Data Privacy & Cybersecurity Associate (3-5 years)
Firm Description:
Our client is a top-ranked global law firm with more than 2,850 attorneys across 49 offices in the U.S., Europe, Latin America, Asia, and the Middle East. Known for its broad industry reach and innovative legal solutions, the firm advises clients in areas such as corporate law, litigation, real estate, intellectual property, and regulatory compliance. It is consistently recognized for its collaborative culture, commitment to diversity, and leadership in pro bono and philanthropic initiatives.
Position Description:
Our client is seeking a mid-level associate to join its dynamic Data Privacy & Cybersecurity practice. This is a rare opportunity to work alongside a tight-knit team of five regulatory counselors advising some of the world’s leading tech companies as they build new products in real time. The role is open due to a recent in-house departure, and the team is eager to welcome a new attorney who can contribute meaningfully from day one. The ideal candidate will be a problem solver with strong legal writing skills and experience advising businesses on U.S. and global data protection frameworks, privacy compliance, and regulatory issues. Prior experience in a major law firm is preferred.
Responsibilities
- Advise clients on compliance with CCPA, other state privacy laws, FTC Act, GDPR, and global privacy regulations
- Provide guidance on HIPAA, FCRA, GLBA, COPPA, TCPA, CAN-SPAM, and related laws
- Draft and revise privacy notices, terms of service, incident response plans, and security policies
- Negotiate vendor/service provider agreements, data processing agreements, and cross-border transfer agreements
- Respond to regulatory inquiries and investigations related to privacy compliance and data breaches
- Assist with privacy and security due diligence in corporate transactions
- Drive data breach preparation, risk mitigation, and response efforts
- Advise on AI governance programs and compliance with emerging AI laws and regulations
Required Qualifications
- Previous law firm experience required; Am Law 200, leading regional, or major boutique firm experience preferred
- 3+ years of experience focused on data protection and privacy matters
- Strong knowledge of U.S. and global privacy frameworks, including CCPA and GDPR
- Working knowledge of HIPAA, FCRA, GLBA, COPPA, TCPA, CAN-SPAM
- Excellent academic credentials and superior writing and analytical skills
- Admission to the California State Bar
Preferred Qualifications
- IAPP CIPP certification (U.S. and EU)
- Experience with sector-specific privacy issues (financial services, children’s privacy, telecom, biometrics, genetics, or digital advertising)
- Familiarity with AI governance programs and related regulations
Meet Your Recruiter
Joseph P. Mayer III
Founder & CEO