Sr. Legal Counsel, Cybersecurity

DocuSign DocuSign · Enterprise · United States +1 · Legal

This role is for a Sr. Legal Counsel focusing on Cybersecurity at DocuSign. The responsibilities include providing legal advice on cybersecurity risks and compliance, supporting security audits, enhancing data governance, and assisting with incident response. The role also involves supporting global AI governance to ensure responsible innovation. While the role touches on AI governance, its core function is legal and cybersecurity, not AI/ML development.

What you'd actually do

  1. Provide expert legal advice to our teams as it relates to managing cybersecurity risks and compliance with global cybersecurity laws and regulations
  2. Provide legal guidance on regulatory, third-party, and internal security audits, and work with teams to scope and perform periodic security hygiene assessments, mitigation, and remediation
  3. Help enhance Docusign’s data governance posture, including data governance operations and documentation, employee training on data governance and security obligations, promoting a culture of awareness and compliance throughout the organization, policy enforcement, data compliance program monitoring and auditing, and third-party risk assessment
  4. Support building and improving incident detection and response processes
  5. Support global AI governance, helping the business teams continue innovating responsibly

Skills

Required

  • Juris Doctorate Degree
  • Active membership in at least one state bar
  • 8+ years of experience as a practicing attorney
  • substantial experience focused on cybersecurity and incident response
  • Experience in global privacy and cybersecurity laws and regulations (including, among others, U.S. state laws and international data protection frameworks, GLBA, SEC, and NYDFS cybersecurity requirements, and the EU's GDPR, DORA, and AI Act)

Nice to have

  • Strategic vision and ability to spot issues and communicate complex legal issues to a variety of legal and non-legal partners across the company
  • Experience negotiating, drafting, and updating documents and policies
  • Excellent attention to detail and organizational skills
  • Skilled at managing multiple priorities in a fast-paced environment
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with different teams and stakeholders
  • Ability to work with a sense of urgency while prioritizing competing interests
  • Ability to work independently, and as part of a team, with members across multiple offices in a fast-paced environment
  • A client-first mentality
  • Ability to maintain strong working relationships with a variety of internal clients

What the JD emphasized

  • cybersecurity
  • data protection
  • global privacy and cybersecurity laws and regulations
  • AI Act