<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>be5eaf8f-2fb</externalid>
      <Title>Senior Corporate Counsel – Cybersecurity</Title>
      <Description><![CDATA[<p>Secure Every Identity, from AI to Human</p>
<p>Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organisations to safely embrace this new era.</p>
<p>This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We&#39;re all in on this mission. If you are too, let&#39;s talk.</p>
<p>As a Senior Corporate Counsel – Cybersecurity, you will lead the cybersecurity legal team, helping build a scalable global cybersecurity practice. You will apply your experience when providing legal guidance on cybersecurity and privacy issues and drafting and negotiating information security exhibits, data processing addenda and related commercial documents with some of the biggest names across every industry that trust Okta to help their organisations work faster, boost revenue, and stay secure.</p>
<p>Responsibilities:</p>
<ul>
<li>Lead a team of talented, high-performing cybersecurity legal professionals and serve as a point of escalation to provide cybersecurity legal expertise and guidance to executives, cross-functional leaders and other stakeholders throughout the organisation.</li>
</ul>
<ul>
<li>Advise, draft and negotiate cybersecurity and privacy terms associated with outbound cloud service Master Subscription Agreements, Information Security Exhibits, Data Processing Addendums and other documentation related to sales transactions, while partnering closely with Okta’s Commercial Legal team.</li>
</ul>
<ul>
<li>Provide day-to-day legal support surrounding cybersecurity and privacy-related contract requests and respond promptly and effectively to legal requests from internal clients with pragmatic and business-oriented guidance.</li>
</ul>
<ul>
<li>Provide advice and guidance to Okta Security, Engineering, Product, executives, and other stakeholders on compliance with applicable security and privacy laws and regulations, such as the General Data Protection Regulation, United States’ federal and state regulations, security/privacy by design, frameworks and industry certifications.</li>
</ul>
<ul>
<li>Support the investigation of potential security and privacy incidents, including analysing relevant legal and regulatory responsibilities, and providing guidance to internal clients on mitigation, remediation and resolution efforts.</li>
</ul>
<ul>
<li>Develop, implement and maintain standards, processes, runbooks and guidance surrounding cybersecurity and privacy-related issues for Go-to-Market transactions, and partnering closely with members of the Legal, Security, Compliance and Engineering teams, among other key stakeholders.</li>
</ul>
<ul>
<li>Build critical relationships in order to effectively provide practical and strategic advice to assist the business in meeting its objectives, while ensuring information security and privacy compliance. Advise on recommended courses of action and legal risk, with the ability to judge when to escalate identified issues as appropriate.</li>
</ul>
<ul>
<li>Assist in the maintenance and review of various security and privacy programs and processes, including updates to security and privacy policies, plans, procedures, standards, certifications and customer-facing security and privacy documentation.</li>
</ul>
<ul>
<li>Support the procurement team in drafting and negotiating cybersecurity and privacy terms associated with vendor agreements.</li>
</ul>
<ul>
<li>Maintain an understanding of technical controls and assist in the creation of audit and monitoring frameworks to support stable, controlled operations.</li>
</ul>
<ul>
<li>Review cybersecurity and privacy-related marketing and other external communications content for accuracy and completeness.</li>
</ul>
<ul>
<li>Support the management of outside counsel and consultants, and contribute to other interesting legal projects, as needed.</li>
</ul>
<p>Required Skills and Experience:</p>
<ul>
<li>8+ years of relevant law firm and/or in-house experience, including at least 2 years working primarily on cybersecurity and privacy-related transactional matters, preferably at a SaaS technology company.</li>
</ul>
<ul>
<li>Familiarity and comfort with the culture of a fast-paced enterprise software company and knowledge of SaaS products.</li>
</ul>
<ul>
<li>Experience working with highly-regulated customers, especially those in the financial services industry, preferred.</li>
</ul>
<ul>
<li>Excellent written and verbal communication, presentation, drafting and negotiation skills.</li>
</ul>
<ul>
<li>Sound and practical legal and business judgment, as well as the ability to think strategically and develop strong working relationships with key internal clients.</li>
</ul>
<ul>
<li>Knowledge in global security, privacy and data protection frameworks, including NIST, ISO, FedRAMP, PCI-DSS, GDPR, CCPA, CPRA and HIPAA.</li>
</ul>
<ul>
<li>Ability to maintain strong working relationships with a variety of internal clients and business partners from a variety of functions.</li>
</ul>
<ul>
<li>A self-motivated individual with grit who takes initiative and is comfortable rolling up their sleeves. Team-oriented with a sense of humour and high emotional intelligence. Ability to organise, prioritise, and manage deadlines.</li>
</ul>
<ul>
<li>Strong academic background and J.D. from highly-regarded school, active bar admission.</li>
</ul>
<p>The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between $212,000-$292,000 USD</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$212,000-$292,000 USD</Salaryrange>
      <Skills>cybersecurity, privacy, transactional matters, SaaS technology company, global security, privacy and data protection frameworks, NIST, ISO, FedRAMP, PCI-DSS, GDPR, CCPA, CPRA, HIPAA</Skills>
      <Category>Legal</Category>
      <Industry>Technology</Industry>
      <Employername>Okta</Employername>
      <Employerlogo>https://logos.yubhub.co/okta.com.png</Employerlogo>
      <Employerdescription>Okta is a software company that provides identity and access management solutions.</Employerdescription>
      <Employerwebsite>https://www.okta.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/okta/jobs/7675356</Applyto>
      <Location>Bellevue, Washington; Chicago, Illinois; New York, New York; Washington, DC</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
  </jobs>
</source>