Virtual CISO – Cybersecurity Practice Lead
Location
United States
Posted
48 days ago
Salary
$200K - $300K / year
Seniority
Senior
Job Description
Virtual CISO – Cybersecurity Practice Lead
Interdependence
• Serve as the outsourced CISO for 8–12 clients, providing executive-level security leadership on a fractional basis • Conduct security risk assessments, gap analyses, and penetration testing oversight for prospective and current clients • Develop and maintain security programs, policies, and incident response plans tailored to each client's risk profile and regulatory environment • Manage compliance frameworks including SOC 2, HIPAA, PCI-DSS, CCPA, NIST CSF, and CMMC • Present security posture, risk exposure, and remediation roadmaps to boards of directors, C-suites, and audit committees in clear, business-oriented language • Oversee and leverage AI-driven security tooling for vulnerability scanning, log analysis, threat detection, and compliance evidence collection • Quarterback incident response when clients face active threats or breaches, coordinating forensics, legal, communications, and remediation • Collaborate with RMC's reputation management team to deliver integrated crisis response when security events create reputational exposure • Participate in business development — joining sales conversations, scoping engagements, and helping close new cybersecurity retainers • Recruit, manage, and mentor junior analysts as the practice scales • Build standardized methodologies, reporting templates, and delivery playbooks that allow the practice to scale without sacrificing quality
Job Requirements
- 7-10+ years of hands-on cybersecurity experience spanning at least two of the following: penetration testing, incident response, security architecture, GRC (governance, risk, and compliance)
- 3+ years operating at the CISO, Director of Security, or senior consulting level, you've sat in the room with boards and translated technical risk into business impact
- CISSP certification (active and in good standing)
- Deep working knowledge of SOC 2, HIPAA, NIST CSF, and at least one additional framework (PCI-DSS, ISO 27001, CMMC, CCPA)
- Experience building or significantly expanding a security program from early stages, not just maintaining one someone else built
- Ability to manage multiple client engagements simultaneously without quality degradation
- Comfortable participating in sales and business development conversations — you understand that your credibility is what closes deals
Benefits
- Health, dental, vision, 401(k)
- Performance bonus: Up to 25% of base, tied to client acquisition, retention, and practice revenue targets
- Revenue participation: Structured incentive on new business you source and close, designed to reward you as a practice builder, not just a practitioner
- Equity / profit-sharing potential as the cybersecurity division scales, this is a founding role and we structure compensation to reflect that
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior AI Security Engineer
World Wide Technology Healthcare SolutionsFounded in 1990, World Wide Technology (WWT) is a global systems integrator with $13.4 billion in annual revenue that provides digital strategy, innovative technology and supply chain solutions to large public and private organizations.
Role Description WWT Digital's AI-Native Security Feedback Loop offering (DIG-MLS-01) requires someone who sits at the exact intersection of AI engineering and security. You will help clients design, test, and harden AI agent deployments, build automated vulnerability feedback loops into SDLC workflows, and establish monitoring frameworks for model behavior in production. You will work with the Digital AI delivery team and WWT Security on joint engagements targeting enterprise engineering orgs deploying agentic AI at scale. Responsibilities - Assess AI and agent system architectures for security exposure — prompt injection paths, tool misuse, data exfiltration vectors, identity sprawl - Design and implement NHI (Non-Human Identity) governance frameworks for AI agents, service accounts, and API credentials - Build adversarial test suites for LLM-based applications — red-teaming agents, jailbreak testing, context injection scenarios - Integrate security feedback loops into AI development workflows: model evaluation gates, output monitoring, anomaly detection - Define and implement MLSecOps practices: model signing, provenance, fine-tune data validation - Support OWASP Agentic Top 10 gap assessments alongside WWT Security architects - Develop reusable patterns and accelerators that can be packaged into repeatable WWT offerings Qualifications - 4–7 years software or ML engineering, with at least 2–3 years focused on AI/ML security specifically - Working knowledge of LLM application architecture: RAG, tool use, agent orchestration frameworks (LangChain, LlamaIndex, CrewAI, or similar) - Hands-on with adversarial ML techniques: prompt injection, data poisoning, model inversion, evasion attacks - NHI security: service account hygiene, secrets rotation, OAuth/OIDC for machine-to-machine auth - Security monitoring for AI in production: behavioral baselines, output anomaly detection, audit logging - Experience with AI governance frameworks: NIST AI RMF, ISO/IEC 42001, emerging EU AI Act controls - Can write code — Python at minimum, comfortable with LLM SDKs and agent frameworks - Bonus: red team or penetration testing background applied specifically to AI systems - Bonus: prior consulting experience; able to present to CISO and CTO audiences simultaneously Requirements - Ability to work collaboratively with cross-functional teams - Strong analytical and problem-solving skills - Excellent communication and presentation skills Benefits - Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program - Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement - Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement - Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program
• Managing the entire pre-sales lifecycle, from initial conversation, demo, POV, RFP, Competitive analysis and support the post sales conversation • Interacting with different stakeholders, both internally and externally, such as partners, customers, salespeople, product management and leadership • Developing, implementing, and optimizing technical sales processes and methodologies • Evangelizing best practices and always keep up with new API and Web application cybersecurity challenges • Being the technical and API security expert for our customers and partners • Attending and presenting at various events and providing high-quality solution design documents
• Develop and implement a comprehensive security engineering roadmap • Oversee the design, review, and implementation of security architecture across network, infrastructure, and cloud environments • Hire, mentor, and manage a high-performing team of security architects and engineers • Identify security gaps and lead the requirements, evaluation and adoption of security tools • Conduct threat modeling and vulnerability management • Collaborate with IT, Product, Engineering, Legal, and Compliance teams • Building relationships with all staff to promote “Security by Design” throughout the Engineering Teams
Security Client Manager
Allied UniversalAllied Universal, founded in 2016 with the merger of AlliedBarton Security Services and Universal Services of America, is now a widely-recognized industry leader and North America�
Role Description Allied Universal® is hiring a Client Manager. As a Client Manager, you will build long term meaningful client relationships and lead our front-line employees that deliver our security services throughout a designated portfolio. By promoting strong employee engagement, you will drive operational metrics and deliver world-class services to clients across various vertical markets. Aligning with our iCARE Leadership approach, you will be a guide on our journey to be an employer of choice in the service industry by fostering an exceptional employee experience. Responsibilities: - Hire, develop and retain front line staff, including Security Officers, Field Supervisors and Operations Managers, for small to medium-sized clients within your designated portfolio. - Utilize Allied Universal’s AI technology, online reporting tools, and Business Intelligence Platform to monitor and analyze financial and operational metrics; drive operational efficiency by optimizing employee schedules, minimizing non-billed overtime, and supporting revenue growth, cash collections, and overall profitability. - Oversee and maintain client performance metrics, including budget management, accounts receivable, accounts payable, and overall account health, ensuring alignment with EBITA targets. - Build and maintain client relationships by addressing security needs, reducing risks, managing crises, and implementing effective corrective action plans; develop protocols, training, and response strategies that drive operational improvements and ensure client satisfaction. - Deliver high-quality service to our clients while maintaining industry standards, company policies, and regulatory requirements. - Establish a culture of safety by developing action plans that aid in the prevention of work-related injuries. - Infuse core values of agility, reliability, caring, teamwork, integrity, safety, and innovation into your leadership approach to achieve success and contribute to the positive culture and growth of the organization. Qualifications - Bachelor's degree in criminal justice, business, or a related field with a minimum of two (2) years of professional level experience managing hourly employees in a fast-paced service organization. - Associate’s degree in criminal justice, business, or a related field with a minimum of three (3) years of professional level experience managing hourly employees in a fast-paced service organization. - High School diploma with a minimum of five (5) years of professional level experience managing hourly employees in a fast-paced service organization. - Current driver’s license if driving a company vehicle, or personal vehicle in the course of conducting business (e.g., client visits, attending networking events). - Minimum of two (2) years of experience driving operational goals. - Skilled in managing a large and dispersed team that fosters teamwork, innovation, agility, client relations and achieving desired results. - Ability to maintain a profitable book of business by cross-collaborating and utilizing results-oriented problem-solving skills to meet both client and employee growth and satisfaction. - Proficiency in web-based applications and computer systems, including Microsoft Office. - Knowledge of safety protocols and service deliverables. - Ability to interpret financial data and use it to support decision-making; understanding of financial principles, including budgeting and financial reporting. - Proficiency in prioritizing tasks, meeting deadlines, and managing multiple projects efficiently. - Excellent oral and written communication skills. Requirements - Law enforcement, military and/or contract or proprietary security services experience (preferred). - Experience managing a dispersed workforce in a multi-location operation (preferred). - Experience with (BI) Business Intelligence tools for metrics analysis, reporting, automation, and presentations (preferred). Benefits - Medical, dental, vision, basic life, AD&D, and disability insurance. - Eligible for our company's retirement plans. - Eight paid holidays annually, five sick days, and four personal days. - Vacation time offered at an accrual rate of 3.08 hours biweekly. Unused vacation is only paid out where required by law. - Pay $80,000.00 yearly.



