Virtual Chief Information Security Officer (vCISO)

cloudIT

$120K — $150K *
US-AnywhereRemote in Phoenix, AZ
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in information security, including 2+ years in a leadership or advisory role
  • Strong interpersonal skills to engage with IT leaders and non-technical business owners
  • Ability to manage multiple client engagements with competing priorities
  • Experience with managed service providers (MSPs) or technology service providers (TSPs) is a plus
  • Familiarity with security frameworks such as HIPAA, PCI-DSS, and NIST CSF

Responsibilities

  • Develop and manage practical, business-aligned security roadmaps
  • Present security posture updates to clients in actionable terms
  • Conduct risk and vulnerability assessments tailored to client environments
  • Build realistic risk treatment plans with business impact in mind
  • Guide clients through compliance frameworks and develop actionable policies
  • Lead incident response coordination and ensure stakeholder communication
  • Champion the adoption of cloudIT's security stack and assess vendor risk

Benefits

  • Health benefits including medical, dental, and vision coverage
  • 401(k) retirement plan with company match
  • Opportunities for certification sponsorship and continuing education
Full Job Description
Virtual Chief Information Security Officer
• cloudIT • Phoenix, AZ • In-Office

As a vCISO at cloudIT, you will serve as a fractional security leader for a portfolio of clients who do not have and cannot afford a full-time CISO. You will work from our Phoenix office, managing multiple client relationships simultaneously, building practical security programs around cloudIT's proven security stack. This role is equal parts strategist, communicator, and trusted advisor.

What You Will Do

Security Strategy and Leadership
• Develop and own practical, business-aligned security roadmaps built on cloudIT's security stack• Present security posture updates to IT leaders and business owners in clear, actionable terms• Track emerging threats and regulatory shifts across healthcare, real estate, financial services, and construction
Risk Management
• Conduct risk and vulnerability assessments calibrated to client environments• Prioritize remediation based on business impact, not just severity scores• Build realistic risk treatment plans clients can actually execute
Compliance and Governance
• Guide clients through HIPAA, PCI-DSS, CMMC, NIST CSF, and other relevant frameworks• Develop right-sized policies and procedures that are actionable, not shelf-ware• Conduct periodic audits and gap assessments using cloudIT's toolset
Incident Response and Management
• Build and test incident response plans suited to SMB realities• Lead response coordination during incidents, keeping stakeholders informed• Drive post-incident improvements supported by cloudIT's monitoring capabilities
Security Stack Adoption and Technical Oversight
• Champion cloudIT's stack including MDR, SIEM, endpoint protection, MFA, and cloud security controls• Ensure solutions are implemented correctly and delivering measurable value• Assess third-party vendor risk and guide secure procurement decisions
Client Relationship Management
• Manage a portfolio of clients, engaging at the right level for each organization• Show up as a trusted partner by proactively communicating risks and celebrating wins• Translate complex security concepts into plain language across industries and experience levels
What You Bring
• 5+ years in information security, with at least 2 years in a leadership or advisory capacity• Ability to engage effectively with both IT leaders and non-technical business owners• Comfort managing multiple client engagements with competing priorities• Experience working with or for an MSP or TSP is a strong plus
Preferred Certifications
CISSPCISMCISACCACCP
Framework Knowledge
NIST CSFISO 27001HIPAAPCI-DSSCMMC
What We Offer
Health BenefitsMedical, dental, and visionRetirement401(k) with company matchProfessional DevelopmentCertification sponsorship and continuing education
Ready to elevate security for Phoenix's businesses?

If you want to be part of a team that is genuinely changing how businesses think about security, we want to hear from you.

Similar Jobs

More Information Technology Jobs

Find similar Virtual Chief Information Security Officer (vCISO) jobs: