
Head of Global Security Legal
Job Description
The Global Security Legal team is seeking a highly experienced, bright and capable team leader. The team plays a central role in helping TikTok and its parent company, ByteDance build, scale, and operate information security governance frameworks across the globe. We partner closely with operational, engineering, product, and legal stakeholders across the organization to develop practical solutions that support innovation while protecting user and company data.
The team's core functions include translating evolving legal and regulatory requirements into scalable processes, standards, and governance structures that can be implemented across products, functions, and regions; partnering cross-functionally to respond to privacy and security incidents and events; and developing strategies to mitigate emerging legal risks in the AI space.
Responsibilities:
- Manage a team of legal professionals within the information security, physical security, and incident response vertical on the Global Privacy and Security Legal team
- Oversee and manage the day to day legal support for incident response, covering information security, privacy, safety, and other breaches and incidents
- Advise on the development and implementation of information security and data protection policies and processes
- Provide thought leadership on security-related regulatory and litigation matters that may impact the company
- Collaborate with security teams on matters relating to data assurance, data protection, threat defense, risk management, and regulatory compliance
- Work with legal and product teams globally to review products, features, new applications and initiatives to provide legal risk mitigation strategies and ensure legal compliance for products from an information security perspective
- Provide support to procurement and commercial teams with respect to information security aspects of contract and relationship discussions with third parties
- Coordinate with legal, information security, trust & safety, privacy & data protection, and other cross-functional colleagues on all matters related to information security and incident response, including communication, policy development, and enforcement aspects
Qualifications Minimum Qualification(s):
- Bachelor's degree and Juris Doctorate from an ABA accredited law school (or foreign equivalent) with membership in good standing in a US State Bar.
- Extensive experience leading global teams of legal professionals and providing legal counsel in enterprise technology or leading consumer-facing digital applications.
- Information security and incident response experience within a major global technology company; background in data privacy matters preferred.
- Proven experience advising on cyber risks, remediation, cybersecurity standards, frameworks, risk assessments, and certification processes.
- Extensive experience working with international teams in various time zones in a cross-functional environment.
- Detail-oriented with strong drafting, documentation, presentation, and communication skills in a cross-functional and global role.
- Highly motivated and proactive, with the ability to multitask, collaborate, understand complex technical issues, and produce results in an ever-changing legal and regulatory environment.