Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Chief Information Security Officer

DLA Piper

DLA Piper is, at its core, bold, exceptional, collaborative and supportive. Our people are the backbone, heart and soul of our firm. Wherever you are in your professional journey, DLA Piper is a place you can engage in meaningful work and grow your career. Let’s see what we can achieve. Together.SummaryThe Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive responsible for protecting DLA Piper’s clients, people, data, reputation, and global business operations by leading a mature, business-aligned information security and cyber risk program. This role sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response, third-party security, data protection, and security awareness programs.Operating as a trusted advisor to firm leadership, the Office of General Counsel, Information Technology, Information Governance, Risk Management, practice leadership, and global counterparts, the CISO ensures the confidentiality, integrity, and availability of client and firm information while enabling innovation, responsible AI adoption, operational resilience, and exceptional client service. The CISO works closely with, but independently from, the Information Technology function to provide objective risk oversight, policy leadership, executive reporting, and continuous improvement of the firm’s security posture.Location This position can sit in our Atlanta, Baltimore, Boston, Miami, New York, Northern Virginia, Philadelphia, Raleigh, Short Hills, Washington D.C., or Wilmington office. Candidates must reside within a reasonable commuting distance of their assigned office and be available for periodic travel.ResponsibilitiesSets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.Leads the firm’s Information Security Management System and security governance framework, including policy development, risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement.Serves as the senior incident response leader for information security events, ensuring prompt triage, containment, investigation, evidence preservation, root-cause analysis, remediation, lessons learned, and appropriate coordination with the Office of General Counsel, firm leadership, insurers, regulators, law enforcement, vendors, and affected clients when required.Partners with executive leadership, Information Technology, AI Innovation, AI Governance, Information Governance, Risk Management, Privacy, Procurement, Finance, Human Resources, practice leaders, and global counterparts to embed security-by-design into firm operations, technology investments, client service delivery, and major transformation initiatives.Provides objective cyber risk advice to firm leadership and governance bodies, translating complex technical risk into clear business, legal, reputational, operational, and client-impact terms that enable timely and informed decision-making.Oversees enterprise cyber risk identification, assessment, treatment, acceptance, and reporting, including vulnerabilities, threat intelligence, identity and access risk, cloud and infrastructure security, application security, data loss prevention, endpoint protection, email security, ransomware preparedness, and business continuity dependencies.Leads security oversight of client and firm confidential information, including data classification, access controls, encryption, retention, secure disposal, cross-border data considerations, ethical walls, client outside counsel guidelines, and matter-specific security obligations.Directs third-party and supplier security risk management in partnership with Procurement, Information Technology, Information Governance, and business owners, ensuring vendors that access firm or client data are assessed, monitored, and held to appropriate security, privacy, contractual, and operational standards.Guides security review and risk oversight for emerging technologies, cloud services, legal technology, artificial intelligence, automation, analytics, and internally developed tools, ensuring innovation is deployed responsibly and in compliance with firm policies, client requirements, and applicable legal and ethical obligations.Builds, develops, and leads a high-performing information security organization with the expertise, credibility, accountability, and service orientation required to support a complex, global, partner led professional services environment.Defines and manages the Information Security team’s operating model, including functional roles, accountability structures, governance routines, service levels, intake and prioritization processes, escalation protocols, on-call expectations, and coordination with Information Technology, Risk, Information Governance, Privacy, Procurement, Human Resources, and practice leadership.Recruits, develops, coaches, and retains a high-caliber Information Security team with the technical depth, risk judgment, executive presence, discretion, and client-service mindset required to operate effectively in a global law firm environment.Sets clear goals and performance expectations for the Information Security team, regularly assesses performance against strategic objectives and operational metrics, addresses performance gaps, recognizes strong contributions, and ensures the team has the training, tools, resources, and authority needed to execute effectively.Provides strategic, operational, and people leadership to the Information Security function, including direct and indirect leadership of security professionals, managers, analysts, advisors, vendors, and cross-functional contributors.Defines the team’s vision, operating model, service standards, decision rights, escalation paths, and priorities to ensure the function delivers consistent, timely, risk-based, and business-aligned support across the firm. Builds a culture of accountability, confidentiality, trust, excellence, service orientation, continuous improvement, inclusion, and business partnership.Responsible for onboarding, coaching, performance management, succession planning, professional development, retention, resource allocation, budget input, vendor oversight, and effective delegation across the security program.Desired SkillsDeep technical engineering expertise in technology infrastructure, Cloud, zero-trust architecture and cyber defense. Proven ability to leverage frameworks like NIST to build and operate a comprehensive defense in depth capability. Proven ability in change management, building trust with partners and transforming organizations. Experience in a global law firm, professional services firm, financial services institution, technology company, or similarly complex environment strongly preferred. Demonstrated success leading cybersecurity strategy, enterprise risk governance, incident response, regulatory and client-facing security matters, third-party risk, audit/certification programs, security awareness, and high performing teams. Experience advising senior executives, boards, managing partners, or equivalent governance bodies required.Executive-level knowledge of cybersecurity strategy, governance, risk, compliance, privacy, data protection, incident response, threat intelligence, vulnerability management, identity and access management, cloud and network security, application security, endpoint protection, email security, encryption, logging and monitoring, disaster recovery, business continuity, third-party risk, DevSecOps, modernized secure development practices including AI SDLC, and secure technology adoption. Strong understanding of professional responsibility, client confidentiality, data classification, privilege-sensitive work, outside counsel guidelines, ethical walls, cross-border data considerations, and the security expectations of sophisticated global clients.Demonstrated ability to translate technical risk into business and legal impact, influence senior stakeholders, lead through ambiguity, make sound risk-based decisions, and communicate with clarity, credibility, discretion, and urgency. Familiarity with ISO/IEC 27001, NIST, CIS Controls, data privacy laws, cyber insurance considerations, AI governance, and emerging legal sector cybersecurity risks strongly preferred. A leader who thrives on learning and is up to date with the fast-evolving technology landscape, especially the changing threats with the advancement of AI. Ability to not only understand security tools/needs, how these are changing but also go back to first principles in solving the underlying problems through innovation.Demonstrate executive presence, credibility, sound judgment, and professional maturity in all interactions, particularly when advising firm leadership, senior partners, governance bodies, clients, regulators, vendors, and other high-impact stakeholders on sensitive, complex, or time-critical information security matters. Communicate with clarity, confidence, discretion, and appropriate urgency, translating complex technical, legal, operational, and risk issues into concise business terms that enable informed decisions by senior leaders and non-technical audiences. Influence senior leaders and stakeholders through trusted relationships, fact-based analysis, persuasive recommendations, and a firm-first approach that balances client expectations, legal and regulatory obligations, operational realities, risk appetite, and strategic business priorities.Build alignment across a complex, matrixed, partner-led environment by listening effectively, anticipating concerns, managing competing perspectives, escalating appropriately, and helping leaders reach timely, defensible, and consistently supported decisions. Prepare and deliver executive-level briefings, written updates, risk narratives, Executive Committee materials, client-facing responses, and incident communications that are accurate, audience-appropriate, concise, and aligned with firm standards and confidentiality obligations. Lead difficult or sensitive conversations with diplomacy, composure, courage, and empathy, including situations involving cyber incidents, policy exceptions, risk acceptance, resource tradeoffs, control gaps, or competing leadership priorities.Minimum Education    Bachelor’s Degree in Information Security, Cybersecurity, Information Technology, Computer Science, Engineering, Business, Risk Management, Law, or a related field; equivalent senior leadership experience may be considered, where appropriate.Preferred Education    Master’s Degree in MBA, M.S. in Cybersecurity/Information Security, J.D., or other relevant advanced degree preferred.CertificatesRelevant professional certifications are strongly preferred, such as CISSP, CISM, CISA, CRISC, CCISO, GIAC, ISO/IEC 27001 Lead Implementer or Lead Auditor, or comparable credentials. Demonstrated ongoing professional development in cybersecurity, privacy, risk governance, incident response, cloud security, AI governance, and legal/professional services risk is expected.Minimum Years of Experience  15+ years’ progressive information security, cybersecurity, technology risk, privacy, compliance, or enterprise risk leadership experience, including significant executive-level responsibility for a complex, highly regulated, client-facing organization.Essential Job ExpectationsAll DLA Piper employees are expected to demonstrate excellence in how we serve our clients and develop our people, upholding our firm values as part of our culture. Specific expectations include:Communicate effectively, both verbally and in writing, with clients, lawyers, business professionals, and external audiences.Produce high-quality work and respond to correspondence in an efficient, timely, and professional manner.Meet deadlines, manage competing priorities, and commit to meeting high standards.Comply with firm policies and procedures.Maintain confidences as required in a law firm environment.Physical DemandsSedentary work: This is primarily sedentary work, requiring occasional exertion of up to 10 pounds of force to lift, carry, push, pull, or move objects. The role involves sitting for extended periods, with occasional walking and standing, and occasional travel, both domestic and international.Work Environment    The individual selected for this position may have the opportunity for a hybrid work arrangement combining remote and in-office work. The specific arrangement will be determined at the time of hiring and may be modified at the firm's discretion.Disclaimer    The purpose of this job description is to provide a concise statement of the work elements and to organize and present the information in a standardized way. It is not intended to describe all the elements of the work that may be performed by every individual in this classification, nor should it serve as the sole criteria for personnel decisions and actions. The job duties, requirements, and expectations for this position may be modified at the Firm’s discretion at any time. This job description does not change the at-will nature of employment.Application Process     Interested candidates must apply directly online. Application materials sent via email will not be accepted.Accommodation    Reasonable accommodations may be made upon request to enable individuals with disabilities to perform the essential functions of this position or participate in the selection process. For accommodation requests, please contact View email address on click.appcast.io applications will not be considered.No immigration sponsorship is available for this position.This job description provides a concise overview of the role and is not intended to describe all work elements that may be performed. It should not serve as the sole criteria for personnel decisions. Job duties, requirements, and expectations may be modified at the firm's discretion at any time. This job description does not alter the at-will nature of employment.We are committed to excellence in how we serve our clients and develop our people.The firm’s expected hiring range for this position is $550,000 - $650,000 per year depending on the candidate’s geographic market location.The compensation offered for employment will also be dependent on other factors including the candidate’s experience, skills, educational and professional background, and overall qualifications. We offer a comprehensive package of benefits, including medical/dental/vision insurance, and 401(k).Applicants who are not based in the jurisdiction in which this position is posted and who apply for this role are doing so voluntarily and are not eligible for relocation assistance. Any relocation benefits, if any, are provided only where a relocation is required at the firm’s direction and in accordance with applicable policy and law.#LI-SB1#LI-HybridDLA Piper is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Job applicant poster viewing center.SummaryLocation: Reston, VA; Atlanta, GA; Raleigh, NC; Baltimore, MD; New York, NY; Short Hills, NJ; Washington, DC; Wilmington, DE; Philadelphia, PA; Miami, FL; Boston, MAType: Full time

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer in Raleigh, NC vacancy
  •  ...Chief Information Security Officer (CISO)DLA Piper is, at its core, bold, exceptional, collaborative and supportive. Our people are the backbone, heart and soul of our firm. Wherever you are in your professional journey, DLA Piper is a place you can engage in meaningful... 
    Suggested
    Work at office

    DLA Piper

    Raleigh, NC
    1 day ago
  • If you are looking for a career as a Information Systems Security Officer - ISSO and you are interested in designing, improving, and managing projects through the RMF then our Raleigh, NC division of ARA has an exciting opportunity worth considering. Not only will you... 
    Suggested
    Full time
    Work experience placement

    Applied Research Associates

    Raleigh, NC
    3 days ago
  •  ...the sidelines.We're looking for builders, problem-solvers, and security professionals who thrive in a fast-paced environment where...  ...penetration testing.Experience implementing and managing complex information security technologies.Preferred Qualifications 5+ years of penetration... 
    Suggested
    Permanent employment
    Full time
    Part time
    H1b
    Work visa
    Shift work
    Day shift

    Truist

    Raleigh, NC
    4 days ago
  • $76 - $76.9 per hour

     ...76.90/hr Job Description Immediate need for a talented Cyber Security Analyst - Lead. This is a 04 months contract opportunity with...  ...Applicable Employment type Contract Job function Analyst and Information Technology Industries Banking Pyramid Consulting, Inc. provides... 
    Suggested
    Contract work
    Local area
    Immediate start
    Remote work

    Pyramid Consulting, Inc

    Raleigh, NC
    2 days ago
  •  ...organization through effective management of information technology and network systems; policies...  ...ensuring the effective, efficient and secure operation of all information technology...  ...both remotely and in a professional office setting, with onsite work at 80% and expected... 
    Suggested
    Temporary work
    Work experience placement
    Work at office
    Remote work

    Socket.dev

    Raleigh, NC
    3 days ago
  • $105.4k - $207.8k

     ...engineering teams, and communicate effectively with business, security, privacy, legal, and compliance stakeholders.Recruiting for this...  ...:Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or equivalent demonstrated experience... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    5 days ago
  • $97.61k - $188.38k

     ...with resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 10/31/2026Work you’ll...  ...configure, and deploy Saviynt.Understand complex business and information technology management processes. Execute advanced services and... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    5 days ago
  • $105.4k - $207.8k

     ...Consultant - Cyber Defense and Resilience, you will help deliver security engineering solutions that modernize client security...  ...stakeholders to design and implement solutions across security information and event management, security orchestration automation and response... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    4 days ago
  •  ...Required)Work Shift:1st shift (United States of America)Please review the following job description:Manages large, technical information security projects, programs, and processes aligned with organizational goals and regulatory requirements. Conducts advanced threat... 
    Full time
    Part time
    Shift work
    Day shift

    Truist

    Raleigh, NC
    2 days ago
  • $105.4k - $207.8k

     ...navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support...  ..., and resilient Google SecOps architectures for security information and event management (SIEM) and security orchestration, automation... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    5 days ago
  •  ...data analysis across systems, coordinate insights on system behavior, and support capacity planning to optimize performance Conduct security checks, recovery drills, and compliance audits, implement security measures, and coordinate continuity plans to maintain adherence... 
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Raleigh, NC
    2 days ago
  • $95.86k - $208.27k

     ...Application Penetration Tester (GWAPT), Council for Registered Ethical Security Testers (CREST), Offensive Security Web Expert (OSWE),...  ..., state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment... 
    H1b
    Local area

    KPMG

    Raleigh, NC
    3 days ago
  • $200k - $240k

     ...benefit plan industries. From our eight offices we provide services to clients on a national...  .... Johnson Lambert is searching for a Chief People Officer (CPO) to serve as a strategic...  ...how feedback from performance management informs L&D programming through macro trend... 
    Local area

    Johnson Lambert

    Raleigh, NC
    2 days ago
  • $200k - $230k

     ...detailsTitle of position: Innovation Lead - Office of the CTOPosition type: Full time -...  ...networking, committed to simplifying and securing IT operations through its unified...  ...Extreme Networks does not seek salary history information from applicants and will not rely on salary... 
    Full time
    Work at office
    Local area
    Remote work
    Work from home
    Worldwide

    Extreme Networks, Inc.

    Raleigh, NC
    2 days ago
  • $80k - $110k

    Chiropractor Raleigh NC $80K–$110K+ Unlimited Bonus | No Weekends | Full-Time We are looking for a motivated and compassionate Chiropractor to join our practice full time in Raleigh, NC. Are you looking for a long-term chiropractic career where you can focus on delivering...
    Full time
    Monday to Friday

    HEALTHCARE RECRUITMENT COUNSELORS

    Raleigh, NC
    a month ago
  • $134.5k - $265.1k

     ...automation development. You will design, implement, and optimize secure, outcome-focused solutions while collaborating across teams to...  ...:Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or another technical field, or equivalent work experience... 
    Local area
    Visa sponsorship

    Deloitte

    Raleigh, NC
    5 days ago
  • Lecturer of Computer Science Fixed term lecturer position to begin in January 2027 at the Department of Mathematics and Computer Science, Fayetteville State University. Responsibilities Teach undergraduate computer science courses offered by the Department of Mathematics...
    For contractors
    Fixed term contract

    Fayetteville State University

    Raleigh, NC
    3 days ago
  • $134.5k - $265.1k

     ...Touche LLP, you’ll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte’...  .... Qualifications Required: 10+ years of experience in information technology, information security, or bothExperience leading vulnerability... 
    Local area

    Deloitte

    Raleigh, NC
    5 days ago
  • $80k

    Chiropractor Position at LifeClinic At LifeClinic, our mission is to restore, maintain, and optimize human function and performance. As a chiropractor here, you'll provide adjustments, soft tissue work, and rehab exercises inside Life Time facilities. We're already ...
    Temporary work
    Relocation
    Day shift

    Lifetime

    Raleigh, NC
    4 days ago
  • $90k - $125k

    A technology solutions provider in North Carolina is seeking a dedicated IT System Administrator & Security Specialist to maintain and secure IT infrastructure. This hybrid role requires a Bachelor’s degree in a relevant field along with 3 years of experience in IT security... 

    Clever Devices Ltd.

    Raleigh, NC
    2 days ago
  •  ...Job Title: Telecom Project Manager – Structured Cabling, Fiber & Security Systems Location: Garner, NC Schedule: Full-time, Monday–Friday, 8:00 a.m. – 5:00 p.m. Work Environment: ~80% office / 20% on client sites Position Overview The Telecom Project Manager will oversee... 
    Full time
    For contractors
    For subcontractor
    Work at office
    Monday to Friday

    Gilder Search Group

    Raleigh, NC
    3 days ago
  • $140k - $188k

     ...necessary; bring experience in malware analysis, network/endpoint security to respond to and contain incidents.Incident Responder/...  ...technical and business stakeholders.Incident Management – Ensures Information Security incidents are properly detected, documented,... 
    Remote work

    First Citizens Bank

    Raleigh, NC
    1 day ago
  •  ...Security SpecialistLocation: Raleigh NC 27601Duration: Long TermThe Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments...  ...privacy and security requirements for health information networks.The candidate will be allowed to... 
    Full time
    Remote work

    Software Technology Inc

    Raleigh, NC
    3 days ago
  •  ...IT Security Specialist The NC Department of Health and Human Services seeks a highly experienced IT Security Specialist to manage...  ..., Azure and GCP), defining and reviewing Privacy and Security/Information Assurance requirements (and dependencies), and defining and reviewing... 

    My3Tech Inc

    Raleigh, NC
    1 day ago
  •  ...Join to apply for the Cyber Security Analyst II role at SECU Join to apply for the Cyber Security Analyst II role at SECU If you are...  ...responsible for implementing, managing, and optimizing Security Information and Event Management (SIEM) solutions to enhance an... 
    16 hours
    Full time
    Internship
    Work from home

    SECU

    Raleigh, NC
    4 days ago
  •  ...Cyber Security Analyst IIIPlanIT Group is seeking a Cyber Security Analyst III to support our Federal customer in the Washington, DC...  ...Operations Center (SOC).Bachelor's Degree in Computer Science, Information Technology, or Information SecurityCompTIA Security + CPTE - Certified... 
    Permanent employment
    Local area
    Remote work

    PLANIT Group

    Raleigh, NC
    3 days ago
  •  ...partner to Optiv’s clients. By combining advanced business and security practitioner knowledge, the CSA designs security solutions...  ...stakeholders at clients by facilitating thought leadership, support, information, and guidance in conjunction with sales partners.Maintain... 
    Full time
    Work experience placement
    Local area
    Remote work
    Work from home

    Optiv

    Raleigh, NC
    4 days ago
  • $110.7k - $218.3k

     ...Recruiting for this role ends on 12/31/2026.Work you'll doAs a Security Engineer II on the Cyber Defense & Resilience Continuous...  ...environments.QualificationsRequired:3+ years of experience in information technology, information security, vulnerability management, patch... 
    Local area

    Deloitte

    Raleigh, NC
    5 days ago
  • $140k - $188k

     ...Information Security And Cyber Threat ManagementThis position supports the Bank's Information Security and Cyber Threat management programs at the highest level of complexity and expertise. Leads the analysis and mitigation of threats identified within the Bank's networks... 

    First Citizens Bank

    Raleigh, NC
    3 days ago
  • $90k - $100k

     ...Job Title Cyber Security Analyst Location Charlotte, NC Salary $90,000.00 - $100,000.00 Employment Type Full-time Seniority Level Mid...  ...level Experience Required 10-20 years of experience Job Function Information Technology Industries IT Services and IT Consulting... 
    Full time

    Infinite Computer Solutions

    Raleigh, NC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!