Job Description vCISO & Privacy Advisory Consultant Location: 100% Remote – U.S. Preferred Type: 1099, Part-time, Project-based, Permanent Pay: $70-$90/hr Travel: Minimal (Fully remote model; travel is rare and generally not required) About Us: RSI Security is a leader in cybersecurity compliance and assessment services, helping organizations navigate complex regulatory frameworks and strengthen their security posture. We deliver independent, high-quality assessments across a range of standards including PCI DSS, CMMC, HITRUST, and emerging regulatory requirements. Our approach emphasizes technical depth, practical insight, and a commitment to delivering clear, actionable outcomes for our clients. We foster a collaborative, remote-first environment focused on continuous improvement, professional growth, and operational excellence. About the Role: As a vCISO & Privacy Advisory Consultant, you will lead and support client engagements focused on developing comprehensive privacy strategies, evaluating security controls, and providing strategic vCISO oversight. This role combines strategic advisory, privacy gap analysis, and vCISO support. You will work directly with client stakeholders to design privacy compliance programs, guide organizations toward achieving maturity in frameworks like CCPA/CPRA and GDPR, and provide expert IT security guidance. You will operate with a strong emphasis on privacy by design, technical accuracy, and clear communication, while contributing to RSI's service quality and client success. What You’ll Do Develop Privacy Compliance Programs: Lead the development and implementation of privacy frameworks such as CCPA/CPRA, GDPR, SOC 2 Privacy, and ISO 27701, ensuring alignment with regulatory requirements and data protection strategies. Conduct Privacy Gap Analyses: Perform thorough assessments of client environments to identify privacy gaps, map data flows, and outline remediation actions for both internal and external data. vCISO Strategic Advisory: Provide high-level leadership and oversight, developing long-term cybersecurity maturity roadmaps and advising on risk mitigation and incident response planning. Client Documentation & Policy Guidance: Assist clients in the creation and refinement of policies and procedures, ensuring technical documentation effectively reflects compliance requirements and organizational standards. Pre-Engagement Consultation: Support RSI client managers by assisting in scoping discussions, proposal contributions, and providing subject matter expertise for client engagements. Methodology & Knowledge Maintenance: Maintain up-to-date knowledge of evolving security frameworks and regulatory landscapes, ensuring all client advisory services reflect current industry best practices. What You’ll Bring Experience: 5+ years of IT experience, with 3+ years specifically in vCISO advisory roles and a heavy focus on Privacy regulations (CCPA/CPRA, GDPR, etc.). Certifications: CISM, CISSP, or CISA required. IAPP certifications (CIPP/US, CIPM) or ISO 27701 Lead Auditor highly preferred. QSA or other audit certifications are preferred but not required. Technical Acumen: Deep understanding of security controls, data protection architecture, and risk management principles. Ability to translate technical environments (cloud, network, and application layers) into strategic privacy and security recommendations aligned with regulatory requirements. Consulting & Engagement Management: Proven ability to lead advisory engagements, manage client relationships, and deliver high-quality strategic results on time. Communication Skills: Strong written and verbal communication skills, with the ability to present complex topics clearly to technical and executive audiences. Tools & Operations (Preferred): Experience with PSA or project management tools such as Monday.com, Asana, Mavenlink, or similar platforms Preferred Experience: Proficiency in additional compliance frameworks such as FedRAMP, CMMC, NIST, PCI DSS, and HITRUST. As a vCISO advisor, candidates should possess a strong working knowledge of these frameworks/standards to support diverse client needs. Additional compliance assessment certifications or extensive audit experience are preferred. Mindset We Value Take ownership and follow through without micromanagement Stay calm under pressure and manage shifting priorities effectively Solve problems proactively and continuously seek improvement Value structure, organization, and consistency in delivery Support team success and contribute to a collaborative environment Maintain a growth-oriented and professional mindset Why Join RSI? You will be joining a growing leader in cybersecurity compliance, working with diverse clients across industries and frameworks. We offer a fully remote environment, exposure to complex and evolving regulatory landscapes, and opportunities to expand your expertise across multiple domains. RSI Security is an Equal Opportunity Employer. We prioritize competence, qualifications, and the integrity of the certification process in all hiring decisions.
Salesforce Consultant - Systems Implementation Advisory
Bakertilly
Managing Consultant - Industry Advisory 4D
Genpact
Technology Audit & Advisory Senior Consultant
Roberthalf
Utility Advisory Consultant (all levels)
PA Consulting
Working Capital Advisory Senior Consultant
C2Fo
Advisory consultant & Communications Manager
Zealogics.com