Director, IT Security

Cozen O'ConnorPhiladelphia, PA
Hybrid

About The Position

The Director, IT Security is a new, hands-on leadership role responsible for both the strategic direction of information security firm-wide and the day-to-day operation of the security function. You will lead and grow a Security Operations team (currently a manager and two security engineers) while remaining personally engaged in technical work — this is a player-coach role, not a purely managerial one. You will lead the firm's security posture across a hybrid environment that includes a legacy data center backbone and a substantial Microsoft 365 and Azure footprint. Working in close partnership with the other IT Directors, you will ensure that our business systems, endpoints, custom software development, and AI systems all are designed, built and deployed according to the highest industry standards. Working with the Director of IT Risk/Audit — who owns the firm's ISO 27001, SOC 1, and SOC 2 Type II certification programs — you will ensure the security controls underpinning those certifications are operating effectively. As the firm and its clients increasingly adopt artificial intelligence tools, you will also define and lead the firm's approach to AI security, including the risks posed by agentic AI systems and AI access to firm and client data. The Director will represent the firm's security program and standards to clients, auditors, and vendors.

Requirements

  • Hands-on leadership experience.
  • Experience with security posture in a hybrid environment (legacy data center and Microsoft 365/Azure).
  • Familiarity with ISO 27001, SOC 1, and SOC 2 Type II certification programs.
  • Understanding of AI security risks, including agentic AI systems.
  • Ability to engage in technical work.
  • Player-coach mentality.

Responsibilities

  • Lead and grow a Security Operations team.
  • Ensure business systems, endpoints, custom software development, and AI systems are designed, built, and deployed according to the highest industry standards.
  • Ensure security controls underpinning ISO 27001, SOC 1, and SOC 2 Type II certifications are operating effectively.
  • Define and lead the firm's approach to AI security, including risks from agentic AI systems and AI access to firm and client data.
  • Represent the firm's security program and standards to clients, auditors, and vendors.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service