Source Job

$150,000–$180,000/yr
US

  • Serve as acting CISO for multiple client organizations and SGP, providing strategic security leadership and executive guidance.
  • Lead cybersecurity and compliance programs aligned with NIST SP 800-171, CMMC Levels 1-2, and ISO/IEC 27001.
  • Conduct security assessments, gap analyses, and risk reviews; develop SSPs, POA&Ms, and policies.

Cybersecurity Compliance Risk Assessment Executive Communication

20 jobs similar to Fractional CISO

Jobs ranked by similarity.

US 4w maternity 4w paternity

  • You will lead the development and management of client Governance, Risk, and Compliance programs.
  • You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
  • You will provide advisory services and manage client expectations to ensure successful engagements.

This company provides cybersecurity compliance consulting services to organizations in the U.S. Defense Industrial Base. They foster a collaborative, security-first culture with a focus on advocacy and resilience.

Global

  • Serve as the executive owner of Horizon's CMMC Level 2 compliance program, overseeing governance, risk management, and audit readiness.
  • Provide executive oversight of Microsoft GCC High environment security, including identity, endpoint, and vulnerability management.
  • Lead risk assessments, review POA&M activities, and ensure alignment with NIST SP 800-171 and DoD requirements.

Horizon Industries is a company focused on providing cybersecurity compliance services, particularly relating to CMMC and federal contracting. The company is an Equal Employment Opportunity employer that considers all applicants for employment.

Field CISO

Sprinto
US

  • Lead the market-facing security and compliance voice as Sprinto's first dedicated Field CISO in the US.
  • Build and deepen the advisory board into a real community of security leaders.
  • Walk into deals as a practitioner peer, shaping prospect vision and closing late-stage objections.

Sprinto is an Autonomous Trust Platform that centralizes trust requirements across security frameworks, vendors, and customers. Backed by top-tier investors, it is trusted by over 4,000 organizations across 75 countries and fosters a remote culture of ownership and collaboration.

US

  • Lead client engagements focused on cybersecurity strategy, privacy compliance, and security maturity improvements.
  • Provide virtual CISO advisory services, including cybersecurity roadmaps, risk mitigation, and incident response planning.
  • Develop and support privacy compliance programs aligned with frameworks such as CCPA/CPRA, GDPR, and ISO 27701.

Our partner is a cybersecurity and privacy advisory firm that helps organizations navigate complex regulatory and security challenges. They offer a flexible remote environment with diverse client engagements and a focus on continuous improvement.

$150,000–$200,000/yr
US

  • Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
  • Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
  • Represent the compliance program in customer-facing discussions and security due diligence reviews.

Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.

$150,000–$250,000/yr
Global 2w PTO

  • Own cybersecurity strategy and operations across all AIOS entities.
  • Lead identity, access, endpoint, application, and infrastructure security.
  • Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.

AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.

Europe 5w PTO

  • Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
  • Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
  • Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.

Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.

United States Unlimited PTO

  • Partner with the CISO to define and execute Sardine's security strategy and roadmap.
  • Help identify and prioritize the highest-risk areas across the business, including application security, compliance, and incident response.
  • Support customer-facing security conversations and represent Sardine's security program to auditors and stakeholders.

Sardine is the leading agentic risk platform for fighting financial crime, providing an integrated solution to stop fraud and automate fraud operations. The company is a fast-growing startup with a remote-first culture and hubs in the US, Canada, and Brazil.

US

  • Support enterprise cybersecurity governance, compliance, and risk management programs.
  • Conduct security control assessments, audit readiness, and policy development.
  • Coordinate with technical teams and executive leadership to drive cybersecurity modernization.

ERP International is a nationally respected provider of health, science, and technology solutions supporting government and commercial clients. The company has been named a Top Workplace by WTOP News for 7 years and offers a culture of employee recognition, community outreach, and professional development.

$127,200–$205,100/yr
Global Unlimited PTO

  • Own and continuously improve Camunda's Information Security Management System (ISMS), driving measurable improvements.
  • Drive security audit cycles for ISO 27001, SOC 2, and future frameworks with minimal supervision.
  • Review information security requirements in customer contracts and lead responses to complex security questionnaires.

We are the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex business processes. We are a fully remote, global team trusted by over 700 organizations, named a GP Bullhound Next Unicorn and Great Place to Work certified.

$147,050–$220,800/yr
US

  • Lead IT governance and risk management, including executive reporting and risk register maintenance.
  • Develop KPI and KRI dashboards to translate complex data into actionable insights for senior leadership.
  • Oversee ITSM governance, ServiceNow optimization, and vendor risk management.

Our partner is a global organization operating in a sophisticated Governance, Risk & Compliance environment, connecting technology, cybersecurity, privacy, and operational risk. It fosters a collaborative culture with a focus on work-life balance and professional development.

US 3w PTO

  • Lead and advance governance, risk management, compliance, and information security programs to support organizational objectives and regulatory requirements.
  • Manage vulnerability management, third-party risk, security governance, policy development, and AI governance initiatives.
  • Partner with leaders to foster a culture of accountability, risk awareness, and continuous improvement.

Ultimate Medical Academy is a non-profit healthcare educational institution with a national presence, headquartered in Tampa, Florida and founded in 1994. The organization offers online and on-campus programs and fosters a culture of integrity, student success, and team member development.

US

  • Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
  • Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
  • Work with sponsors to automate manual processes and implement technical solutions for cyber defense.

Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.

India

  • Lead GRC activities including risk management framework, security assessments, and continuous monitoring for assigned systems.
  • Collaborate with engineering and security teams to integrate GRC principles into system lifecycles and DevSecOps practices.
  • Develop and maintain security documentation, support ATO processes, and provide risk briefings to leadership.

The partner company helps organizations strengthen cybersecurity programs through modern GRC practices and engineering expertise. It is a fully remote organization with a collaborative culture focused on technical excellence and professional growth.

US

  • Lead security architecture, engineering standards, and verification practices across enterprise environments.
  • Provide technical leadership to ISSO and ISSE teams overseeing compliance and continuous monitoring.
  • Manage ATO activities, risk assessments, and vulnerability management while ensuring Zero Trust alignment.

VetsEZ is a healthcare IT consulting firm supporting federal government modernization projects. The company fosters a collaborative and inclusive culture with opportunities for training and growth.

CISO

Eon
US

  • Own Eon's overall security strategy, roadmap, and budget, briefing the CEO and board.
  • Build and lead the security function, hiring and developing the team as the company scales.
  • Partner with engineering and product to embed secure-by-design principles and own detection, response, and vulnerability management.

Eon is transforming cloud backups into useful, active assets. Backed by leading investors, it has raised $500M and reached a $4B valuation, fostering a fast-paced startup culture.

$105,000–$155,000/yr
US

  • Provide expert guidance on cybersecurity policies, Risk Management Framework (RMF) processes, and security control implementation.
  • Conduct vulnerability assessments, penetration testing, and Cybersecurity Compliance and Readiness Inspections (CCRI).
  • Prepare detailed technical reports and briefings for senior leadership on cybersecurity findings and progress.

The company is a partner organization focused on cybersecurity and mission-critical IT environments. They offer a remote work culture and support complex security initiatives for government and enterprise clients.

Ireland 5w PTO

  • Lead the design and evolution of a multi-framework compliance offering for European businesses.
  • Drive end-to-end ISO 27001 implementations and manage a team of compliance specialists.
  • Act as a senior security partner to customers, sales, and product teams.

This company provides a security and compliance platform that helps modern businesses achieve certifications across frameworks like ISO 27001 and SOC 2. It is a fast-growing, remote-first technology environment with a strong emphasis on collaboration and team connection.

  • Build and lead the Cyber GRC function, including policy, NIST/CIS/ISO frameworks, and regulatory compliance.
  • Manage vendor risk and security assessments across the vendor lifecycle.
  • Drive security awareness, AI governance, and quantified cyber risk reporting.

Mariner is a leading financial services firm providing wealth management and advisory solutions to individuals and institutions. The company fosters a collaborative, innovative culture focused on professional growth, diversity, and work-life balance.

Europe 5w PTO

  • Lead security compliance initiatives across ISO 27001, SOC 2, GDPR, and more.
  • Conduct internal audits and mentor junior specialists.
  • Collaborate with product teams to integrate compliance requirements.

Our partner is a fast-growing technology company specializing in security compliance and automation for European businesses. They have a startup culture with a focus on innovation and collaboration.