Corporate Attorney, Product And Information Security Counsel Jobs in North_Carolina - 167362 | Submit Resume | General Counsel Consulting
General Counsel Consulting
About us Attorney resources Employer resources Job listings Submit resume Contact Us
General Counsel Consulting
Sign In
Email:
Password:
Forgot your password?
New User?
Signup
GCC
General Counsel
Consulting
provided
exceptional
service in helping
my organization
recruit for a hard
to fill position.
They did extensive
work on the front
end to understand
our needs and
our culture and
began referring
highly qualified
candidates almost
immediately.
 
Melinda Burrows
Deputy General Counsel
- Litigation and
Compliance, Progress
Energy Service Company
LLC
 

Jobs for Law Students
Law Student - Law Firm in San Jose, CA
USA-CA-San Jose
File Clerk The candidate will be organizing and filing documents for client files. Creating compute.... [more]


Law Student - In-House in San Mateo, CA
USA-CA-San Mateo
Winter Intern ? Tax Services The candidate will serve as members of client service teams. Interns a.... [more]


Law Student - In-House in Chicago, IL
USA-IL-Chicago
Intern - Tax Services The intern will be exposed to a wide variety of projects and industries. Will.... [more]


Articles By
Harrison Barnes From
BCG Attorney Search

 

 
Click here
 

Job of the Day
Assistant General Counsel
Washington District of Columbia United States

The Assistant General Counsel I position is located in the Office of General Counsel (OGC), Office of the President, Kennedy Center. The purpose of this position is to provide professional legal advice and services to the General Counsel, appropriate...


In House Legal Job Listings

YOUR WINDOW TO A WORLD OF OPPORTUNITIES
 
Corporate Attorney, Product And Information Security
Refer job# FVGA167362
 
Corporate Attorney, Product and Information Security The candidate will provide strategic security-related legal advice and guidance to Legal, Product Security, and IT teams, including product managers and engineers, cloud architects, corporate communication functions, and privacy program managers, on compliance with applicable product and information security regulations and standards, security-by-design concepts, secure development life cycle practices, software supply chain issues, security frameworks, telemetry processes, and industry certifications. Partner with the Product Security team on a variety of key areas essential to success, including advising on current and emerging regulatory and industry guidelines and frameworks related to software development and life cycle management, e.g., NIST Cybersecurity Framework and European Network and Information Security Agency (ENISA) initiatives, and services like FedRAMP, SOC 2, Cybersecurity Maturity Model Certification (CMMC), and ISO vulnerability disclosure standards, responses, and notifications, and enhancement of product security policies, standards, and procedures. Review security advisories and updates, related press releases, and certification and attestation communications. Advise on security-related regulatory responsibilities and assist with investigations of product and information security incidents and other activities, as requested. Work closely with the Public Policy team to monitor and evaluate emerging legislative and policy initiatives in this area. Work closely with the Information Security and Data Protection teams, as requested. Assist with negotiating customer and vendor agreements, particularly those involving managed services, IT, and information security; serve as a security subject matter expert and respond to customer security questions and requests. Support members of the Legal team in areas of system and software design related to security. Create, maintain, and provide security-related awareness training, contract templates, playbooks, and governance documents; participate in periodic internal and external audits, reviews, and assessments of offerings and controls and implement appropriate risk mitigations and lessons learned. Promote the importance of a solid culture of security, provide regular updates to senior management, and lead or support security-related initiatives, as necessary.

The candidate should have a J.D. degree plus admission to practice law in at least one jurisdiction. Should have 3+ years of product or information security experience in a law firm, government entity, or in-house team; solid expertise in and working knowledge of global security standards and frameworks like NIST-related cyber guidance, ISO, FedRAMP, HIPAA, or PCI, and experience supporting the development of cloud applications and related software offerings are a plus. Experience negotiating customer and vendor agreements related to information security requirements. Comfortable analyzing product and cybersecurity concepts and methodologies with the ability to effectively communicate technical concepts and implement pragmatic solutions in support of the creation, enhancement, and implementation of robust and globally consistent policies, procedures, controls, and systems for Red Hat's product and information security programs. Good analytical abilities to quickly understand complex cybersecurity concepts and regulatory requirements and support the development and appropriate communication of security bulletins, remedial measures, and controls. Demonstrated ability to establish and maintain appropriate working relationships with all levels of an organization and external contacts, and to work effectively in a professional team environment. Excellent writing and interpersonal skills, sound judgment, and ability to inspire and collaborate with others in a growing global business. A proactive approach to recognizing business and compliance needs, anticipating issues, and applying thorough and thoughtful analysis with an exceptional sense of judgment in determining recommended steps and actions relative to product and information security matters.
 
EMAIL TO COLLEAGUE  PERMALINK
This particular job is currently not active. However, since our clients regularly share with us similar and other job openings, we strongly recommend that you submit your resume. We shall review your resume and get in touch with you as soon as a suitable vacancy comes up to further discuss your interest in exploring the opportunity. Assisting you is our highest priority.

Please be assured that none of your materials will be forwarded to any employer without your consent. Of course, all inquiries are kept strictly confidential.
 
 

Shoot for the moon. Even if you miss it, you will land among the stars.