Job Description
Job Description
Cloud Governance Manager
Locations : Remote (must be in reasonable commuting distance to a US office)
Strong preference for : Atlanta, Boston, LA, Chicago, Dallas, Houston, NYC , Orange County, Palo Alto, San Diego, SF, or Washington DC (strong preference for highlighted ones)
Reports to : Chief Information Security Officer (or equivalent)
Position Type : Full-Time, Individual Contributor
About This Role
We are seeking an experienced Cloud Governance Manager to serve as a strategic liaison between our Information Security, IT, and Office of General Counsel teams. In this pivotal role, you will develop and implement enterprise data governance frameworks that ensure secure, compliant, and efficient data management across our cloud infrastructure. You'll combine technical expertise with governance acumen to translate complex security and compliance requirements into actionable policies and solutions that protect sensitive firm data while enabling business operations.
What You'll Do
Data Governance Frameworks
- Develop and implement comprehensive policies, procedures, and standards for managing data assets across their lifecycle—from intake through disposal
- Design and enforce technical controls for data retention, classification, and access using tools such as Microsoft Purview Information Protection, Data Lifecycle Management, Data Loss Prevention, iManage Threat Manager, and Varonis
- Establish governance standards aligned with regulatory, security, and business requirements
Risk Compliance Management
Identify and assess data-related risks across cloud platforms and enterprise solutionsReview and strengthen security and privacy controls to safeguard firm data against unauthorized access, use, or disclosureCollaborate with Information Governance, Office of General Counsel, Security Architecture, and GRC teams to align directives, track risks, and support compliance initiativesStakeholder Leadership Translation
Serve as a critical liaison between Information Security, IT, and legal stakeholders, translating technical security concepts into business-friendly guidancePartner with attorneys and business teams to design secure, compliant data access and sharing solutionsDeliver training and enablement on data governance best practices to employees across the firmCloud Platform Expertise
Provide thought leadership on data governance across Office 365 and other cloud platformsDesign secure patterns, manage reporting and alerting, and guide the firm's cloud data strategyStay current with evolving cloud architectures, security technologies, and threat landscapesWhat We're Looking For
Experience Background
7+ years of combined experience in IT, information security, risk management, or data governanceDemonstrated expertise in cloud architecture, security, and data protection in cloud environmentsLaw firm operations experience highly preferred; candidates from other highly regulated industries (healthcare, finance, insurance) consideredStrong understanding of risk management frameworks and security technologiesTechnical Analytical Skills
High-level technical understanding of security applications, cloud platforms, and data governance architecturesProficiency in governance, risk, and compliance (GRC) practices with strong analytical and problem-solving capabilitiesAdvanced knowledge of Microsoft Purview and other governance and data loss prevention toolsKnowledge of information security standards and frameworks (CSF, NIST, ISO 27001) and awareness of the evolving cyber threat landscapeCore Competencies
Exceptional collaboration, communication, and stakeholder management skillsAbility to translate technical concepts for non-technical audiences and business-focused guidance for technical teamsStrong project management capabilities with experience managing risks associated with technology solutionsStrategic mindset with the ability to balance security, compliance, and business enablementEducation Certifications
Bachelor's degree in Information Security, Information Assurance, Computer Science, or Information Systems preferredProfessional certifications such as CISA, CISM, GSEC, CISSP, or CRISC preferredProficiency in Microsoft Outlook, Word, Excel, Visio, and PowerPointWork Environment
Remote position with flexibility (subject to change)Must maintain reasonable commuting distance to a US office locationCollaborate regularly with cross-functional teams including security, IT, and legalIndividual contributor role with no direct reportsCompensation Benefits
Competitive bonus and comprehensive benefits package offered.