1

Cybersecurity Counsel Jobs (NOW HIRING)

Cybersecurity Counsel

Mountain View, CA · On-site

$130K - $177K/yr

In this hybrid role, you will report to a Managing Counsel. You will: * Develop risk-based approaches to cybersecurity compliance that balance legal risk mitigation and regulatory requirements with ...

$90K - $130K/yr

The Role As our Associate Counsel, Privacy & Cybersecurity, you'll be the go-to legal resource for day-to-day privacy, data protection, and cybersecurity questions across the company. You'll work ...

next page

Showing results 1-20

Cybersecurity Counsel information

See salary details

$38.5K

$58.2K

$87K

How much do cybersecurity counsel jobs pay per year?

As of Sep 10, 2026, the average yearly pay for cybersecurity counsel in the United States is $58,171.00, according to ZipRecruiter salary data. Most workers in this role earn between $48,000.00 and $64,500.00 per year, depending on experience, location, and employer.

What does a Cybersecurity Counsel do?

A Cybersecurity Counsel is a legal professional who specializes in advising organizations on laws, regulations, and best practices related to cybersecurity and data privacy. Their responsibilities include helping companies comply with cybersecurity regulations, responding to data breaches, drafting policies, and representing organizations during investigations or litigation. They work closely with IT and executive teams to manage risks and ensure that security measures meet legal requirements.

How does a Cybersecurity Counsel typically collaborate with IT and legal teams to manage data breach incidents?

A Cybersecurity Counsel works closely with both IT and legal teams during a data breach by providing legal guidance on regulatory requirements, helping assess notification obligations, and ensuring proper documentation of the incident. They facilitate communication between technical experts and executives, translating technical findings into actionable legal strategies. This role often involves leading incident response tabletop exercises, advising on risk mitigation, and preparing legal communications with regulators or affected parties.

What are the key skills and qualifications needed to thrive as a Cybersecurity Counsel, and why are they important?

To thrive as a Cybersecurity Counsel, you need a strong foundation in law (often a JD degree and bar admission) combined with expertise in cybersecurity regulations, data privacy, and risk management. Familiarity with legal research databases, incident response tools, and compliance frameworks like GDPR, CCPA, and NIST is commonly required. Excellent analytical thinking, clear communication, and the ability to collaborate with technical and executive teams are crucial soft skills. These qualifications are vital for protecting organizations from legal and regulatory risks related to data breaches and evolving cyber threats.

What is the difference between Cybersecurity Counsel vs Cybersecurity Analyst?

AspectCybersecurity CounselCybersecurity Analyst
Required CredentialsJuris Doctor (JD), cybersecurity certifications (CISSP, CISA)Degree in cybersecurity, computer science, or related field; certifications (CISSP, CEH)
Work EnvironmentLegal departments, corporate offices, law firmsIT departments, security operations centers, tech companies
Employer & Industry UsageLegal and corporate sectors, compliance-focused rolesTechnology, finance, government, security-focused roles
Common Search & Comparison IntentUnderstanding legal responsibilities and complianceMonitoring security threats and implementing defenses

Cybersecurity Counsel primarily focuses on legal compliance, contracts, and risk management related to cybersecurity, often requiring legal credentials. In contrast, Cybersecurity Analysts concentrate on technical security measures, threat detection, and incident response. Both roles are vital in protecting organizations but serve different functions within the cybersecurity landscape.

What are popular job titles related to Cybersecurity Counsel jobs?

For Cybersecurity Counsel jobs, the most frequently searched job titles are:

Infographic showing various Cybersecurity Counsel job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 89% Full Time, 9% Part Time, and 1% Contract. Highlights an 84% Physical, 7% Hybrid, and 9% Remote job distribution, with an average salary of $58,171 per year, or $28 per hour.

Cybersecurity Counsel

Mountain View, CA • On-site

Waymo
Internet and IT • 1 - 5K employees

$130K - $177K/yr

Full-time

Re-posted 26 days ago


Job description

As part of Waymo's Legal team, you will work on the exciting legal issues surrounding our transformational autonomous driving technology and help drive our business lines forward from technology ideation through scaled commercial deployment. We partner with our public policy, safety, security and privacy experts to define transportation policy for the autonomous driving world to come, advising on regulatory changes that support and protect our users around the world. We collaborate with our engineering, product, strategy and operations teams to develop and protect our intellectual property portfolio and drive our corporate and commercial transactions. We ensure compliance with an increasingly complex and dynamic range of global regulations. And we anticipate, mitigate, and litigate high-profile and precedent-setting legal matters.

In this hybrid role, you will report to a Managing Counsel.

You will:

  • Develop risk-based approaches to cybersecurity compliance that balance legal risk mitigation and regulatory requirements with business objectives.

  • Partner effectively with Security, Engineering, Safety, and Product teams on vulnerability management, threat analyses, and cybersecurity risk assessments.

  • Spearhead the evolution of Waymo's cybersecurity incident response and reporting program in connection with the domestic and international expansion of its autonomous vehicle operations.

  • Drive efforts to manage cybersecurity risk effectively within the company's supplier and partner ecosystem and promote supply chain security.
  • Support internal and external audits, assessments, and regulatory inquiries related to cybersecurity compliance.
  • Monitor emerging cybersecurity laws, regulations, executive orders, and agency guidance, and lead business-focused compliance efforts.

You have:

  • Law degree (LLB, LLM, or JD), plus at least 5 years of experience counseling on cybersecurity matters with a law firm, government agency, or in-house legal department.

  • Excellent written and oral communication skills with ability to explain complex legal and cybersecurity issues cogently to technical and non-technical audiences, including executives.

  • Experience advising clients on cybersecurity compliance and incident response programs (e.g., ransomware events, supply chain compromises, and insider threats), including incident containment, forensic investigations, and reporting programs for complying with federal, state, and international laws and regulations.

  • Experience with supply chain cybersecurity risk management, including advising on third-party security risk assessments, preparation of SBOMs and HBOMs, and supply chain cybersecurity.
  • Strong organizational skills and attention to detail; ability to manage a significant workload with competing deadlines in a fast-paced environment.
  • Proficiency and comfort navigating ambiguity and developing effective, business-oriented solutions to managing legal and cybersecurity risk; enthusiasm for winning together as a team and working collaboratively with legal and non-legal stakeholders.

We prefer:

  • Extensive knowledge of applicable standards for cybersecurity, including NIST CSF, ISO 27001, and/or ISO 28000.

  • Experience engaging with regulators, such as CISA, FBI, or state attorneys general, on cybersecurity matters.

  • Experience advising on security risk management in connection with AI/ML systems, operational technology, cyber physical systems, critical infrastructure, or autonomous systems.

  • Cybersecurity or information security certifications (e.g., CISSP, CISM).
  • Experience advising and participating in incident response teams in connection with cybersecurity attacks.
  • Technical background in cybersecurity or demonstrated experience working closely with security engineers and professionals.