Associate General Counsel, Cyber & Privacy Legal
$170,000–$200,000 year
On-siteNew York, United States
Job Summary
Conduct sophisticated counsel on U.S. and global cybersecurity regulations for financial institutions, serving as the primary legal contact for regulatory exams and reporting obligations. Lead legal strategy for complex, multi-jurisdictional cybersecurity incidents, coordinating with regulators, forensic firms, and law enforcement while developing enterprise incident response protocols. Draft, negotiate, and advise on vendor and client-facing cybersecurity agreements, partnering with procurement, security, and technology stakeholders to align contractual controls with risk expectations. Advise the CISO and operational risk teams on cyber risk strategy, proactively monitoring regulatory developments to guide compliance enhancements. Requires a J.D. and 10+ years of experience in incident response and cyber-risk management for highly regulated organizations. Base salary $170,000-$200,000 with bonus eligibility; primarily in-office role at AIG.
Required Qualifications
- J.D. from an accredited U.S. law school
- active license to practice law
- 10+ years of legal experience
- significant experience supporting incident response
- advising on cyber‐risk management for a complex, highly regulated organization
- Deep knowledge of cybersecurity laws, regulations, and regulatory expectations applicable to financial services
- Extensive experience drafting and negotiating technology and cybersecurity‐related contracts
- Exceptional communication skills
- problem‐solving skills
- crisis‐management skills
- ability to advise senior leaders under pressure
- Highly collaborative approach
- adaptive approach
- business‐focused approach
Desired Qualifications
- CIPP‐US certification
- CISSP certification
- other cybersecurity/privacy certification
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.