Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Chief Information Security Officer

Associated Builders and Contractors (ABC)

Summary

The Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive responsible for protecting DLA Piper’s clients, people, data, reputation, and global business operations by leading a mature, business-aligned information security and cyber risk program. This role sets the strategic direction for the firm’s Information Security Management System, security governance, risk management, incident response, third-party security, data protection, and security awareness programs.

Operating as a trusted advisor to firm leadership, the Office of General Counsel, Information Technology, Information Governance, Risk Management, practice leadership, and global counterparts, the CISO ensures the confidentiality, integrity, and availability of client and firm information while enabling innovation, responsible AI adoption, operational resilience, and exceptional client service. The CISO works closely with, but independently from, the Information Technology function to provide objective risk oversight, policy leadership, executive reporting, and continuous improvement of the firm’s security posture.

Location

This position can sit in our Atlanta, Baltimore, Boston, Miami, New York, Northern Virginia, Philadelphia, Raleigh, Short Hills, Washington D.C., or Wilmington office. Candidates must reside within a reasonable commuting distance of their assigned office and be available for periodic travel.

Responsibilities

  • Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.
  • Sets and executes the enterprise information security strategy for DLA Piper, aligning cyber risk management with firm strategy, client obligations, professional responsibility requirements, regulatory expectations, and operational resilience objectives.
  • Leads the firm’s Information Security Management System and security governance framework, including policy development, risk assessment, control monitoring, executive reporting, audit readiness, certification support, and continuous improvement.
  • Serves as the senior incident response leader for information security events, ensuring prompt triage, containment, investigation, evidence preservation, root‑cause analysis, remediation, lessons learned, and appropriate coordination with the Office of General Counsel, firm leadership, insurers, regulators, law enforcement, vendors, and affected clients when required.
  • Partners with executive leadership, Information Technology, AI Innovation, AI Governance, Information Governance, Risk Management, Privacy, Procurement, Finance, Human Resources, practice leaders, and global counterparts to embed security‑by‑design into firm operations, technology investments, client service delivery, and major transformation initiatives.
  • Provides objective cyber risk advice to firm leadership and governance bodies, translating complex technical risk into clear business, legal, reputational, operational, and client‑impact terms that enable timely and informed decision‑making.
  • Oversees enterprise cyber risk identification, assessment, treatment, acceptance, and reporting, including vulnerabilities, threat intelligence, identity and access risk, cloud and infrastructure security, application security, data loss prevention, endpoint protection, email security, ransomware preparedness, and business continuity dependencies.
  • Leads security oversight of client and firm confidential information, including data classification, access controls, encryption, retention, secure disposal, cross‑border data considerations, ethical walls, client outside counsel guidelines, and matter‑specific security obligations.
  • Directs third‑party and supplier security risk management in partnership with Procurement, Information Technology, Information Governance, and business owners, ensuring vendors that access firm or client data are assessed, monitored, and held to appropriate security, privacy, contractual, and operational standards.
  • Guides security review and risk oversight for emerging technologies, cloud services, legal technology, artificial intelligence, automation, analytics, and internally developed tools, ensuring innovation is deployed responsibly and in compliance with firm policies, client requirements, and applicable legal and ethical obligations.
  • Builds, develops, and leads a high‑performing information security organization with the expertise, credibility, accountability, and service orientation required to support a complex, global, partner‑led professional services environment.
  • Defines and manages the Information Security team’s operating model, including functional roles, accountability structures, governance routines, service levels, intake and prioritization processes, escalation protocols, on‑call expectations, and coordination with Information Technology, Risk, Information Governance, Privacy, Procurement, Human Resources, and practice leadership.
  • Recruits, develops, coaches, and retains a high‑caliber Information Security team with the technical depth, risk judgment, executive presence, discretion, and client‑service mindset required to operate effectively in a global law firm environment.
  • Sets clear goals and performance expectations for the Information Security team, regularly assesses performance against strategic objectives and operational metrics, addresses performance gaps, recognizes strong contributions, and ensures the team has the training, tools, resources, and authority needed to execute effectively.
  • Provides strategic, operational, and people leadership to the Information Security function, including direct and indirect leadership of security professionals, managers, analysts, advisors, vendors, and cross‑functional contributors.
  • Defines the team’s vision, operating model, service standards, decision rights, escalation paths, and priorities to ensure the function delivers consistent, timely, risk‑based, and business‑aligned support across the firm. Builds a culture of accountability, confidentiality, trust, excellence, service orientation, continuous improvement, inclusion, and business partnership.
  • Responsible for onboarding, coaching, performance management, succession planning, professional development, retention, resource allocation, budget input, vendor oversight, and effective delegation across the security program.

Desired Skills

  • Deep technical engineering expertise in technology infrastructure, Cloud, zero‑trust architecture and cyber defense. Proven ability to leverage frameworks like NIST to build and operate a comprehensive defense in depth capability. Proven ability in change management, building trust with partners and transforming organizations. Experience in a global law firm, professional services firm, financial services institution, technology company, or similarly complex environment strongly preferred. Demonstrated success leading cybersecurity strategy, enterprise risk governance, incident response, regulatory and client‑facing security matters, third‑party risk, audit/certification programs, security awareness, and high performing teams. Experience advising senior executives, boards, managing partners, or equivalent governance bodies required.
  • Executive‑level knowledge of cybersecurity strategy, governance, risk, compliance, privacy, data protection, incident response, threat intelligence, vulnerability management, identity and access management, cloud and network security, application security, endpoint protection, email security, encryption, logging and monitoring, disaster recovery, business continuity, third‑party risk, DevSecOps, modernized secure development practices including AI SDLC, and secure technology adoption. Strong understanding of professional responsibility, client confidentiality, data classification, privilege‑sensitive work, outside counsel guidelines, ethical walls, cross‑border data considerations, and the security expectations of sophisticated global clients.
  • Demonstrated ability to translate technical risk into business and legal impact, influence senior stakeholders, lead through ambiguity, make sound risk‑based decisions, and communicate with clarity, credibility, discretion, and urgency. Familiarity with ISO/IEC 27001, NIST, CIS Controls, data privacy laws, cyber insurance considerations, AI governance, and emerging legal sector cybersecurity risks strongly preferred. A leader who thrives on learning and is up to date with the fast‑evolving technology landscape, especially the changing threats with the advancement of AI. Ability to not only understand security tools/needs, how these are changing but also go back to first principles in solving the underlying problems through innovation.
  • Demonstrate executive presence, credibility, sound judgment, and professional maturity in all interactions, particularly when advising firm leadership, senior partners, governance bodies, clients, regulators, vendors, and other high‑impact stakeholders on sensitive, complex, or time‑critical information security matters. Communicate with clarity, confidence, discretion, and appropriate urgency, translating complex technical, legal, operational, and risk issues into concise business terms that enable informed decisions by senior leaders and non‑technical audiences. Influence senior leaders and stakeholders through trusted relationships, fact‑based analysis, persuasive recommendations, and a firm‑first approach that balances client expectations, legal and regulatory obligations, operational realities, risk appetite, and strategic business priorities.
  • Build alignment across a complex, matrixed, partner‑led environment by listening effectively, anticipating concerns, managing competing perspectives, escalating appropriately, and helping leaders reach timely, defensible, and consistently supported decisions. Prepare and deliver executive‑level briefings, written updates, risk narratives, Executive Committee materials, client‑facing responses, and incident communications that are accurate, audience‑appropriate, concise, and aligned with firm standards and confidentiality obligations. Lead difficult or sensitive conversations with diplomacy, composure, courage, and empathy, including situations involving cyber incidents, policy exceptions, risk acceptance, resource tradeoffs, control gaps, or competing leadership priorities.

Minimum Education

  • Bachelor’s Degree in Information Security, Cybersecurity, Information Technology, Computer Science, Engineering, Business, Risk Management, Law, or a related field; equivalent senior leadership experience may be considered, where appropriate.

Preferred Education

  • Master’s Degree in MBA, M.S. in Cybersecurity/Information Security, J.D., or other relevant advanced degree preferred.

Certificates

  • Relevant professional certifications are strongly preferred, such as CISSP, CISM, CISA, CRISC, CCISO, GIAC, ISO/IEC 27001 Lead Implementer or Lead Auditor, or comparable credentials. Demonstrated ongoing professional development in cybersecurity, privacy, risk governance, incident response, cloud security, AI governance, and legal/professional services risk is expected.

Minimum Years Of Experience

  • 15+ years’ progressive information security, cybersecurity, technology risk, privacy, compliance, or enterprise risk leadership experience, including significant executive‑level responsibility for a complex, highly regulated, client‑facing organization.

Essential Job Expectations

  • Communicate effectively, both verbally and in writing, with clients, lawyers, business professionals, and external audiences.
  • Produce high‑quality work and respond to correspondence in an efficient, timely, and professional manner.
  • Meet deadlines, manage competing priorities, and commit to meeting high standards.
  • Comply with firm policies and procedures.
  • Maintain confidences as required in a law firm environment.

Physical Demands

Sedentary work: This is primarily sedentary work, requiring occasional exertion of up to 10 pounds of force to lift, carry, push, pull, or move objects. The role involves sitting for extended periods, with occasional walking and standing, and occasional travel, both domestic and international.

Work Environment

The individual selected for this position may have the opportunity for a hybrid work arrangement combining remote and in‑office work. The specific arrangement will be determined at the time of hiring and may be modified at the firm’s discretion.

Disclaimer

The purpose of this job description is to provide a concise statement of the work elements and to organize and present the information in a standardized way. It is not intended to describe all the elements of the work that may be performed by every individual in this classification, nor should it serve as the sole criteria for personnel decisions and actions. The job duties, requirements, and expectations for this position may be modified at the Firm’s discretion at any time. This job description does not change the at‑will nature of employment.

Accommodation

Reasonable accommodations may be made upon request to enable individuals with disabilities to perform the essential functions of this position or participate in the selection process. For accommodation requests, please contact View email address on click.appcast.io.

Benefits

  • medical/dental/vision insurance, and 401(k)

Salary

The firm’s expected hiring range for this position is $550,000 - $650,000 per year depending on the candidate’s geographic market location.

Relocation

Applicants who are not based in the jurisdiction in which this position is posted and who apply for this role are doing so voluntarily and are not eligible for relocation assistance. Any relocation benefits, if any, are provided only where a relocation is required at the firm’s direction and in accordance with applicable policy and law.

Equal Opportunity

DLA Piper is an equal opportunity employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Job Details

Job applicant poster viewing center.

Company Culture

We are committed to excellence in how we serve our clients and develop our people.

#J-18808-Ljbffr

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Chief Information Security Officer in Kentucky vacancy
  •  ...Posted Friday, August 7, 2026 at 5:00 AM SpecPro Sustainment and Environmental (SSE) is seeking a Chief Information Security Officer (CISO) to support the National Space Intelligence Center (NSIC) Military Construction (MILCON) program at Wright-Patterson Air Force... 
    Suggested
    Temporary work
    For contractors
    Work at office
    Flexible hours

    SpecPro Sustainment and Environmental, LLC

    Kentucky
    3 days ago
  •  ...positively impact others, and pursue your personal and professional dreams-we'd love to meet you. Job Description The Chief Information Security Officer (CISO) is a senior leadership role responsible for the development, implementation, and ongoing oversight of the Bank... 
    Suggested
    Contract work
    Work at office

    The Security Executive Council

    Kentucky
    3 days ago
  • $210k - $220k

     ...Select how often (in days) to receive an alert: Chief Information Security Officer (CISO) Date: 3 Aug 2026 Company: QualityAI Country/Region: US Are you interested in working with the World’sAI-first Quality Engineering Company? Ready to advance your career... 
    Suggested
    Casual work
    Local area
    Flexible hours

    Quality Ai

    Kentucky
    1 day ago
  •  ...wide cybersecurity strategy and multi-year roadmap protecting information assets, global distribution services, ecommerce, cloud solutions...  ...Committee, and the Board of Directors Lead a central security team and coordinate matrixed security resources across global... 
    Suggested

    Jobtailor

    Kentucky
    7 hours ago
  •  ...that’s all in? At Imprivata, we deliver unified access and security management programs that eliminate friction, empowering...  ...make an impact—you’ll find it here. We are seeking a Chief Information Security Officer to join our team. This is a hybrid opportunity based out... 
    Suggested
    Work at office
    Local area

    RXinsider LTD.

    Kentucky
    7 hours ago
  •  ...a high bar for itself — keep reading. About the Role Socure is seeking an experienced, executive-level Deputy Chief Information Security Officer (Deputy CISO) to report directly to the CISO. In this role, you will lead company-wide security, data governance, compliance... 

    Socure

    Kentucky
    3 days ago
  •  ...Asst VP, Chief Information Security Officer Organization: Scripps Health Location: Description: About the job Scripps Health Administrative Services supports our five hospital campuses, 31 outpatient centers, clinics, emergency rooms, urgent care sites... 
    Full time

    Jobleads-US

    Kentucky
    3 days ago
  • $245k - $325k

     ...LinkedIn. Summary of Position: Scholar Rock is seeking a Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling enterprise cybersecurity capabilities that protect the organization’s people,... 
    Contract work
    For contractors

    Scholar Rock, Inc.

    Kentucky
    7 hours ago
  •  ...DLA Piper seeks a Chief Information Security Officer to lead a mature, business‑aligned cyber risk program and protect client data, people, and operations across global offices. You will set strategy, govern risk, and oversee policy and controls for a complex, client‑... 

    Jobleads-US

    Kentucky
    22 hours ago
  •  ...Asst VP, Chief Information Security Officer at Scripps Health will lead cybersecurity strategy for a top integrated health system, safeguarding critical systems, data, and digital assets while enabling innovation and patient care. You'll lead a high-performing information... 

    Jobleads-US

    Kentucky
    3 days ago
  • $148.5k - $223.9k

     ...Location: New York, NY The Experience As a Manager, Office of the CISO, you serve as a trusted security, compliance, privacy, and risk advisor to...  ...Public Sector. You've worked within a Business Information Security Office, Office of the CISO, Customer Trust... 
    Work at office

    Salesforce, Inc.

    Kentucky
    1 day ago
  •  ...SpecPro Sustainment and Environmental, LLC seeks a Chief Information Security Officer (CISO) to lead IT infrastructure design for a high‑profile MILCON project at Wright‑Patterson AFB, OH. The role supports NSIC and collaborates with WPAFB, NASIC, and IC partners.... 
    For contractors

    Jobleads-US

    Kentucky
    4 days ago
  •  ...Baseten is seeking a Head of IT to build, scale, and secure our internal technology function as we grow. You will lead 5+ IT engineers, own corporate IT infrastructure, identity management, device lifecycles, and vendor procurement, delivering a world-class tech experience... 

    Jobleads-US

    Kentucky
    5 days ago
  • $160k - $194k

     ...Resources at (***) ***-**** or by sending an email to ****@*****.*** Requisition ID:110602By submitting your information and application, you confirm that you have read and agree to the country or regional recruitment notice linked below applicable... 
    Full time
    Remote work
    Worldwide

    Gartner

    Kentucky
    7 hours ago
  • $275k - $350k

     ...Looking For: AmeriSave is seeking a Chief Technology Officer to lead our Enterprise Technology &...  ...software engineering, infrastructure, and security function responsible for our...  ...required to sustain that bar at scale. Information Security: Own the organization's... 
    Local area
    Remote work

    AmeriSave Mortgage Corporation

    Kentucky
    1 day ago
  •  ...of fraud. helps organizations build secure, high-quality software, minimizing...  ...development life cycle. Regional Field Chief Technology Officer Black Duck® meets the board-level...  ...improve business outcomes. Provide field-informed guidance on emerging AI-assisted... 

    Talanto

    Kentucky
    1 day ago
  •  ...Network Security Administrator Clearance: U.S. Citizen with Secret clearance (minimum) Location: Bluegrass Station, Lexington, KY (primary); travel to Ft Walton Beach, FL and Crestview, FL may be required Position Summary: The Network Security Administrator... 
    Full time

    NETSEA Technologies

    Lexington, KY
    more than 2 months ago
  • $100 per hour

     ...Reddit, surveys, and customer support informing product roadmaps and everything we do...  ...from you. We're looking for a Chief Technology Officer to own the technology vision and engineering...  ...cloud infrastructure, DevOps, security, observability, and production reliability... 
    Worldwide
    Flexible hours

    US Mobile

    Kentucky
    2 days ago
  •  ...innovative and strategic technology leader to serve as its next Chief Information Officer (CIO). Reporting to the Assistant City Manager, the CIO...  ...governance while partnering with departments to deliver secure, reliable, and innovative technology solutions that enhance... 
    Full time
    Contract work
    Part time
    Seasonal work
    Work at office
    Local area

    Koitecc Solutions

    Kentucky
    4 days ago
  •  ...atmosphere that encourages innovation and teamwork Job Summary MBC Holdings, Inc (MBC) is seeking an accomplished Fractional Chief Information Officer to partner directly with executive leadership in modernizing the company’s technology strategy and IT organization. This... 
    Temporary work
    Local area

    Miller Bros. Const., Inc.

    Kentucky
    7 hours ago
  •  ...that’s all in? At Imprivata, we deliver unified access and security management programs that eliminate friction, empowering...  ...can make an impact—you’ll find it here. We are seeking a Chief Information Officer to join our team. This is a hybrid opportunity based in our... 
    Contract work
    Work at office
    Local area

    Imprivata

    Kentucky
    7 hours ago
  • $255k - $295k

    Chief Information OfficerSkip to main content**Applicant Privacy Policy:** As a candidate for this...  ...@csiperseus.com.#Chief Information Officer page is loaded## Chief Information OfficerApplylocations...  ...Blue’s growth through scalable, secure, and efficient technology capabilities... 
    Full time
    Temporary work
    Remote work

    EWS Group

    Kentucky
    3 days ago
  •  ...an accommodation or an alternative application process. Chief Information Officer 26-052 Papillion, NE, US Cobalt Credit Union 7148...  ...the process owner of all activities related to information security, ensuring the availability, integrity, and confidentiality... 

    Cobalt Credit Union

    Kentucky
    2 days ago
  •  ...Origin Bank is seeking a Chief Information Security Officer to lead enterprise information security, cybersecurity, and data protection initiatives. This senior role partners with risk, legal, and technology teams to align security with business goals and regulatory expectations... 

    Jobleads-US

    Kentucky
    3 days ago
  •  ...Socure seeks an executive Deputy Chief Information Security Officer to lead company-wide security, data governance, compliance, and risk programs across our fast-scaling organization. You will drive AI and data security initiatives, engage with the Board of Directors,... 

    Jobleads-US

    Kentucky
    3 days ago
  •  ...Salesforce, Inc. seeks a Manager, Office of the CISO to advise on security, privacy, and risk for strategic customers. You will partner with Sales, Legal, Product, Engineering, and Security to resolve complex questions and enable adoption of secure cloud solutions.... 
    Work at office

    Jobleads-US

    Kentucky
    2 days ago
  •  ...QualityAI in the United States is seeking a Chief Information Security Officer (CISO) to lead the enterprise security program, protect data, systems, and infrastructure, and align security with business objectives. The CISO will own IT security, security operations, and... 

    Jobleads-US

    Kentucky
    22 hours ago
  • $97.61k - $188.38k

     ...with resilience, grow with confidence, and proactively manage to secure success.Recruiting for this role ends on 10/31/2026Work you’ll...  ...configure, and deploy Saviynt.Understand complex business and information technology management processes. Execute advanced services and... 
    Local area
    Visa sponsorship

    Deloitte

    Louisville, KY
    5 days ago
  •  ...SpecPro Sustainment and Environmental, LLC is seeking a Chief Information Security Officer to support the NSIC MILCON program at Wright-Patterson AFB, Ohio, providing senior IT expertise for design, construction, integration, and commissioning of a secure facility.... 
    For contractors

    Jobleads-US

    Kentucky
    3 days ago
  •  ...Imprivata is seeking a strategic Chief Information Security Officer to lead the global information security program. The CISO will partner with executive, product, engineering, IT, legal, and compliance teams to integrate security into all business areas. The role... 

    Jobleads-US

    Kentucky
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Chief Information Security Officer. Be the first to apply!