Serve as the assigned security officer (vCISO) for a portfolio of client engagements, leading recurring meetings and providing strategic security guidance.
Lead CMMC Level 1 and 2 readiness engagements, including NIST SP 800-171 assessments, SSP development, and POA&M management.
Deliver compliance engagements across frameworks such as HIPAA, SOC 2, PCI DSS, ISO 27001, and more, while conducting risk assessments and coordinating remediation.
Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.
Strategic Growth Partners provides cybersecurity and compliance services to clients across multiple time zones. They foster a collaborative, innovative, and diverse work environment.
You will lead the development and management of client Governance, Risk, and Compliance programs.
You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
You will provide advisory services and manage client expectations to ensure successful engagements.
This company provides cybersecurity compliance consulting services to organizations in the U.S. Defense Industrial Base. They foster a collaborative, security-first culture with a focus on advocacy and resilience.
Lead client engagements focused on cybersecurity strategy, privacy compliance, and security maturity improvements.
Provide virtual CISO advisory services, including cybersecurity roadmaps, risk mitigation, and incident response planning.
Develop and support privacy compliance programs aligned with frameworks such as CCPA/CPRA, GDPR, and ISO 27701.
Our partner is a cybersecurity and privacy advisory firm that helps organizations navigate complex regulatory and security challenges. They offer a flexible remote environment with diverse client engagements and a focus on continuous improvement.
Evaluate security controls and assess alignment with ISO 27001, SOC 2, NIST, and other frameworks.
Coordinate with internal teams and external auditors to support audit engagements and maintain control evidence.
Apply risk-based monitoring and contribute to compliance oversight, security operations, and secure-by-design initiatives.
The company is a mission-driven cybersecurity partner focused on strengthening information security, privacy, and organizational resilience. While specific size details are not provided, the team fosters a collaborative, high-impact environment with opportunities for continuous learning and career development.
Lead compliance assessments and build-out of IL4/IL5 authorizations for DoD Cloud Computing Security Requirements Guide.
Maintain and evolve compliance posture for FedRAMP High, NIST SP 800-53, and other federal frameworks.
Serve as GRC liaison to engineering teams, translating complex federal compliance requirements into technical specifications for AWS environments.
Horizon3 is a fast-growing, remote cybersecurity company that provides autonomous pentesting through its NodeZero platform. The company is a fusion of former Special Operations cyber operators and engineers, fostering a culture of respect, collaboration, ownership, and results.
Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
Work with sponsors to automate manual processes and implement technical solutions for cyber defense.
Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.
Lead security architecture, engineering standards, and verification practices across enterprise environments.
Provide technical leadership to ISSO and ISSE teams overseeing compliance and continuous monitoring.
Manage ATO activities, risk assessments, and vulnerability management while ensuring Zero Trust alignment.
VetsEZ is a healthcare IT consulting firm supporting federal government modernization projects. The company fosters a collaborative and inclusive culture with opportunities for training and growth.
Coordinate cybersecurity awareness campaigns and training programs.
Maintain documentation for data classification, retention, and security controls.
Support compliance with frameworks like ISO and NIST.
Our partner is a mission-driven organization focused on strengthening information security and compliance. They foster a collaborative, remote-first culture with emphasis on professional growth and continuous learning.
Ensure day-to-day compliance activities across PCI DSS, SOC 2, NIST, GDPR, and ISO frameworks.
Lead preparation and execution of internal and external audits, including evidence collection and remediation tracking.
Perform technical security and compliance reviews of third-party vendors and service providers.
iSeatz drives enduring brand loyalty through digital commerce and technology solutions for travel and lifestyle bookings. The company processes over $9B per year in transactions and has been honored as an Inc. Magazine Best Workplace for three consecutive years, emphasizing transparency, trust, and open communication.
Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.
Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.
Monitor and enforce compliance with security frameworks like NIST CSF, ISO 27001, SOC 2, and regulations such as GLBA, CCPA, and GDPR.
Conduct comprehensive risk assessments, develop security policies, and lead internal and external security audits with cross-functional teams.
Evaluate third-party vendor security posture, maintain compliance records, and define metrics to assess the success of the security program.
Clear Capital is a national real estate analytics, data solutions and valuation technology company with a simple purpose: to build confidence in real estate decisions to strengthen communities and improve lives. The company values integrity, kindness, and grit, and has been committed to excellence since 2001.
Serve as the executive owner of Horizon's CMMC Level 2 compliance program, overseeing governance, risk management, and audit readiness.
Provide executive oversight of Microsoft GCC High environment security, including identity, endpoint, and vulnerability management.
Lead risk assessments, review POA&M activities, and ensure alignment with NIST SP 800-171 and DoD requirements.
Horizon Industries is a company focused on providing cybersecurity compliance services, particularly relating to CMMC and federal contracting. The company is an Equal Employment Opportunity employer that considers all applicants for employment.
Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
Represent the compliance program in customer-facing discussions and security due diligence reviews.
Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.
Lead security compliance initiatives across ISO 27001, SOC 2, GDPR, and more.
Conduct internal audits and mentor junior specialists.
Collaborate with product teams to integrate compliance requirements.
Our partner is a fast-growing technology company specializing in security compliance and automation for European businesses. They have a startup culture with a focus on innovation and collaboration.
Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.
Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.
Lead complex cybersecurity programs from planning through delivery, coordinating cross-functional teams and managing competing priorities.
Oversee compliance with frameworks such as NIST, ISO 27001, and regulatory requirements like HIPAA, PCI-DSS, and SOX.
Manage project governance, status reporting, and stakeholder communication, including executive-level engagement.
The company provides cybersecurity project management services. They are a partner company with a remote, collaborative, and inclusive work environment.
Participate in assessing client environments against frameworks like NIST CSF 2.0, CIS Controls, and ISO 27001.
Design and implement secure solutions across cybersecurity, networking, and cloud technologies.
Perform configuration, installation, and maintenance of security products and services.
Apollo Information Systems is a cybersecurity services company delivering unified security and compliance programs through a subscription-based platform. Backed by Series A funding, the company is growing rapidly with a collaborative, mission-driven culture and a remote-first team with a hub in Denver.
Lead IT governance and risk management, including executive reporting and risk register maintenance.
Develop KPI and KRI dashboards to translate complex data into actionable insights for senior leadership.
Oversee ITSM governance, ServiceNow optimization, and vendor risk management.
Our partner is a global organization operating in a sophisticated Governance, Risk & Compliance environment, connecting technology, cybersecurity, privacy, and operational risk. It fosters a collaborative culture with a focus on work-life balance and professional development.
Support day-to-day information security operations and maintain strong operational security posture across the platform.
Develop and maintain the System Security Plan and other cybersecurity documentation for security authorization and compliance.
Support FedRAMP High and DoD IL5 compliance activities including continuous monitoring, audits, assessments, and remediation.
The partner company operates a secure, mission-focused technology platform supporting government and commercial teams. It is an equal opportunity workplace committed to considering qualified candidates from all backgrounds.
Lead quality assurance for RMF authorization packages to ensure completeness and readiness for government review.
Coordinate with RMF analysts, ISSOs, system owners, and technical stakeholders to validate security documentation and evidence.
Mentor team members on documentation standards and best practices while tracking assessment readiness metrics to reduce rework.
True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. The company has been named a Best Place to Work multiple times and made the Inc. 5000 list of fastest-growing companies, reflecting its people-first culture and commitment to excellence.