Virtual Chief Information Security Officer (vCISO) / Security Director
FyerxJob Description
This is a remote position.
Virtual Chief Information Security Officer (vCISO) / Security Director
Job Details
- Employment Type: Contract
- Work Mode: Remote
- Location: Offshore
- Total Experience Required: 12+ years
- Relevant Experience Required: 6+ years of dedicated executive cybersecurity leadership and corporate strategy design experience
- Mandatory Certification: Certified Information Security Manager (CISM) or Certified Information Systems Security Professional (CISSP)
Job Summary
We are seeking an experienced vCISO / Security Director to serve as a senior strategic advisor and lead our comprehensive enterprise information security program. The ideal candidate will govern multi-million dollar security budgets, define long-term corporate security roadmaps, present risk posture profiles directly to C-suite executives, and align security architecture goals to power ongoing business enablement.
Key Responsibilities
- Formulate the overarching enterprise cybersecurity strategy, establishing a mature information security roadmap, resource distribution models, and technology modernization goals.
- Serve as the primary security representative to the C-suite and Board of Directors, translating complex technological vulnerabilities into high-impact operational risk matrices and strategic business trade-offs.
- Govern corporate security investment architectures and budgets, reviewing technical vendor selections, validating ROI on protection layers, and tracking third-party service delivery margins.
- Direct high-level incident command response frameworks, orchestrating communication lines across corporate legal, public relations, technical, and executive tracks during critical security events.
- Enforce absolute organizational compliance governance structures, validating that systemic protective standards meet active SEC mandates, global operational privacy acts, and local industry certifications.
- Mentor and guide multidisciplinary cybersecurity execution divisions, defining career growth targets, performance measurement metrics, and technical skill requirements for security leaders.
- Lead cross-functional enterprise crisis threat management simulations, pressure-testing internal detection frameworks, continuity mechanics, and recovery pipelines.
Requirements
- 5 to 8 years of core cybersecurity systems engineering experience, with 4+ dedicated years actively running complex post-breach digital forensic track assessments.
- Strong technical mastery of advanced forensic software environments (e.g., EnCase, FTK, Volatility, X-Ways Forensics), memory acquisition tools, and packet analysis suites.
- Deep structural understanding of file system layout matrices (NTFS, EXT4, FAT), operating system log architectures, network layer packet capture parsing, and malware persistence mechanics.
- Mandatory certification: GCFA, GCIH, or CCE.
Preferred Qualifications
- Prior experience dealing with ransomware negotiations or navigating high-stakes ransomware containment events under tight timeline expectations.
- Scripting background in Python or Perl used to build custom string searching queries or parse non-standard database application trace files.
Benefits
- 12+ years of total IT software engineering or operational management background, with 6+ dedicated years acting as a CISO, Director of Security, or Principal Enterprise GRC Advisor.
- Strong visionary mastery of modern security trends, zero-trust target states, risk calculation paradigms, and multi-cloud information landscape parameters.
- Deep communication execution skills, with a proven history of negotiating security budgets, steering board panels, and handling high-pressure public communication events.
- Mandatory certification: CISM or CISSP.
Preferred Qualifications
- Certified in the Governance of Enterprise IT (CGEIT) or Certified in Risk and Information Systems Control (CRISC) credential.
- Prior experience steering complex post-merger information platform integrations or stabilizing security posture profiles during major corporate equity restructurings.