Mayer Brown is an international law firm positioned to represent the world’s major corporations, funds, and financial institutions in their most important and complex transactions and disputes. We are recognized by our clients as strategic partners with deep commercial instincts and a commitment to creatively anticipating their needs and delivering excellence in everything we do.
We are a collegial, collaborative firm where highly motivated individuals with an unwavering commitment to excellence receive the opportunity, support, and development they need to grow, thrive, and realize their greatest potential all while supporting the Firm’s client service principles of excellence, strategic partnership, commercial instinct, integrated strengths, innovation, and collaboration across our international firm.
If you thrive in a collaborative environment that values exceptional client service, initiative, professionalism, responsiveness, and adaptability, we invite you to consider joining our Information Technology department in our Chicago office as a Manager: AI Security and Risk.
The Manager: AI Security and Risk will be responsible for operationalizing Mayer Brown’s enterprise AI governance framework. Reporting to the Chief Information Security Officer, this role ensures that AI systems are assessed, approved, tracked, and monitored in line with internal policies, regulatory expectations, and client requirements.
The role directly supports the firm enabling scalable, day-to-day governance of our responsible AI use globally.
ResponsibilitiesEssential Functions:
- Operationalize and continuously improve the enterprise AI governance framework, translating AI policies and regulatory requirements into practical, repeatable governance processes
- Coordinate AI security and risk related governance activities across Information Technology, Information Security, Innovation, Legal Risk Management (including Data Privacy) and all other interested teams to ensure consistent application
- Manage the end‑to‑end AI Risk Assessment and AI Impact Assessment (AIIA) and AI Risk Assessments process for new and materially changed AI use cases, including facilitation, cross‑functional review, approval, and maintenance of the central AIIA/AI Risk Assessment repository
- Review use cases and triage, where appropriate, in accordance with Firm policies and applicable laws
- Client audits and related requirements in relation to AI requirements
- Ensure AI assessments address privacy, fairness/bias, explainability, security, and regulatory considerations
- Support maintenance of the AI register, monitor emerging AI regulations, and assist with updates to AI policies, standards, and templates and liaise with the Privacy Team
- Support AI‑specific third‑party due diligence, including coordination with Information Security, Procurement and Legal Risk Management and tracking of vendor AI systems
- Support the AI Governance Committee by preparing submissions and risk materials, and tracking decisions, conditions, and remediation actions
- Perform other duties as assigned or required to meet Firm goals and objectives
Qualifications, Experience and Personal Attributes
Education/Training/Certifications:
- Bachelor’s degree in Information Technology or Computer Science
Professional Experience:
- 5+ years’ experience in Information Security; IT engineer and AI experience required
- Close familiarity with laws and frameworks such as GDPR, EU AI Act, ISO 42001, ISO27001, NIST AI RMF and emerging AI regulations
- Strong understanding of risk-based governance and regulatory compliance concepts
- Experience working in complex, regulated, global organizations
- Ability to translate policy and regulatory requirements into operational processes
- Experience with AI, analytics, or automated decision-making governance preferred
- Exposure to third-party risk management or vendor due diligence preferred
Technical Skills:
- Proficiency in Microsoft Office products
- Security tools, MS Co Pilot, Open AI, Claude, Harvey from a legal industry is a plus
Performance Traits:
- Clear and confident written and verbal communication, able to communicate effectively and in a professional manner with all levels of the Firm and outside vendors
- Strong analytical, organizational, and documentation skills
- Comfortable working independently and managing multiple governance processes
- Pragmatic, risk-aware, and able to engage credibly with senior stakeholders
- Ability to work in a diverse team environment and effectively support the demanding needs of the Firm
- Ability to work under pressure, meet deadlines with shifting priorities
- Must be a self-starter with a high level of initiative
- Strong customer service skills, able to anticipate needs and exercise independent judgment
- Strong attention to detail, organizational skills and the ability to handle multiple projects
- Maintains confidentiality and exercises discretion
- Exercises solid strategic thinking and problem-solving skills
Physical Requirements:
- May require occasional lifting of up to 20 lbs.
- May require travel to other offices including international travel as needed
The above is a general description of the essential duties associated with this position and does not represent an exhaustive or comprehensive list of all duties.
The Firm may modify and amend this job description at any time at its sole discretion. Nothing herein creates a contract of employment or otherwise modifies the at-will nature of employment.
We offer competitive compensation and comprehensive benefits, including medical/dental/vision/life/and AD&D insurance, 401(k) savings plan, back-up childcare and eldercare, generous paid time off (PTO), as well as opportunities for professional development and growth.
We are committed to providing equal opportunity and reasonable accommodations to applicants and employees with disabilities and disabled veterans. To request an accommodation related to the application process or interview, please email [email protected]. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.
Mayer Brown works with select external search firms that have been vetted against our standards. Firms without a contract or agreement with Mayer Brown are not authorized to represent that they are working with the Firm, nor are they entitled to placement fees. Mayer Brown does not accept unsolicited CVs from external recruiters. Submission of an unsolicited CV to Mayer Brown or any of its Partners or employees will not establish any right of priority for the submitting agency.
#LI-HYBRID #LI-PT1
Posted Pay RangeThe typical pay scale for this position is between USD $145,000.00/Yr. and USD $192,000.00/Yr., although the actual wage or salary could be lower or higher if the candidate's education, experience, skills and internal pay alignment are different from those specified.Skills Required
- Bachelor’s degree in Information Technology or Computer Science
- 5+ years of experience in Information Security
- IT engineering and AI experience
- Familiarity with GDPR, EU AI Act, ISO 42001, ISO 27001, NIST AI RMF, and emerging AI regulations
- Understanding of risk-based governance and regulatory compliance concepts
- Experience working in complex, regulated, global organizations
- Ability to translate policy and regulatory requirements into operational processes
- Experience with AI, analytics, or automated decision-making governance
- Exposure to third-party risk management or vendor due diligence
- Proficiency in Microsoft Office products
- Experience with security tools, Microsoft Copilot, OpenAI, Claude, or Harvey in the legal industry
- Strong written and verbal communication skills
- Strong analytical, organizational, documentation, and problem-solving skills
- Ability to manage multiple governance processes, shifting priorities, and deadlines
- Ability to maintain confidentiality and exercise discretion
What We Do
Mayer Brown is a leading international law firm, positioned to represent the world’s major corporations, funds and financial institutions in their most important and complex transactions and disputes. Impressum: https://www.mayerbrown.com/Legal-Notices/Legal-Regulatory-Information/ Follow us on X: @Mayer_Brown Subscribe to our YouTube: https://www.youtube.com/user/MayerBrownLLP



.jpg)


