Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Corporate Counsel Cybersecurity
Falls Church, VA · On-site
$233K - $335K/yr
Advising on issues related to cybersecurity law including privacy and information security * Monitoring developments in policy, legal and regulatory requirements in cybersecurity, engaging with ...
Corporate Counsel Cybersecurity
Falls Church, VA · On-site
$233K - $335K/yr
Advising on issues related to cybersecurity law including privacy and information security * Monitoring developments in policy, legal and regulatory requirements in cybersecurity, engaging with ...
Corporate Counsel Cybersecurity
$233K - $335K/yr
Advising on issues related to cybersecurity law including privacy and information security * Monitoring developments in policy, legal and regulatory requirements in cybersecurity, engaging with ...
Corporate Counsel Cybersecurity
$233K - $335K/yr
Advising on issues related to cybersecurity law including privacy and information security * Monitoring developments in policy, legal and regulatory requirements in cybersecurity, engaging with ...
Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a ...
Cybersecurity & Privacy Analyst
Nashville, TN · On-site
$80K - $95K/yr
Monitor and summarize developments in cybersecurity law, enforcement actions, and industry trends * Assist with drafting client alerts, blog posts, and marketing materials * Support practice group ...
Cybersecurity & Privacy Analyst
Nashville, TN · On-site
$80K - $95K/yr
Monitor and summarize developments in cybersecurity law, enforcement actions, and industry trends * Assist with drafting client alerts, blog posts, and marketing materials * Support practice group ...
Support the company's privacy and cybersecurity governance framework. MAJOR DUTIES AND ... Engage law enforcement and information sharing organizations * Monitor the evolving privacy ...
Support the company's privacy and cybersecurity governance framework. MAJOR DUTIES AND ... Engage law enforcement and information sharing organizations * Monitor the evolving privacy ...
Privacy & Digital Risk Litigation Associate Attorney (Cybersecurity, Privacy & Investigations)
Philadelphia, PA · Hybrid
Defend privacy and cybersecurity class actions * Handle commercial, employment, and regulatory ... Law review, judicial clerkship, or similar advanced writing experience preferred * Significant ...
Quick apply
Privacy & Digital Risk Litigation Associate Attorney (Cybersecurity, Privacy & Investigations)
Philadelphia, PA · Hybrid
Defend privacy and cybersecurity class actions * Handle commercial, employment, and regulatory ... Law review, judicial clerkship, or similar advanced writing experience preferred * Significant ...
S. privacy law, data/cyber security law, and data transfer law, including substantial responsibility advising business stakeholders. * Demonstrated experience leading cross-functional privacy and/or ...
S. privacy law, data/cyber security law, and data transfer law, including substantial responsibility advising business stakeholders. * Demonstrated experience leading cross-functional privacy and/or ...
Data Privacy & Cybersecurity Associate (3rd4th Year) - S.F.
San Francisco, CA · Hybrid
$260K - $310K/yr
Job Title: Data Privacy & Cybersecurity Associate (3rd-4th Year) Location: San Francisco, CA ... an Am Law Global 100 firm seeking a 3rd to 4th year associate to join its Data Privacy ...
Quick apply
Data Privacy & Cybersecurity Associate (3rd4th Year) - S.F.
San Francisco, CA · Hybrid
$260K - $310K/yr
Job Title: Data Privacy & Cybersecurity Associate (3rd-4th Year) Location: San Francisco, CA ... an Am Law Global 100 firm seeking a 3rd to 4th year associate to join its Data Privacy ...
Privacy & Digital Risk Litigation Associate Attorney (Cybersecurity, Privacy & Investigations)
Wilmington, DE · Hybrid
Defend privacy and cybersecurity class actions * Handle commercial, employment, and regulatory ... Law review, judicial clerkship, or similar advanced writing experience preferred * Significant ...
Quick apply
Privacy & Digital Risk Litigation Associate Attorney (Cybersecurity, Privacy & Investigations)
Wilmington, DE · Hybrid
Defend privacy and cybersecurity class actions * Handle commercial, employment, and regulatory ... Law review, judicial clerkship, or similar advanced writing experience preferred * Significant ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
S. privacy law, data/cyber security law, and data transfer law, including substantial responsibility advising business stakeholders. * Demonstrated experience leading cross-functional privacy and/or ...
S. privacy law, data/cyber security law, and data transfer law, including substantial responsibility advising business stakeholders. * Demonstrated experience leading cross-functional privacy and/or ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
$235K - $285K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
Beachwood, OH · On-site
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Quick apply
Healthcare Privacy & Compliance Associate Attorney (Healthcare, Privacy & Cybersecurity)
Beachwood, OH · On-site
$215K - $225K/yr
Other privacy and cybersecurity events * Assist clients in responding to state and federal ... AmLaw 200 law firm experience preferred * Experience at a boutique healthcare or privacy-focused ...
Senior Counsel, Cybersecurity
Beachwood, OH · On-site
$134K - $182K/yr
S. sectoral rules, EU NIS2/GDPR, China's Cybersecurity Law), coordinating with regional counsel and external advisors to interpret obligations and translate them into operational controls. • Lead ...
Senior Counsel, Cybersecurity
Beachwood, OH · On-site
$134K - $182K/yr
S. sectoral rules, EU NIS2/GDPR, China's Cybersecurity Law), coordinating with regional counsel and external advisors to interpret obligations and translate them into operational controls. • Lead ...
Cybersecurity Law information
See salary details
$45K - $54.1K
7% of jobs
$54.1K - $63.2K
4% of jobs
$63.2K - $72.3K
10% of jobs
$79.1K is the 25th percentile. Wages below this are outliers.
$72.3K - $81.4K
4% of jobs
The median wage is $87.7K / yr.
$81.4K - $90.5K
34% of jobs
$90.5K - $99.5K
9% of jobs
$108.6K is the 75th percentile. Wages above this are outliers.
$99.5K - $108.6K
5% of jobs
$108.6K - $117.7K
9% of jobs
$117.7K - $126.8K
6% of jobs
$126.8K - $135.9K
6% of jobs
$135.9K - $145K
3% of jobs
$45K
$93.2K
$145K
How much do cybersecurity law jobs pay per year?
Can I be a lawyer with a cybersecurity degree?
What is the difference between Cybersecurity Law vs Cybersecurity Analyst?
| Aspect | Cybersecurity Law | Cybersecurity Analyst |
|---|---|---|
| Required Credentials | Legal degrees, certifications in cybersecurity law (e.g., CIPP, CISSP) | IT/security certifications (e.g., CompTIA Security+, CISSP) |
| Work Environment | Legal firms, corporate legal departments, government agencies | IT departments, security operations centers, tech companies |
| Employer & Industry Usage | Legal and regulatory sectors, compliance firms | Technology, finance, healthcare sectors |
| Search & Comparison Intent | Understanding legal aspects of cybersecurity | Technical security measures and threat mitigation |
Cybersecurity Law focuses on legal frameworks, compliance, and policies related to cybersecurity, often requiring legal expertise and certifications. In contrast, Cybersecurity Analysts implement technical security measures, monitor threats, and protect systems. Both roles are essential but serve different functions within the cybersecurity ecosystem.
What are some common challenges faced by professionals working in Cybersecurity Law?
What are the career options in cyber law?
Is cybersecurity law a good career?
What is cybersecurity law?
Can you make $500,000 a year in cyber security?
What are the key skills and qualifications needed to thrive as a Cybersecurity Lawyer, and why are they important?

Other
Posted 19 days ago
Anduril rating
9.4
Based on 7 frontline employees who took The Breakroom Quiz
Job description
We are looking for an Associate General Counsel - Cybersecurity to join our rapidly growing Legal Team in Washington, DC or Costa Mesa, CA to serve as Anduril's primary legal expert on cybersecurity law and compliance.
This role will provide strategic legal counsel on all aspects of cybersecurity affecting Anduril's operations-from advising on government contract cybersecurity requirements (CMMC, NIST 800-171, DFARS 7012) to managing data breach response, supporting cybersecurity compliance frameworks, and negotiating security terms in commercial and government contracts.
You will partner closely with Anduril's Chief Information Security Officer (CISO), IT Security, Engineering, Compliance, and Business Development teams to translate complex cybersecurity regulations into practical, scalable solutions that enable our mission while protecting our systems, data, and customers. This is not a traditional compliance role-you'll be building and owning Anduril's cybersecurity legal program from the ground up in a fast-paced, high-growth defense technology company.
Anduril is a fast-growing company at the early stages of growth. Consistent with this fast growth, members of Anduril's Legal Team must be resourceful, creative, and eager to take ownership of complex matters. Our team is passionate about the law and policy of defense technology and you should have an independent interest in cybersecurity issues facing dual-use technology companies. Anduril fosters a diverse, collaborative culture with tremendous opportunities for ownership and professional growth.
Strategic Cybersecurity Counseling
- Serve as Anduril's primary legal expert on cybersecurity law, providing strategic advice to executive leadership, the CISO, and business units on complex cybersecurity legal and regulatory issues
- Advise on cybersecurity requirements in government contracts including FAR/DFARS cybersecurity clauses (DFARS 7012, 7019, 7020), CMMC compliance pathways, NIST 800-171 obligations, contractor classified infrastructure regulations (NISPOM, DAAG) and agency-specific security requirements (DoD, DHS, DoE)
- Counsel on cybersecurity aspects of OTAs, prototype agreements, production contracts, and other non-traditional contract vehicles
- Review, negotiate, and draft cybersecurity terms in government contracts, commercial agreements, teaming arrangements, and vendor/supplier contracts
- Provide thought leadership on emerging cybersecurity regulations affecting defense contractors and autonomous systems operators
Compliance Program Development & Management
- Design, implement, and continuously improve Anduril's cybersecurity compliance program, policies, and internal controls in partnership with the CISO and Security team
- Develop and maintain cybersecurity policies, procedures, playbooks, and templates aligned with contractual obligations and regulatory requirements
- Support CMMC assessments and certifications, working with C3PAOs and ensuring legal alignment with assessment requirements
- Advise on system security plans (SSPs), plans of action and milestones (POA&Ms), and other security documentation
- Monitor and assess emerging cybersecurity laws, regulations, executive orders, and agency guidance (e.g., CISA directives, OMB memoranda, DoD cybersecurity initiatives) and advise on business impact
- Support internal and external audits, assessments, and regulatory inquiries related to cybersecurity compliance
Incident Response & Crisis Management
- Lead legal aspects of cybersecurity incident response, including assessment of notification and reporting obligations under federal regulations (e.g., DFARS 252.204-7012, Cyber Incident Reporting for Critical Infrastructure Act) and state breach notification laws
- Advise on incident containment strategies, forensic investigations, and post-incident remediation from a legal perspective
- Coordinate with outside counsel, forensic vendors, and cyber insurance carriers during security incidents
- Manage privilege considerations during investigations and ensure appropriate documentation and communications
- Prepare executives and board members for incident-related communications and disclosures
Cross-Functional Collaboration
- Partner with IT Security, Engineering, and Product teams on cybersecurity requirements for product development, cloud architecture, data handling, and system access controls
- Work with Contracts team to ensure cybersecurity terms flow down appropriately to subcontractors and suppliers
- Collaborate with Compliance team on cybersecurity training programs for employees, contractors, and third parties
- Support Business Development in addressing customer cybersecurity requirements during capture and proposal phases
- Advise on cybersecurity due diligence for mergers, acquisitions, partnerships, and other strategic transactions
- Engage with industry coalitions, government agencies, and standards bodies on cybersecurity policy and best practices
Cybersecurity Risk Management
- Assess and advise on cybersecurity risks in business operations, third-party relationships, and new initiatives
- Review and negotiate cybersecurity insurance policies and advise on coverage issues
- Develop risk-based approaches to cybersecurity compliance that balance regulatory requirements with business objectives
- Support executive decision-making on cybersecurity investments and risk acceptance
- J.D. from an accredited law school and admission to practice in at least one U.S. jurisdiction (DC or CA Bar strongly preferred)
- 8-12 years of legal experience with substantial focus on cybersecurity law, either at a law firm, government agency, or in-house at a technology or defense company
- Deep knowledge of cybersecurity laws and regulations applicable to government contractors, including FAR/DFARS cybersecurity requirements, CMMC framework, NIST standards (particularly NIST 800-171), and federal breach notification/reporting obligations
- Proven experience advising clients on cybersecurity compliance programs, incident response, and security-related investigations
- Experience negotiating cybersecurity terms in government contracts and commercial agreements, including security controls, audit rights, liability allocation, and indemnification provisions
- Strong understanding of information security concepts, including network security, encryption, access controls, threat intelligence, and security frameworks (NIST CSF, ISO 27001)
- Excellent analytical, problem-solving, and risk assessment skills with ability to translate technical security concepts into clear legal advice
- Exceptional written and verbal communication skills with ability to explain complex cybersecurity legal issues to technical and non-technical audiences, including executives
- Demonstrated ability to work independently and manage multiple complex matters simultaneously in a fast-paced environment
- Strong judgment and business acumen with track record of providing practical, solution-oriented advice
- Must be a U.S. Person due to required access to U.S. export controlled information or facilities
- This position requires occasional travel to Anduril facilities (Costa Mesa, Washington DC, Atlanta, and emerging manufacturing sites), customer locations, and industry conferences. Employee should expect up to 20% travel.
- Combination of law firm and in-house experience, particularly in-house experience as primary cybersecurity legal owner at a defense contractor, technology company, or critical infrastructure operator
- Experience with government cybersecurity audits, assessments, and investigations (e.g., DCMA DIBCAC reviews, CMMC assessments, agency inspector general investigations)
- Deep familiarity with DoD cybersecurity ecosystem including Defense Industrial Base (DIB) programs, Defense Counterintelligence and Security Agency (DCSA) requirements, and DoD Chief Information Officer (CIO) guidance
- Experience with cybersecurity aspects of cloud computing, software-as-a-service, and AI/ML systems
- Background in incident response including experience managing data breaches, ransomware events, or supply chain compromises
- Understanding of threat intelligence, vulnerability management, and security operations center (SOC) functions
- Cybersecurity or information security certifications (e.g., CISSP, CIPP, CISM) or willingness to obtain
- Experience engaging with regulators, including CISA, FBI, DoD Cyber Crime Center, or state attorneys general on cybersecurity matters
- Experience with cybersecurity aspects of international operations and data transfers
- Pre-law school technical background or experience working with engineers and security practitioners
- Strong interest in defense technology and autonomous systems security
- Currently possesses and is able to maintain an active U.S. Secret security clearance
- Bilingual candidates would be a benefit
About Anduril Industries
Sourced by ZipRecruiter
Anduril Industries is a trailblazer in the technology industry based in Costa Mesa, CA, US. Founded in 2017 by Palmer Luckey, the creator of Oculus VR, the company focuses on developing innovative technology to equip and empower those in the defense sector. Its primary products include cutting-edge autonomous systems and AI software that assist in combating threats to national and global security. The mission of Anduril Industries is to integrate technology and defense by building transformative, scalable solutions that ensure a safer world.
Industry
Guided missile and space vehicle manufacturing
Company size
501 - 1,000 Employees
Headquarters location
Costa Mesa, CA, US
Year founded
2017