远程工作雷达

虚拟首席信息安全官(vCISO)

Virtual Chief Information Security Officer (vCISO)

开发工程限定地区(需当地身份)
公司VISTRADA
薪资$150,000 - $200,000/年
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

虚拟首席信息官(vCISO)
Vistrada 正在寻找优秀的虚拟首席信息官(CISO)。vCISO 将通过领导和管理客户的网络安全计划,为 Vistrada 客户提供战略性的网络安全指导和监督,以保护其基础设施、数据、人员和客户。候选人应具备丰富的网络安全最佳实践、行业标准和法规知识。还应具备出色的沟通能力、领导力和项目管理技能,以及与内部和外部利益相关者协作的能力。
工作职责和常见任务包括:

  • 运用咨询和领导技能与客户和团队成员建立良好关系。
  • 提供专业的安全建议、合规和安全计划监督,监督安全/合规评估,并准备高质量的报告(包括差距分析、POAM、建议和补救计划)。
  • 领导和管理安全分析师团队,提供监督、指导、专业知识和指导。
  • 提供虚拟首席信息官服务。
  • 以部分所有者模式支持客户。
  • 作为客户信息安全管理和治理职能的延伸。
  • 制定、实施并监督信息安全计划。
  • 评估、识别安全控制和技术的需求,并提出建议。
  • 制定安全路线图和行动计划。
  • 供应商和第三方风险管理计划支持和尽职调查。
  • 制定业务连续性和事件响应计划。
  • 关注关键绩效指标、度量标准和安全仪表板。
  • 协助业务发展。
  • 与潜在新客户合作,了解和定义业务和技术需求,提供专业领域知识回答客户的问题和担忧,并将服务与客户需求对齐。
  • 支持工作说明书,识别资源需求、假设、估算,并协助回应招标书(RFP)。
  • 识别客户的安全和技术需求,并在评估活动后识别业务发展机会。
  • 制定专家级内容,参与小组讨论和公开演讲活动,并参加会议展商机会。
  • 设计高质量的安全解决方案以满足客户的需求。
查看英文原文

Virtual Chief Information Security Officer (vCISO)
Vistrada is looking to hire strong Virtual Chief Information Security Officers (CISOs). The vCISO will provide strategic cybersecurity guidance and oversight to Vistrada clients by leading and managing their cybersecurity programs to help protect their infrastructure, data, people, and customers. Candidates should have extensive knowledge of cybersecurity best practices, industry standards, and regulations. They should also have strong communication, leadership, and project management skills, as well as the ability to work collaboratively with internal and external stakeholders.
Job Responsibilities and Common Duties Include:

  • Apply consultative and leadership skills to build high rapport with clients and team members.
  • Provide expert security advisory, compliance and security program oversight, oversee security/compliance assessments, and prepare high-quality reports (including gap analysis, POAM, recommendations, and remediation planning).
  • Lead and manage a team of security analyst(s) providing oversight, direction, expertise, and mentoring.
  • Provide virtual chief information security officer services.
  • Support clients on a fractional owner model.
  • Act as an extension of client’s information security management and governance function.
  • Develop, implement, and oversee information security programs.
  • Assess, identify requirements for, and make recommendations on security controls and technologies.
  • Develop security roadmaps and plans of action.
  • Vendor and third-party risk management program support and due diligence.
  • Develop business continuity and incident response plans.
  • Focus on key performance indicators, metrics, security dashboards.
  • Assist With Business Development.
  • Work with potential new clients to understand and define business and technology needs, provide subject matter expertise to answer client’s questions and concerns, and identify and align services with client’s needs.
  • Support statements of work, identify resource requirements, assumptions, estimates, and assist with responses to Requests for Proposals (RFPs).
  • Identify client’s security and technology needs and identify business development opportunities as outcomes of assessment activities.
  • Develop expert level content, participate in panel discussions and public speaking events, and attend conference exhibitor opportunities.
  • Architect high quality security solutions to the needs of clients.
  • Perform other duties that may be assigned by management.

Experience / Skills:

  • CISO experience OR qualified candidates who have not been a CISO and are ready to perform in the function.
  • Expert knowledge of cybersecurity frameworks and regulations including: NIST, ISO, CMMC, PCI, COBIT, DFARS, HIPAA, etc.
  • Hands-on incident response coordination and oversight experience.
  • Strong understanding of IT Risk and components, including application, infrastructure, network, and vendors.
  • Bachelor’s degree in Computer Science, Accounting, MIS, or comparable work experience.
  • Develop and present management level materials to effectively communicate and message to stakeholders.
  • Relevant certifications such as CISA, CISM, or CISSP, or similar experience.
  • Consulting experience is a plus.

Both Full Time and Part Time opportunities are available.The annual pay range for this role is $150,000 - 200,000.
Company Background:
Vistrada is a business, technology and management services firm dedicated to helping clients plan, design and implement initiatives supporting Cybersecurity, Business Transformation, Integrated Risk Management, and Managed Services. Vistrada provides seasoned expertise and a flexible team structure allowing agility and responsiveness to support client’s evolving needs.
Our company operates nationally today with resources centered around NYC, Albany NY, Austin TX, Chicago, IL and Salt Lake City, UT. We have many resources who operate remotely and onsite as needed in a wider geography. Our business organization has four verticals and multiple cross competencies headed by leaders with more than 20+ years of experience on average
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

← 返回全部职位