Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Chief Information Security Officer

DLA Piper

DLA Piper is, at its core, bold, exceptional, collaborative and supportive. Our people are the backbone, heart and soul of our firm. Wherever you are in your professional journey, DLA Piper is a place you can engage in meaningful work and grow your career. Let’s see what we can achieve. Together. Summary The Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive responsible for protecting DLA Piper’s clients, people, data, reputation, and global business operations by leading a mature, business-aligned information security and cyber risk program. This role sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response, third-party security, data protection, and security awareness programs. Operating as a trusted advisor to firm leadership, the Office of General Counsel, Information Technology, Information Governance, Risk Management, practice leadership, and global counterparts, the CISO ensures the confidentiality, integrity, and availability of client and firm information while enabling innovation, responsible AI adoption, operational resilience, and exceptional client service. The CISO works closely with, but independently from, the Information Technology function to provide objective risk oversight, policy leadership, executive reporting, and continuous improvement of the firm’s security posture. Location This position can sit in our Atlanta, Baltimore, Boston, Miami, New York, Northern Virginia, Philadelphia, Raleigh, Short Hills, Washington D.C., or Wilmington office. Candidates must reside within a reasonable commuting distance of their assigned office and be available for periodic travel. Responsibilities Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives. Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives. Leads the firm’s Information Security Management System and security governance framework, including policy development, risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement. Serves as the senior incident response leader for information security events, ensuring prompt triage, containment, investigation, evidence preservation, root-cause analysis, remediation, lessons learned, and appropriate coordination with the Office of General Counsel, firm leadership, insurers, regulators, law enforcement, vendors, and affected clients when required. Partners with executive leadership, Information Technology, AI Innovation, AI Governance, Information Governance, Risk Management, Privacy, Procurement, Finance, Human Resources, practice leaders, and global counterparts to embed security-by-design into firm operations, technology investments, client service delivery, and major transformation initiatives. Provides objective cyber risk advice to firm leadership and governance bodies, translating complex technical risk into clear business, legal, reputational, operational, and client-impact terms that enable timely and informed decision‑making. Oversees enterprise cyber risk identification, assessment, treatment, acceptance, and reporting, including vulnerabilities, threat intelligence, identity and access risk, cloud and infrastructure security, application security, data loss prevention, endpoint protection, email security, ransomware preparedness, and business continuity dependencies. Leads security oversight of client and firm confidential information, including data classification, access controls, encryption, retention, secure disposal, cross‑border data considerations, ethical walls, client outside counsel guidelines, and matter‑specific security obligations. Directs third‑party and supplier security risk management in partnership with Procurement, Information Technology, Information Governance, and business owners, ensuring vendors that access firm or client data are assessed, monitored, and held to appropriate security, privacy, contractual, and operational standards. Guides security review and risk oversight for emerging technologies, cloud services, legal technology, artificial intelligence, automation, analytics, and internally developed tools, ensuring innovation is deployed responsibly and in compliance with firm policies, client requirements, and applicable legal and ethical obligations. Builds, develops, and leads a high‑performing information security organization with the expertise, credibility, accountability, and service orientation required to support a complex, global, partner‑led professional services environment. Defines and manages the Information Security team’s operating model, including functional roles, accountability structures, governance routines, service levels, intake and prioritization processes, escalation protocols, on‑call expectations, and coordination with Information Technology, Risk, Information Governance, Privacy, Procurement, Human Resources, and practice leadership. Recruits, develops, coaches, and retains a high‑caliber Information Security team with the technical depth, risk judgment, executive presence, discretion, and client‑service mindset required to operate effectively in a global law firm environment. Sets clear goals and performance expectations for the Information Security team, regularly assesses performance against strategic objectives and operational metrics, addresses performance gaps, recognizes strong contributions, and ensures the team has the training, tools, resources, and authority needed to execute effectively. Provides strategic, operational, and people leadership to the Information Security function, including direct and indirect leadership of security professionals, managers, analysts, advisors, vendors, and cross‑functional contributors. Defines the team’s vision, operating model, service standards, decision rights, escalation paths, and priorities to ensure the function delivers consistent, timely, risk‑based, and business‑aligned support across the firm. Builds a culture of accountability, confidentiality, trust, excellence, service orientation, continuous improvement, inclusion, and business partnership. Responsible for onboarding, coaching, performance management, succession planning, professional development, retention, resource allocation, budget input, vendor oversight, and effective delegation across the security program. Desired Skills Deep technical engineering expertise in technology infrastructure, Cloud, zero‑trust architecture and cyber defense. Proven ability to leverage frameworks like NIST to build and operate a comprehensive defense in depth capability. Proven ability in change management, building trust with partners and transforming organizations. Experience in a global law firm, professional services firm, financial services institution, technology company, or similarly complex environment strongly preferred. Demonstrated success leading cybersecurity strategy, enterprise risk governance, incident response, regulatory and client‑facing security matters, third‑party risk, audit/certification programs, security awareness, and high‑performing teams. Experience advising senior executives, boards, managing partners, or equivalent governance bodies required. Executive‑level knowledge of cybersecurity strategy, governance, risk, compliance, privacy, data protection, incident response, threat intelligence, vulnerability management, identity and access management, cloud and network security, application security, endpoint protection, email security, encryption, logging and monitoring, disaster recovery, business continuity, third‑party risk, DevSecOps, modernized secure development practices including AI SDLC, and secure technology adoption. Strong understanding of professional responsibility, client confidentiality, data classification, privilege‑sensitive work, outside counsel guidelines, ethical walls, cross‑border data considerations, and the security expectations of sophisticated global clients. Demonstrated ability to translate technical risk into business and legal impact, influence senior stakeholders, lead through ambiguity, make sound risk‑based decisions, and communicate with clarity, credibility, discretion, and urgency. Familiarity with ISO/IEC 27001, NIST, CIS Controls, data privacy laws, cyber insurance considerations, AI governance, and emerging legal sector cybersecurity risks strongly preferred. A leader who thrives on learning and is up to date with the fast‑evolving technology landscape, especially the changing threats with the advancement of AI. Ability to not only understand security tools/needs, how these are changing but also go back to first principles in solving the underlying problems through innovation. Demonstrate executive presence, credibility, sound judgment, and professional maturity in all interactions, particularly when advising firm leadership, senior partners, governance bodies, clients, regulators, vendors, and other high‑impact stakeholders on sensitive, complex, or time‑critical information security matters. Communicate with clarity, confidence, discretion, and appropriate urgency, translating complex technical, legal, operational, and risk issues into concise business terms that enable informed decisions by senior leaders and non‑technical audiences. Influence senior leaders and stakeholders through trusted relationships, fact‑based analysis, persuasive recommendations, and a firm‑first approach that balances client expectations, legal and regulatory obligations, operational realities, risk appetite, and strategic business priorities. Build alignment across a complex, matrixed, partner‑led environment by listening effectively, anticipating concerns, managing competing perspectives, escalating appropriately, and helping leaders reach timely, defensible, and consistently supported decisions. Prepare and deliver executive‑level briefings, written updates, risk narratives, Executive Committee materials, client‑facing responses, and incident communications that are accurate, audience‑appropriate, concise, and aligned with firm standards and confidentiality obligations. Lead difficult or sensitive conversations with diplomacy, composure, courage, and empathy, including situations involving cyber incidents, policy exceptions, risk acceptance, resource tradeoffs, control gaps, or competing leadership priorities. Minimum Education Bachelor’s Degree in Information Security, Cybersecurity, Information Technology, Computer Science, Engineering, Business, Risk Management, Law, or a related field; equivalent senior leadership experience may be considered, where appropriate. Preferred Education Master’s Degree in MBA, M.S. in Cybersecurity/Information Security, J.D., or other relevant advanced degree preferred. Certificates Relevant professional certifications are strongly preferred, such as CISSP, CISM, CISA, CRISC, CCISO, GIAC, ISO/IEC 27001 Lead Implementer or Lead Auditor, or comparable credentials. Demonstrated ongoing professional development in cybersecurity, privacy, risk governance, incident response, cloud security, AI governance, and legal/professional services risk is expected. Minimum Years Of Experience 15+ years’ progressive information security, cybersecurity, technology risk, privacy, compliance, or enterprise risk leadership experience, including significant executive‑level responsibility for a complex, highly regulated, client‑facing organization. Essential Job Expectations All DLA Piper employees are expected to demonstrate excellence in how we serve our clients and develop our people, upholding our firm values as part of our culture. Specific expectations include: Communicate effectively, both verbally and in writing, with clients, lawyers, business professionals, and external audiences. Produce high‑quality work and respond to correspondence in an efficient, timely, and professional manner. Meet deadlines, manage competing priorities, and commit to meeting high standards. Comply with firm policies and procedures. Maintain confidences as required in a law firm environment. Physical Demands Sedentary work: This is primarily sedentary work, requiring occasional exertion of up to 10 pounds of force to lift, carry, push, pull, or move objects. The role involves sitting for extended periods, with occasional walking and standing, and occasional travel, both domestic and international. Work Environment The individual selected for this position may have the opportunity for a hybrid work arrangement combining remote and in‑office work. The specific arrangement will be determined at the time of hiring and may be modified at the firm’s discretion. Disclaimer The purpose of this job description is to provide a concise statement of the work elements and to organize and present the information in a standardized way. It is not intended to describe all the elements of the work that may be performed by every individual in this classification, nor should it serve as the sole criteria for personnel decisions and actions. The job duties, requirements, and expectations for this position may be modified at the Firm’s discretion at any time. This job description does not change the at‑will nature of employment. Accommodation Reasonable accommodations may be made upon request to enable individuals with disabilities to perform the essential functions of this position or participate in the selection process. For accommodation requests, please contact View email address on click.appcast.io. No immigration sponsorship is available for this position. This job description provides a concise overview of the role and is not intended to describe all work elements that may be performed. It should not serve as the sole criteria for personnel decisions. Job duties, requirements, and expectations may be modified at the firm’s discretion at any time. This job description does not alter the at‑will nature of employment. We are committed to excellence in how we serve our clients and develop our people. The firm’s expected hiring range for this position is $550,000 - $650,000 per year depending on the candidate’s geographic market location. The compensation offered for employment will also be dependent on other factors including the candidate’s experience, skills, educational and professional background, and overall qualifications. We offer a comprehensive package of benefits, including medical/dental/vision insurance, and 401(k). Applicants who are not based in the jurisdiction in which this position is posted and who apply for this role are doing so voluntarily and are not eligible for relocation assistance. Any relocation benefits, if any, are provided only where a relocation is required at the firm’s direction and in accordance with applicable policy and law. DLA Piper is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Job applicant poster viewing center. #J-18808-Ljbffr DLA Piper

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer in Boston, MA vacancy
  • $325k

     ...Posting Description CHIEF INFORMATION SECURITY OFFICER (CISO), Information Systems and Technology (IS&T), establishes and leads the enterprise-wide information security strategy across MIT. The CISO leads other overall direction and implementation of the information... 
    Suggested
    Full time
    Visa sponsorship

    Massachusetts Institute of Technology

    Cambridge, MA
    4 days ago
  • $243k - $365k

     ...Verily is seeking a passionate and experienced leader for the company’s centralized Security organization. The scope of Security encompasses security and privacy engineering, information security, and governance, risk, and compliance, in support of a wide range of... 
    Suggested
    Full time
    Work experience placement

    The Security Executive Council

    Boston, MA
    2 days ago
  •  ...Job Title: Chief Information Security Officer (CISO) Location: Houston, TX (On-Site) Type: Full-Time About Us: Our Client is a leading provider specializing in laboratory testing services, dedicated to delivering accurate, timely, and high-quality... 
    Suggested
    Full time
    Remote work

    Saviance

    Boston, MA
    1 day ago
  •  ...Chief Information Security Officer CISO Boston, MA Reporting to the Global Chief Technology Officer, the Chief Information Security Officer (formerly known as the Global Security Officer) develops and maintains enterprise security and risk policies, oversees... 
    Suggested
    Work at office
    Local area

    The Ceres Group

    Boston, MA
    3 days ago
  •  ...Chief Information Security Officer (CISO) Location: TX (Hybrid) About BigRio BigRio is a Digital Transformation consulting firm headquartered in Boston, MA, specializing in data and analytics, custom development, software implementation, data analytics, and... 
    Suggested

    Saviance

    Boston, MA
    4 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Innovative provider of data safety & recovery solutions Industry Information Technology and Services Type Privately Held Founded 2024 Employees 51-200 Specialties cloud backup... 

    Confidential

    Boston, MA
    4 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Clinical-stage biotechnology (BioTech) firm Industry Biotechnology Type Public Company Founded 2012 Employees 51-200 Categories Biotechnology Medical Therapeutics Healthcare... 

    Confidential

    Cambridge, MA
    4 days ago
  •  ...Chief Information Security Officer (CISO) About the Company Well-recognized private research university providing technology-first learning Industry Higher Education Type Educational Institution Founded 1861 Employees 5001-10,000 Categories... 

    Confidential

    Cambridge, MA
    4 days ago
  •  ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security... 

    Confidential

    Boston, MA
    4 days ago
  •  ...better. Always hire up, never down. We partner with organizations of all sizes to explore, design, and implement AI strategies that are secure, scalable, and human-centered. We believe AI should amplify human potential, not replace it, and we build with that conviction in... 
    Full time
    For contractors
    Remote work
    Day shift

    Human Agency

    Boston, MA
    4 days ago
  •  ...Chief Information Security Officer (CISO), Information Security & Compliance About the Company Innovative artificial intelligence (AI) & marketing analytics platform Industry Information Technology and Services Type Public Company Founded 2014... 

    Confidential

    Boston, MA
    4 days ago
  •  ...Field Chief Information Security Officer (CISO) About the Company Industry leading provider of security & compliance solutions Industry Outsourcing/Offshoring Type Privately Held Founded 2020 Employees 501-1000 Funding $200+ million Categories... 
    Remote work

    Confidential

    Boston, MA
    2 days ago
  •  ...Verily Health seeks a passionate Security leader to helm its centralized Security organization. You will build and mentor a 20-person team, set strategy, and drive governance, risk, and compliance across products and corporate systems. You will collaborate with Engineering... 

    Jobleads-US

    Boston, MA
    2 days ago
  • $245k - $325k

    Cambridge, MAG&A - Information Technology /On-siteScholar Rock is a late-stage global biopharmaceutical company focused on...  ...Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling enterprise... 
    Contract work
    For contractors

    Scholar Rock

    Cambridge, MA
    3 days ago
  •  ...that’s all in? At Imprivata, we deliver unified access and security management programs that eliminate friction, empowering...  ...make an impact—you’ll find it here. We are seeking a Chief Information Security Officer to join our team. This is a hybrid opportunity based out... 
    Work at office
    Local area

    RXinsider LTD.

    Waltham, MA
    4 days ago
  • $75k - $156k

     ...that inspires the cross-fertilization of ideas necessary for true innovation. For more information about Draper, visit .Job Description Summary:The Information System Security Officer 1 (ISSO) supports the continuous monitoring and authorization efforts of multiple... 
    Full time
    Local area

    Draper Laboratory

    Cambridge, MA
    2 days ago
  • $68.9k - $131.1k

     ...ability to obtain and maintain a U.S. government issued security clearance is required.​ U.S. citizenship is required, as...  ...aerospace and defense.Our cybersecurity team, is seeking an Information System Security Officer (ISSO) to support our team 100% onsite at our facility... 
    Temporary work
    Work experience placement
    Work at office
    Remote work
    Relocation package
    Flexible hours

    Raytheon

    Boston, MA
    1 day ago
  • $90k - $157.5k

     ...management, cyber control oversight, vulnerability reduction, and security-by-design practices. The role serves as a trusted advisor to...  ...expectations, and risk appetite.As a member of the Business Information Security organization, the AVP Cyber Security Advisor partners... 
    Temporary work

    State Street Corporation

    Quincy, MA
    5 hours ago
  •  ...Information Systems Security Officer (ISSO) Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment... 
    Full time
    Local area
    Flexible hours

    Contact Government Services LLC

    Boston, MA
    5 days ago
  •  ...Information System Security Officer II Global Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Officer II. Summary: The ISSO II's primary function is working... 
    For contractors
    Work at office

    GRS

    Boston, MA
    1 day ago
  •  ...their goals.Harvard University Information Technology (HUIT) is a...  ...data privacy and information security (PrivSec) throughout FAS, with...  ...Information Security and Data Privacy Office. Job-Specific...  ...metrics for FAS to the University Chief Information Security and Data... 
    Work at office

    Harvard University

    Cambridge, MA
    2 days ago
  • State Street Corporation seeks an IT Business Analyst, Officer to join the KYC Solutions Team within Compliance IT. You will liaise with business and compliance to gather, analyze, and validate requirements for KYC applications and work with development, QA, and an outside... 

    State Street Corporation

    Quincy, MA
    1 day ago
  •  ...Chief Information Officer (CIO) and Chief Technology Officer (CTO) About the Company Expanding company in the payments & neo banking sectors...  ...tasked with overseeing the development and maintenance of secure, scalable, and efficient payment solutions, and ensuring compliance... 
    Remote work

    Confidential

    Boston, MA
    3 days ago
  •  ...Chief Trust Officer (CTO) About the Company Highly respected wealth management firm with boutique, client-centric service for sophisticated families. Industry Financial Services Type Privately Held About the Role The Company is in search of a Chief... 

    Confidential

    Boston, MA
    2 days ago
  • $250k - $350k

     ...Executive Chief Technology Officer, Defense (Remote Considered) Ainabl is delivering the world’s first...  ..., revenue-generating quantum-secure networking systems for next-generation...  ...this is your opportunity. Additional Information Location: Boston, MA, USA (Hybrid – regular... 
    Permanent employment
    Remote work

    Ainabl

    Boston, MA
    1 day ago
  •  ...resources both internal to NU and external vendor resources, milestones and deadlines in coordination with the functional areas, Information Services technical groups as well as external vendors. The IPM will develop and initiate request for proposals to vendors in a process... 
    Work experience placement

    ACL Digital

    Boston, MA
    1 day ago
  • $250,000 - $285,000 per week

     ...Role Title: Chief of Staff to the Chief Technology OfficerLOCATION: We are focused on identifying...  ...local candidates who can work a hybrid office-based position (Tuesday, Wednesday and...  ...work forward.You have experience-informed perspectives about how engineering and product... 
    Work at office
    Local area

    Validity

    Boston, MA
    3 days ago
  • $90k - $157.5k

    Who We Are Looking For The Assistant Vice President, Business Information Security Officer (BISO) provides cyber risk management oversight to lines of business and legal entities within State Street, sitting within the first line of defense. The AVP - BISO integrates into... 
    Full time
    Temporary work
    Flexible hours

    State Street Bank

    Quincy, MA
    1 day ago
  • Job-ID32919128Reference26-02867 Job Title: (CISO/Cyber Security Reviewer)About Kyyba:Founded in 1998 and headquartered in Farmington...  ...versions) is usefulCertifications required (one of)CISSP — Certified Information Systems Security ProfessionalCSSLP — Certified Secure Software... 

    Kyyba

    Boston, MA
    1 day ago
  •  ...accessibility and patient outcomes. They are currently looking for a Chief Technology officer on a full-time basis to lead engineering, architecture, and...  ...products Understanding of risk and regulations and data security Expertise with FHIR/ HL7 to exchange data Proficiency in... 
    Full time

    Motion Recruitment

    Boston, MA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!