Manager, Information Security

🏒 Aderant · all Aderant jobs (7)
πŸ“ United States
πŸ“… Posted 2026-09-07 Β· via Himalayas
🏷 Information-Security-Management,Security-Operations,Incident-Response,Cloud-Security,Security-Leadership,Information-Security-Manager,Information-Systems-Security-Manager,IT-Security-Manager,Cybersecurity-Manager
Apply on original site β†—

Aderant is a global industry leading software company providing comprehensive business management solutions for law firms and other professional services organizations with a mission to help them run a better business. We are motivated by a collective desire to drive the legal industry to the forefront of innovation. With over 2,500 clients around the world, including 95 of the top AmLaw 100 firms, we are changing the outside perception of the legal sphere; where there was once resistance to modernization, we are creating a culture that embraces new ideas and technology.

At Aderant , the β€œA” is more than just a letter. It is a representation of how we fulfill our foundational purpose, serving our clients. It embodies our core values and reminds us that to achieve success, every day must start with the β€œA”. We bring the β€œA” to life by fostering a culture of innovation, collaboration, and personal growth. We encourage our diverse teams to bring their whole selves to work – ideas, experience, and passion – to drive our mission forward.
Our people are our strength.
Position Summary

Aderant is the leading global provider of business management software for law firms, and the Information Security team protects the systems, data, and client trust that underpin that mission. The Manager, Information Security leads Aderant 's security operations and incident response function, directing a team of analysts and engineers responsible for detecting, investigating, and responding to threats across the company's global environment.

Reporting to the Director, Head of Information Security, this role translates security strategy into day-to-day operational execution β€” owning the security operations function, incident response program, and threat detection capabilities, while building and developing a high-performing team.
Key Responsibilities
Security Operations & Incident Response
- Lead day-to-day security operations, including monitoring, threat detection, and alert triage across the SIEM, EDR, cloud-native security services, and related security tooling.

- Own the incident response program: lead investigation and response for security incidents, coordinate cross-functional response (IT, Legal, Privacy, Communications), and drive post-incident root-cause analysis and remediation.

- Maintain and continuously improve incident response plans, playbooks, and tabletop exercises, cloud- and identity-specific response scenarios.

- Establish and track key operational metrics (mean time to detect/respond, alert volumes, false-positive rates) and report on security operations performance to the Director.

- Oversee vulnerability management operations across cloud infrastructure, endpoints, containers, and applications, including risk-based prioritization and coordination of remediation with Engineering and IT.

- Serve as an escalation point and on-call leader during active security incidents, including after hours as required.

Cloud Security (AWS & Azure)
- Own day-to-day cloud security operations across Aderant 's production AWS and Azure environments, including detection, triage, and response to cloud control-plane and workload threats.

- Manage cloud security posture management (CSPM) operations: monitor for misconfiguration and drift, prioritize findings by real-world risk, and drive remediation with Cloud Engineering and IT.

- Establish and maintain cloud security guardrails and baselines β€” logging and telemetry coverage, network segmentation, encryption, secrets handling, and secure-by-default configuration standards.

- Lead identity and access security operations in the cloud and across the enterprise: privileged access, role and permission hygiene, conditional access, MFA enforcement, and detection of identity-based attack techniques such as token theft, session hijacking, and consent abuse.

- Ensure comprehensive security telemetry from both cloud platforms is ingested, normalized, and covered by detections in t

← All remote jobs

Get remote jobs like this by email

One weekly digest. No spam, unsubscribe anytime.

Similar for you