Arlington, Virginia, United States
13 hours ago
Director of Information Security- hybrid Washington D.C.
Director of Information Security

This company is a premier international law firm delivering innovative legal solutions to top financial institutions and Fortune Global 500 companies worldwide. With a strong presence across Asia, Europe, Latin America, and the U.S., we provide personalized service wherever our clients need us. As a leading law firm, we seek dynamic professionals who share our commitment to excellence, innovation, and professional growth.
Reporting directly to the Chief Information Security Officer (CISO), the Director, Information Security Architect will play a critical role in shaping the firm’s security architecture as we transition from traditional on-premises environments to a cloud-first model centered on Microsoft 365. This position requires deep expertise in cloud security, enterprise-scale cyber technologies, and cross-functional collaboration.
The company is located in Washington D.C. and will be a hybrid model 2-3 days onsite a week.
What You Will Be Doing: Design and oversee the firm’s security architecture with a cloud-first focus (Microsoft 365, Azure), ensuring seamless integration with on-premises environments. Evaluate, recommend, and implement cutting-edge cyber defense tools, including Cloud Security Posture Management (CSPM) and SaaS Security Posture Management (SSPM) solutions. Architect and design solutions aligned with Zero Trust principles, including Secure Access Service Edge (SASE) and Zero Trust Network Access (ZTNA). Collaborate closely with Cyber Engineering and Operations teams to align security architecture with operational and security objectives. Conduct security assessments of existing and proposed systems, identifying gaps and recommending solutions that meet compliance, legal, and risk management standards. Develop and maintain comprehensive security architecture documentation, including design principles and system configurations. Serve as a subject matter expert in cloud security, network security, endpoint security, mobile security, and data security, providing guidance and mentorship across the organization. Stay ahead of emerging security threats, trends, and technologies to ensure our security architecture remains robust and adaptive. Engage with stakeholders across IT, legal, and compliance teams to align security initiatives with broader organizational goals. Required Skills & Experience: Deep knowledge of security frameworks such as NIST CSF, ISO 27001, and CIS Critical Security Controls. Proven experience in cloud security design and implementation, particularly in Microsoft 365 and Azure. Hands-on expertise in threat modeling, risk assessments, and vulnerability management within hybrid IT environments. Strong communication and collaboration skills, engaging effectively with both technical and non-technical stakeholders. Analytical mindset with exceptional problem-solving abilities. Proactive approach to security innovation and operational excellence. Self-starter with the ability to lead strategic initiatives independently. Detail-oriented with a commitment to high-quality execution in a fast-paced environment. Bachelor’s degree in Computer Science, Information Security, or a related field (Master’s degree preferred). 10+ years of progressive experience in information security, with at least 5 years in a senior architect or equivalent leadership role. Experience in legal or highly regulated industries (preferred but not required). Relevant certifications such as CISSP, CISM, CCSP, or Azure Security Engineer (strongly preferred). Strong knowledge of modern cyber technologies, including CSPM, SSPM, EDR, SIEM, and CASB. Applicants must be currently authorized to work in the United States on a full-time basis now and in the future.
This position doesn’t provide sponsorship.
Confirm your E-mail: Send Email