Senior Security Engineer

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office
160K-185K Annually
Senior level
Legal Tech
The Role
Designs and maintains cybersecurity infrastructure across hybrid cloud environments, including Azure, AWS, Microsoft 365, identity, data protection, AI security, and incident response. Leads security architecture, access management, monitoring, vulnerability assessments, risk reviews, and incident investigations. Partners with IT, legal, compliance, and AI teams to implement secure cloud and AI solutions, document risks, and communicate recommendations to technical and non-technical stakeholders.
Summary Generated by Built In
Overview

Cleary Gottlieb is a pioneer in globalizing the legal profession. We have 14 offices in major financial centers around the world, but we operate as a single, integrated global partnership and not as a U.S. firm with a network of overseas locations. The firm employs approximately 1,100 lawyers from more than 50 countries.


Since 1946 our lawyers and staff have worked across practices, industries, jurisdictions, and continents to provide clients with simple, actionable approaches to their most complex legal and business challenges, whether domestic or international. We support every client relationship with intellectual agility, commercial acumen, and a human touch.


As a Senior Security Engineer at Cleary Gottlieb, you will play a crucial role in developing and maintaining the firm's cybersecurity infrastructure, as well as guide the safe implantation of cloud and AI systems. This role is an excellent opportunity to stay on the cutting edge by learning about and the latest trends in Agentic Security, Data Security Posture Management, and Cloud.

This role includes hands on design and administration of the Microsoft 365 Security stack (Defender for Endpoint, Identity, Cloud Apps, and O365) as well as Azure, Entra ID, Sentinel, Purview and much more. The Senior Security Engineer will be essential to our team’s success as they contribute across our hybrid environment and lead assigned technical projects. This individual will analyze, research, and make recommendations on Cleary's existing designs and strategies, as well as the business practices that may bear security risk.

Cleary Gottlieb is a preeminent law firm that prides itself on providing an extremely collaborative and collegial environment that is perfect for your career growth. We are leading the legal industry in the use of cloud and AI technologies and would love for you to join our team. We offer unmatched flexibility for hybrid work as well as providing a lovely office downtown to meet and work alongside your peers in Information Technology.

Responsibilities

AI and Agentic Security:

  • Lead the Firm’s strategy, design, and implementation of scalable AI security and agentic security controls.
  • Work closely with the Firm’s IT and AI acceleration teams to onboard newly developed AI use cases in a security manner, including end to end DevSecOps and CSPM tooling. 

Cloud Security:

  • Design, implement, and maintain a secure and resilient cloud architecture, encompassing Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS) solutions. This includes Azure, AWS, Office365, and all manner of SaaS applications.
  • Design and build continuous audit and alerting capabilities in our cloud environments using native toolsets. 

Identity and Access Management:

  • Develop and implement robust identity and access management strategies for cloud environments, ensuring proper authentication and authorization controls.
  • Monitor and manage user access permissions, following the principle of least privilege. 

Data Protection:

  • Use leading edge Microsoft 365 Security and Purview technologies to establish and enforce data protection policies to safeguard sensitive information.
  • Monitor for data leakage to and from the cloud and on prem. 

Incident Response:

  • Lead incident response efforts for security incidents, coordinating with internal and external stakeholders.
  • Implement logging and monitoring solutions to detect and respond to security events in real-time. 

Security Infrastructure Management:

  • Design, implement, and manage security infrastructure to safeguard the firm's networks, systems, and applications.
  • Conduct regular security assessments and vulnerability scans to identify and address potential risks.
  • Incident Response and Investigation
  • Lead incident response efforts and conduct thorough investigations in the event of security incidents or breaches.
  • Collaborate with legal and IT teams to ensure proper documentation and reporting of security incidents. 

Collaboration and Communication

  • Work with key stakeholders and internal IT contacts to conduct risk assessments against new technologies being considered for use. Formally document these risk assessments such that they can be easily understood by stakeholders.
  • Collaborate with IT, legal, and compliance teams to align security initiatives with overall business objectives.
  • Communicate security risks and recommendations to both technical and non-technical stakeholders.
Qualifications
  • Bachelor's degree in Information Systems, Information Security, Risk Management, or a related field
  • At least five years experience in Information Security or similar type role
  • Awareness of basic tenets of secure software development
  • Solid understanding of networking concepts, such as routing, firewalls, NAT translation, proxies, and other next gen SASE solutions.
  • Familiarity with Data Loss concepts and strategies
  • Deep level security information and event management (SIEM) log analysis
  • Ability to fulfill responsibilities in a timely manner and with exactitude
  • Extreme thoroughness and the ability to be directed on important initiatives, but to work independently to ensure the optimal outcome, reporting back to senior management on important milestones or issues that arise.
  • Several Information Security certifications are considered a significant plus (Microsoft, CISSP, CISM, Palo Alto, Splunk, Cisco are a few that would be considered standout achievements).

The estimated base salary range for this position is $160,000 to $185,000 at the time of posting. The actual salary offered will depend on a variety of job-related factors, including skills, education, training, credentials, experience, scope and complexity of role responsibilities, geographic location, and performance. This role is exempt meaning it is not overtime pay eligible.


Cleary provides a comprehensive benefits package, including health care benefits. More information can be found here: Benefits


We are an equal opportunity employer and prohibit discrimination based on any category protected by law. Cleary provides reasonable accommodations to enable otherwise qualified employees to perform the essential functions of their position, provided the accommodation does not pose an undue hardship to the Firm.


Click on the following links to view the California Privacy Policy and Notice at Collection for California Residents.

Skills Required

  • Bachelor’s degree in Information Systems, Information Security, Risk Management, or a related field
  • At least five years of experience in Information Security or a similar role
  • Awareness of secure software development principles
  • Understanding of networking concepts, including routing, firewalls, NAT translation, proxies, and SASE solutions
  • Familiarity with data loss concepts and strategies
  • Advanced security information and event management log analysis skills
  • Ability to work independently, meet deadlines, maintain accuracy, and report milestones or issues to senior management
  • Information security certifications such as Microsoft, CISSP, CISM, Palo Alto, Splunk, or Cisco
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, New York
2,365 Employees
Year Founded: 1946

What We Do

Cleary Gottlieb is a leading international law firm, with 16 offices located in major financial centers around the world, that has helped shape the globalization of the legal profession for more than 75 years. Our worldwide practice has a proven track record for innovation and providing work of the highest quality to meet the needs of our domestic and international clients. Cleary offers a collegial working environment that fosters the professional and personal growth of our lawyers and staff. We seek candidates who are confident in their abilities and creative in their thinking to best serve the changing needs of our clients. We place a premium on openness, diversity, individuality and collegiality, and look for candidates who do so as well. Content on this page may include attorney advertising.

Similar Jobs

Trail of Bits Logo Trail of Bits

Senior Security Engineer

Artificial Intelligence • Blockchain • Professional Services • Security • Consulting • Cybersecurity • Defense
In-Office or Remote
Brooklyn, New York, USA
125 Employees

Datadog Logo Datadog

Senior Security Engineer

Artificial Intelligence • Cloud • Security • Software • Cybersecurity
Easy Apply
Hybrid
2 Locations
6500 Employees
192K-240K Annually

Circle Logo Circle

Senior Security Engineer

Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
In-Office or Remote
New York, NY, USA
1050 Employees
153K-205K Annually
In-Office
New York, NY, USA
1495 Employees
160K-185K Annually

Similar Companies Hiring

Eve Thumbnail
Legal Tech • Software • Generative AI
San Mateo, CA
180 Employees
GC AI Thumbnail
Artificial Intelligence • Legal Tech
San Mateo, California
130 Employees
Legora Thumbnail
Artificial Intelligence • Legal Tech • Software
New York, New York
700 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account