[Remote] Senior Counsel at Chainguard

United States

Chainguard Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Technology, CybersecurityIndustries

Requirements

  • JD from an accredited law school; active bar in at least one U.S. state (or eligible for in-house counsel registration)
  • 6+ years of privacy and/or commercial privacy experience (global law firm + in-house mix ideal)
  • Familiarity with U.S. state privacy laws and comfort with EU frameworks
  • In-depth privacy expertise interpreting local and international AI laws, regulations, and frameworks
  • Hands-on experience building out DSAR processes, conducting DPIAs/PIAs, drafting global privacy and employee notices, and overseeing cookie compliance
  • Working knowledge of, or keen interest in, open-source licensing in commercial settings
  • Clear, pragmatic communicator with excellent stakeholder management; thrive in fast-moving, multi-threaded environments
  • Bonus: experience in technology, cybersecurity, open source, or SaaS companies; incident-response exposure is a plus; CIPP/US and/or CIPP/E preferred

Responsibilities

  • Own DPA and Security Addendum negotiations end to end; partner with Sales and other cross-functional teams to resolve complex privacy and tooling procurement challenges to close deals
  • Run core privacy program work: update and draft global privacy notices, handle DSARs, complete DPIAs/PIAs, manage cookie compliance, and maintain data maps/inventories
  • Track and implement regulatory requirements (EU AI Act, NIS2, Cyber Resilience Act, DORA, and various U.S. state privacy/AI laws) and turn them into practical, business-ready guidance, templates, and playbooks
  • Ensure global processing complies with all applicable data protection laws, including CCPA and GDPR
  • Provide key privacy/AI insights to partner teams for vendor due diligence and third-party tooling security assessments
  • Partner cross-functionally and level up legal operations (templates, playbooks, regulatory gap assessments, sales-enablement slides to educate customers on privacy challenges, and white papers)
  • Jump in with general legal support as needed

Skills

Key technologies and capabilities for this role

DPA negotiationsGDPRCCPADSARsDPIAsPIAsEU AI ActNIS2Cyber Resilience ActDORAprivacy noticescookie compliancedata mappingvendor due diligence

Questions & Answers

Common questions about this position

What experience level is required for this Senior Counsel role?

The role requires 6+ years of privacy and/or commercial privacy experience, ideally a mix of global law firm and in-house work.

What are the key responsibilities involving privacy program management?

You will own DPA and Security Addendum negotiations, run core privacy tasks like DSARs, DPIAs/PIAs, cookie compliance, and data mapping, and track evolving frameworks like EU AI Act and GDPR.

What educational and licensing qualifications are needed?

Candidates need a JD from an accredited law school and an active bar in at least one U.S. state, or eligibility for in-house counsel registration.

What is the work environment like at Chainguard?

This is a small and rapidly growing Legal org at an early-stage company where you'll collaborate cross-functionally with Sales, Security, Procurement, Product, HR, and Ops, rolling up your sleeves for practical problem-solving.

What makes a strong candidate for this position?

A strong candidate has in-depth privacy expertise with hands-on experience in DSAR processes, DPIAs/PIAs, global privacy notices, cookie compliance, familiarity with U.S. state privacy laws and EU frameworks, plus interest in open-source licensing.

Chainguard

Supply chain risk management and audits

About Chainguard

Chainguard specializes in managing risks in supply chains, particularly for businesses that rely on software. They conduct audits to identify risks and provide detailed reports with recommendations for improvement. Their unique offering includes a curated base container image distro, which helps businesses transition to secure software environments. Chainguard also provides supply chain observability services, allowing companies to track their software's origins and dependencies.

Kirkland, WashingtonHeadquarters
2021Year Founded
$249MTotal Funding
SERIES_CCompany Stage
Data & Analytics, CybersecurityIndustries
201-500Employees

Benefits

Equity/stock options
Unlimited Paid Time Off
Remote Work Options
Home Office Stipend
Health Insurance
Wellness Program

Risks

Increased competition from other cybersecurity startups in the Seattle area.
Potential overvaluation risk with Chainguard's rapid valuation increase to $1.12 billion.
Rapid product expansion may lead to execution challenges for Chainguard.

Differentiation

Chainguard Images have 97.6% fewer vulnerabilities than industry alternatives.
The company offers a curated base container image distro for secure software supply chains.
Chainguard provides detailed audits and reports for supply chain risk management.

Upsides

Chainguard raised $140 million in Series C funding, boosting its growth potential.
Increased demand for secure container images aligns with Chainguard's core offerings.
Rising adoption of AI frameworks supports Chainguard's new CPU/GPU containers.

Land your dream remote job 3x faster with AI