IG Compliance & Security Analyst is expected to recognize that the Cooley IG Department is a service organization first and foremost and will be evaluated on this requirement equal in importance to the technical or operational responsibilities outlined later in this document. Specific duties and responsibilities include, but are not limited to, the following: Position responsibilities: Perform vendor security assessments and audits to prove up vendor’s compliance with firm security policies and procedures in connection with vendor contracts, or internal inquiries Respond to clients' security assessment requests and audits to demonstrate firm’s security compliance Participate in the management of the firm’s ISO 27001 certification by engaging with auditors, collecting and presenting evidence, understanding the relevant firm policies, and working in the GRC platform Conduct both internal and external audits to ensure compliance with all industry-mandated regulations Work on compliance initiatives to ensure operational effectiveness with applicable laws and regulations, as well as internal policies and procedures Monitor activities of assigned IS areas to ensure compliance with internal policies and standards Participate in the development and implementation of new business initiatives to ensure functionality required to support compliance Provide guidance to business functions on compliance/security-related matters Coordinate audit-related tasks to ensure the readiness of managers and their teams for audit testing and facilitate the timely resolution of any audit findings Conduct/support periodic risk assessments and develop appropriate mitigation plans in support of deliverables Conduct formal risk assessment reviews to determine the critical points of business exposure Evaluate and recommend commercial governance, risk and compliance vendors and tools Participate in the maintenance of the firm’s governance, risk and compliance platforms.. Develop and maintain metrics that assess the firm’s governance, risk and compliance initiatives Assess and track the firm’s co
Apply on firm site →