Legal Counsel, Cybersecurity & Data Protection

Thermo Fisher ScientificWaltham, MA
Onsite

About The Position

When you're part of Thermo Fisher Scientific, you'll do challenging work and join a team that values performance, quality, and innovation. As part of a successful, growing global organization, you will be encouraged to perform at your best. Position Summary At Thermo Fisher Scientific, our mission is to enable our customers to make the world healthier, cleaner, and safer. The Legal Counsel role provides legal support for cybersecurity matters across the company's global operations. This role supports senior legal leadership and cross-functional partners by reviewing contracts, conducting legal research, supporting compliance initiatives, and participating in cybersecurity incident response activities. The position is an individual contributor role with a defined scope and opportunities for professional growth. How You Will Make an Impact The primary responsibility of the Legal Counsel, Cybersecurity & Data Protection role is to provide legal support on cybersecurity, information security, and data protection matters across Thermo Fisher Scientific's global operations. This individual must be able to work independently, exercise practical judgment, and collaborate effectively with cross-functional stakeholders. As such, this individual will: Provide legal support on cybersecurity, data protection, and information security matters across Thermo Fisher Scientific. Review and analyze commercial agreements for cybersecurity and data protection risks, including vendor, supplier, SaaS, and technology agreements. Support compliance with global cybersecurity regulations (for example, the CRA, NIS2, and SEC cybersecurity disclosure rules). Perform legal review of U.S. government and public sector cybersecurity requirements. Participate in cybersecurity and data incident response activities, including documentation, evidence tracking, and drafting incident-related communications. Conduct legal research and monitor regulatory developments related to cybersecurity, privacy, and technology risk. Assist with internal audits, regulatory inquiries, and risk assessments by preparing and maintaining required documentation. Collaborate with Cybersecurity, IT, Privacy, Compliance, Risk Management, and Procurement teams to support business objectives. Support the development and maintenance of internal legal guidance, templates, and training materials.

Requirements

  • Juris Doctor (JD) from an accredited law school.
  • Active license to practice law and in good standing in at least one jurisdiction.
  • 2-5 years of legal experience, including experience relevant to technology, cybersecurity, privacy, regulatory compliance, or commercial contracting.

Nice To Haves

  • In-house legal experience in a global, regulated, or life sciences organization.
  • Familiarity with cybersecurity and risk management frameworks (for example, NIST and ISO 27001).
  • Experience supporting cybersecurity incidents, investigations, or regulatory compliance initiatives.
  • Ability to work effectively in a matrixed, fast-paced environment.
  • Strong analytical, drafting, and communication skills.
  • Ability to identify legal risk and escalate issues appropriately.
  • Practical, business-oriented judgment.
  • Strong collaboration skills with both technical and non-technical stakeholders.
  • High level of professionalism, integrity, and attention to detail.

Responsibilities

  • Provide legal support on cybersecurity, data protection, and information security matters across Thermo Fisher Scientific.
  • Review and analyze commercial agreements for cybersecurity and data protection risks, including vendor, supplier, SaaS, and technology agreements.
  • Support compliance with global cybersecurity regulations (for example, the CRA, NIS2, and SEC cybersecurity disclosure rules).
  • Perform legal review of U.S. government and public sector cybersecurity requirements.
  • Participate in cybersecurity and data incident response activities, including documentation, evidence tracking, and drafting incident-related communications.
  • Conduct legal research and monitor regulatory developments related to cybersecurity, privacy, and technology risk.
  • Assist with internal audits, regulatory inquiries, and risk assessments by preparing and maintaining required documentation.
  • Collaborate with Cybersecurity, IT, Privacy, Compliance, Risk Management, and Procurement teams to support business objectives.
  • Support the development and maintenance of internal legal guidance, templates, and training materials.

Benefits

  • A choice of national medical and dental plans, and a national vision plan, including health incentive programs
  • Employee assistance and family support programs, including commuter benefits and tuition reimbursement
  • At least 120 hours paid time off (PTO), 10 paid holidays annually, paid parental leave (3 weeks for bonding and 8 weeks for caregiver leave), accident and life insurance, and short- and long-term disability in accordance with company policy
  • Retirement and savings programs, such as our competitive 401(k) U.S. retirement savings plan
  • Employees’ Stock Purchase Plan (ESPP) offers eligible colleagues the opportunity to purchase company stock at a discount
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service