Data, Privacy & Cybersecurity Associate Attorney

The Direct
Washington, DC, United States
27 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$225,000.0 - $250,000.0
Working hours
Regular working hours

Tech stack

Cyber Security EHealth Red Team (Cyber Security) Enterprise Software Applications

Job description

Direct Counsel is seeking a Data, Privacy & Cybersecurity Associate Attorney to join a prestigious Am Law firm in Washington, D.C. This is an exceptional opportunity for an attorney with 2-4 years of experience in cybersecurity, privacy, and technology regulatory matters to join a nationally recognized Data, Privacy & Cybersecurity practice. The team advises leading companies across the technology, life sciences, digital health, enterprise software, manufacturing, professional services, and financial services industries on complex cybersecurity incidents, privacy compliance, and technology risk management. Responsibilities Advise clients on cybersecurity incident response, including legal analysis, breach assessment, regulatory obligations, and strategic response planning. Assist with regulatory investigations, inquiries, and reporting obligations following cybersecurity incidents. Develop incident response plans, cybersecurity policies, and breach preparedness programs. Support tabletop exercises, cyber risk assessments, red team simulations, and vulnerability disclosure programs. Counsel clients on cybersecurity governance, third-party risk management, and information security compliance. Analyze federal, state, and industry-specific cybersecurity and privacy regulations, including recognized cybersecurity frameworks such as NIST CSF. Advise on cybersecurity and privacy issues arising from product development, commercial transactions, and cross-border data transfers. Manage client workstreams while collaborating directly with clients and multidisciplinary legal teams.

Requirements

J.D. from an ABA-accredited law school. Active membership in, or eligibility for, the District of Columbia Bar. 2-4 years of experience in cybersecurity, privacy, technology regulatory counseling, incident response, or a related practice area. Experience gained at a law firm, government agency, or in-house legal department is welcomed. Experience supporting cybersecurity incident response, breach notifications, or regulatory investigations is strongly preferred. Familiarity with cybersecurity frameworks (such as NIST CSF ) and U.S. privacy and cybersecurity regulatory requirements is a plus. Excellent legal research, analytical, drafting, and communication skills. Ability to manage multiple priorities while delivering high-quality client service in a fast-paced environment.

Benefits & conditions

Salary: $235,000-$310,000, commensurate with experience and qualifications. Comprehensive benefits package, including: Medical, dental, and vision insurance 401(k) retirement plan Paid time off Annual performance and discretionary bonus eligibility Relocation assistance, where applicable

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:51 min

Leveraging continuous penetration testing via red teams

Reto Kaeser · LIVE

1:16 min

Introduction to technology advocacy and connected data systems

Jennifer Reif · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · World Congress 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all