Cybersecurity Assessment and Test Analyst II
Kirkland & Ellis · Chicago, IL, US
Apply directly on Kirkland & Ellis’s careers site — no account needed.
About the role
About Kirkland & Ellis
At Kirkland & Ellis, we don’t just meet the standard for legal excellence — we set it. Our culture is built on teamwork, ingenuity and an unwavering commitment to continuous growth. We tackle the most sophisticated legal challenges with bold ideas and innovative solutions, powered by the exceptional experience and ambition of our 7,000+ people, including 4,000+ attorneys, across 24 offices worldwide. Our dedicated professionals share our lawyers’ commitment to excellence and show up each day to do meaningful work that helps drive global business, investment and innovation forward.
What You’ll Do
Are you passionate about identifying security risks and strengthening defenses across applications, cloud environments, and third party vendors?
As a Cybersecurity Assessment and Test Analyst II, you’ll play a critical role within the Cybersecurity Investigations & Response organization, helping safeguard the firm against evolving cyber threats. You’ll partner with teams across multiple Security, and Technology teams and the broader business to assess risk, validate controls, and drive remediation. Reporting into a security governance function led by the Chief Information Security Officer (CISO), this role offers high visibility and the opportunity to directly influence the firm’s security posture while ensuring compliance with legal, contractual, and ethical obligations.
Conduct and support cybersecurity risk assessments across applications, infrastructure, cloud services internally and by leveraging third party vendors.- Partner with internal technology teams and external vendors to coordinate assessments and ensure timely remediation. Review and validate key security controls including data protection, Identity and Access Management (IAM), logging, encryption, and incident response readiness.
- Ensure assessments align with firm policies and industry frameworks such as ISO 27001, National Institute of Standards and Technology (NIST) 800 53, Cybersecurity Framework (CSF), and Center for Internet Security (CIS).
- Document, communicate, and track security risks, gaps, and remediation recommendations in a clear, actionable format.
- Conduct security testing to verify configurations and remediated findings.
- Help develop structured approaches to ensure consistent assessment of all critical production systems.
- Leverage artificial intelligence (AI) and automation tools to streamline workflows such as intake, scheduling, reporting, and evidence packaging.
- Contribute to cross-functional security projects, providing status updates, documentation, and insights.
- Translate complex security concepts into clear guidance for both technical and non technical stakeholders, enabling informed decision-making.
What You’ll Bring
- Education & Certifications: Bachelor’s degree in Cybersecurity, Information Systems, or a related field preferred; certifications such as Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or Certified Information Systems Security Professional (CISSP) are a plus.
- Relevant Experience: At least 5 years of experience in Information Technology (IT), including 3+ years in security, risk, or compliance roles.
- Security Framework Expertise: Working knowledge of frameworks like ISO 27001, NIST 800 53, CSF, CIS, and MITRE ATT&CK.
- Technical Knowledge: Familiarity with penetration testing and risk assessment tools, (e.g., RSA Archer, Vectr, Metasploit, Cobalt Strike, Cymulate, SafeBreach),
- Testing & Assessment Skills: Understanding of red team and purple team concepts, and experience validating security controls and remediation.
- Analytical Thinking & Judgment: Ability to assess risk, apply sound judgment, and produce practical, business-aligned recommendations.
- Collaboration & Communication: Strong interpersonal skills with the ability to work cross-functionally and clearly communicate findings and recommendations.
- Attention to Detail & Professionalism: High level of accuracy, discretion, and accountability when handling sensitive information.
If you’re ready to strengthen enterprise security, collaborate with high-impact teams, and make a measurable difference as a Cybersecurity Assessment and Test Analyst II, we’d love to hear from you!
Compensation
The base salary range below represents the low and high end of the salary range for this position in Chicago. This range may differ based on your geographic location and cost of living considerations. At Kirkland & Ellis, we consider compensation more than just a base salary. We offer an exceptional range of flexible benefits including comprehensive healthcare, paid time off, and retirement. We also offer personal support and tailored learning and development opportunities all designed to help you realize your full potential both in life and at work.
Compensation Range:
Chicago: $116,000 - $144,000
How to Apply
Thank you for your interest in Kirkland & Ellis LLP. To complete an application and submit your resume, please click "Apply Now."
Don't meet every job requirement? That's okay! If you're excited about this role but your experience doesn't perfectly fit every qualification, we encourage you to apply anyway. You may be just the right person for this role or others at Kirkland.
Equal Employment Opportunity
All employment decisions, including the recruiting, hiring, placement, training availability, promotion, compensation, evaluation, disciplinary actions, and termination of employment (if necessary) are made without regard to the employee’s race, color, creed, religion, sex, pregnancy or childbirth, personal appearance, family responsibilities, sexual orientation or preference, gender identity, political affiliation, source of income, place of residence, national or ethnic origin, ancestry, age, marital status, military veteran status, unfavorable discharge from military service, physical or mental disability, or on any other basis prohibited by applicable law. #LI-Hybrid #LI-CF1
Description sourced from the public Indeed listing — this role isn't indexed from the company's career page yet.
Skills
- Vulnerability Management
- Penetration Testing
- ISO 27001
- IAM
Never be applicant #200 again
Every job here is indexed straight from company career pages — often hours after it opens, before it reaches the big boards. Create a free account and get your best matches in a twice-daily digest.
- Your best matches, twice a day
- No duplicates, no ghost jobs, no recruiter spam
- Every job free to browse — pay only when you apply
Free account — no card required
93 115 live jobs · 17 641 companies tracked · 156 added today