Senior Counsel, Cyber Security and Incident Response

CoreWeaveLivingston, NJ
$157,000 - $210,000Onsite

About The Position

The Legal and Government Affairs team at CoreWeave is highly collaborative and partners closely with teams across the company to navigate complex legal landscapes while enabling innovation and growth. The team is pragmatic, solutions-oriented, and deeply engaged in strategic decision-making, with a strong emphasis on building trusted relationships across the organization. As Senior Counsel, Cybersecurity & Incident Response, you will serve as a key legal partner to Security and other cross-functional teams on cybersecurity preparedness, incident response, and related regulatory compliance. If you thrive in a dynamic, fast-paced environment, enjoy solving complex problems, and are eager to make a significant impact, CoreWeave is the place for you. Reporting to the Senior Director & Lead Managing Counsel, Privacy, Regulatory & Compliance, you will provide practical, real-time advice during complex security events, help preserve legal privilege, assess legal and contractual notification obligations, and guide matters from initial investigation through remediation and post-incident review. You will also help strengthen incident response governance, playbooks, and exercises in a rapidly scaling, global cloud infrastructure environment.

Requirements

  • 4+ years of relevant legal experience, including meaningful experience advising on cybersecurity incidents, data breaches, digital investigations, or cybersecurity regulatory matters; a mix of law firm and in-house experience is preferred.
  • Demonstrated ability to independently manage complex and sensitive cybersecurity matters and provide clear advice in fast-moving, high-pressure situations with incomplete facts.
  • Strong working knowledge of U.S. federal and state breach notification requirements, cybersecurity regulatory frameworks, and contractual incident notification obligations; familiarity with international requirements is a plus.
  • Experience assessing incident materiality, escalation, notification, and disclosure issues and documenting defensible legal decisions.
  • Experience conducting privileged investigations and working with cybersecurity professionals, forensic investigators, outside counsel, regulators, and law enforcement.
  • Ability to understand technical facts, ask precise questions, and translate forensic findings, system architecture, logs, and security concepts into actionable legal guidance.
  • Excellent drafting and communication skills, including experience preparing concise executive updates and accurate customer, regulator, and public-facing communications.
  • Strong judgment, discretion, and composure, with the ability to prioritize competing demands and support significant incidents outside standard business hours when necessary.
  • Proven ability to build trusted relationships and work cross-functionally with technical, operational, communications, commercial, and executive stakeholders.
  • J.D. from an accredited law school and active membership in at least one U.S. state bar (NY, NJ, CA, DC, or WA preferred).

Nice To Haves

  • Experience advising a high-growth cloud, SaaS, data center, infrastructure, or other technology company.
  • Experience with public-company cybersecurity materiality, governance, and disclosure processes.
  • Experience advising on ransomware, insider threats, supply-chain incidents, credential compromise, and cloud security events.
  • Experience developing and testing incident response plans, legal playbooks, and tabletop exercises.
  • Privacy or cybersecurity credentials such as CIPP/US, CIPP/E, CIPM, CISSP, or comparable training.

Responsibilities

  • Provide timely, practical legal advice throughout the cybersecurity incident lifecycle, including triage, investigation, containment, remediation, recovery, and post-incident review.
  • Partner closely with Security, Privacy, IT, Engineering, Product, Communications, Customer Support, Insurance, and business leaders to coordinate legally sound incident response and decision-making.
  • Direct or support privileged investigations, including engagement of outside counsel and forensic firms, evidence preservation, root-cause analysis, documentation, and interactions with law enforcement.
  • Assess notification and disclosure obligations under applicable cybersecurity, privacy, data breach, securities, and sector-specific laws, as well as customer, vendor, insurance, and other contractual requirements.
  • Draft and review executive and Board updates, customer and regulatory notices, law-enforcement communications, and other incident-related communications for accuracy, consistency, and legal risk.
  • Advise on cybersecurity laws, regulations, regulatory inquiries, and enforcement trends affecting cloud infrastructure and technology companies, and translate requirements into scalable controls and processes.
  • Develop and maintain incident response plans, legal playbooks, notification matrices, escalation criteria, decision records, and training; design and participate in tabletop exercises and drive legal follow-up actions.

Benefits

  • Medical, dental, and vision insurance - 100% paid for by CoreWeave
  • Company-paid Life Insurance
  • Voluntary supplemental life insurance
  • Short and long-term disability insurance
  • Flexible Spending Account
  • Health Savings Account
  • Tuition Reimbursement
  • Ability to Participate in Employee Stock Purchase Program (ESPP)
  • Mental Wellness Benefits through Spring Health
  • Family-Forming support provided by Carrot
  • Paid Parental Leave
  • Flexible, full-service childcare support with Kinside
  • 401(k) with a generous employer match
  • Flexible PTO
  • Catered lunch each day in our office and data center locations
  • A casual work environment
  • A work culture focused on innovative disruption
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service