Overview
A leading organization in the Information Technology sector is seeking a Senior Director, Head of Cybersecurity & Privacy Legal. This role focuses on providing business-aligned legal guidance related to governance, compliance, and operational risk management. The position involves partnering with leaders, compliance stakeholders, and cross-functional teams to translate complex cybersecurity and privacy issues into practical recommendations. The role supports responsible execution, improved decision-making, and sustainable growth within a technology-driven environment.
Location: Remote (U.S. based candidates only, no visa sponsorship available)
Compensation: $231,000 – $330,000 annually
Responsibilities
- Provide expert legal guidance on data security, cybersecurity, and privacy matters
- Lead legal strategies for incident management and response during security events
- Advise on integrating Privacy/Security by Design principles into the company’s platform
- Mentor and manage a team of four privacy attorneys
- Collaborate with security, compliance, IT, and other teams to ensure seamless legal integration
- Develop and execute a global legal strategy aligned with rapid business growth and innovation
- Serve as a trusted advisor to senior leadership and the board of directors
Qualifications
- Juris Doctor (J.D.) from an accredited law school and an active U.S. law license
- 15+ years of experience in data security, cybersecurity, and privacy, particularly within SaaS and technology sectors
- Proven experience managing cyber incident response in collaboration with Security teams
- Expertise in negotiating security and privacy terms in complex commercial contracts
- Experience advising executive teams and boards on cybersecurity and privacy issues
- Ability to implement Privacy/Security by Design in technology companies
- Experience leading a global team of lawyers in a SaaS or technology environment
- Strong understanding of cloud architecture and modern data flow in SaaS ecosystems
- Familiarity with global privacy laws, including GDPR and CCPA
Desired Skills and Experience
- Knowledge of global AI regulations
- Certifications such as CISM, CISSP, and CIPP
- Experience with AI governance and machine learning data ethics
- Familiarity with cloud security tools (e.g., AWS Security Hub, Azure Security Center)
- Understanding of data protection frameworks (e.g., NIST Cybersecurity Framework, ISO 27001)
- Knowledge of software development lifecycle practices (SDLC)
Benefits
- Various health plans supporting employee wellbeing
- Generous vacation and sick time policies
- Parental leave options
- Retirement savings plans
- Education reimbursement for professional development
- In-office perks enhancing the work environment
The organization is an equal opportunity employer and encourages applications from candidates who may not meet every qualification but bring valuable backgrounds and perspectives.