Virtual Chief Information Security Officer (vCISO)
iCorps
Job Description
Job Description
Virtual Chief Information Security Officer (vCISO)
Woburn/Hybrid
About iCorps and the RoleiCorps Technologies has delivered IT consulting and managed services to mid-market clients since 1994. We specialize in cloud computing, cybersecurity, IT governance, and outsourced IT support. We are a Microsoft Solutions Partner and Cloud Service Provider, and a Microsoft US Partner Award Winner for Security and Compliance.
The virtual Chief Information Security Officer is a client-facing role. You are the security leader iCorps puts in front of its clients, bringing the experience and operational discipline of a seasoned CISO to organizations that cannot retain one full time. We expect security to be treated as an operational discipline, with clear priorities, measurable outcomes, realistic sequencing, and honest conversations when something is not working.
Scope of the RoleThe work spans three connected responsibilities, and a successful vCISO moves between them across a single engagement and across a portfolio.
1. Active Security Advisor. Provide hands-on advisory guidance on day-to-day security decisions: architecture choices, control implementation, vendor selection, configuration questions, incident calls, and the steady stream of judgment calls a maturing program generates. This pillar covers identity-first security and zero trust adoption, cloud posture across Microsoft 365, Azure, AWS, and Google Cloud, endpoint and detection strategy, MDR and XDR partnerships, ransomware resilience and tested recovery, third-party and supply chain risk, and the secure adoption of generative AI.
2. vCISO Alignment of Business, Governance, and Technical Control. Set and run the security program so the client is aligned to the frameworks that apply: NIST CSF 2.0, ISO 27001:2022, CMMC 2.0 (meaningful given our DoD-adjacent client base), SOC 2, HIPAA, PCI DSS 4.0, US state privacy laws led by CCPA, SEC cyber disclosure where applicable, and cyber insurance attestations. Translate executive intent into governance structure, governance into policy, policy into control, and control state into board-ready reporting. Stand up and run a recurring security committee at each client. Own AI governance specifically: the policies, review processes, and committee structure that let a client adopt AI tooling without losing control of their data.
3. Gap Analysis and Assessment. Run baseline assessments at engagement kickoff, periodic reassessments on an agreed cadence, and targeted assessments tied to events such as acquisitions, regulatory change, new product lines, or CMMC certification cycles. Produce remediation roadmaps with sequencing, ownership, and effort the client can fund and execute. Run post-incident assessments to verify whether controls performed the way the program described.
What You Will Do- Own the security program for each assigned client, with a written strategy, roadmap, and reporting cadence with the executive sponsor and, where applicable, the board or audit committee.
- Lead identity-first security: conditional access, PIM and PAM, least privilege, identity threat detection, and joiner-mover-leaver discipline.
- Drive cloud posture across Microsoft 365, Azure, AWS, and Google Cloud, including CSPM and SSPM findings, hybrid work controls, and SaaS-to-SaaS risk.
- Set the direction for detection and response, treating incident readiness (tabletops, runbooks, escalation paths, retainer relationships) with the same weight as incident response itself.
- Guide ransomware resilience: immutable backups, tested recovery objectives, recovery drills, and tabletop cadence at the executive level.
- Own third-party and supply chain risk, including vendor due diligence, SBOM awareness, and fourth-party exposure.
- Lead AI governance and the secure adoption of AI tooling across policy, technical configuration, and ongoing monitoring for shadow AI.
- Guide incident response when an event occurs, coordinating with legal, forensics, insurance, and law enforcement, and lead the post-incident review so lessons land in policy and controls.
- Partner with iCorps delivery teams so recommendations are implementable in the environments we manage.
- At least ten years in information security, with meaningful time in a leadership role. Prior CISO or deputy CISO experience is strongly preferred.
- Demonstrated experience running gap analyses against more than one major framework and translating findings into roadmaps clients funded and executed.
- Direct experience aligning a business to NIST CSF, ISO 27001, SOC 2, HIPAA, or CMMC, with enough range to pick up the others. CMMC 2.0 working knowledge is a meaningful advantage.
- A point of view on AI governance and the secure adoption of generative AI in a business setting.
- Fluency with modern identity, endpoint, cloud, and detection tooling, with enough depth to tell a good implementation from a bad one.
- Judgment on where to invest, where to defer, and where to accept risk, and the communication skills to explain that judgment to a CFO, general counsel, or board member.
- A bachelor’s degree in computer science, information systems, cybersecurity, or a related field, or equivalent experience.
Required at hire or within a reasonable onboarding window: CISSP or CISM.
Preferred: CCSP for cloud-heavy engagements, CRISC for governance and risk, CISA for audit, CMMC CCP or CCA for clients pursuing CMMC certification, and relevant GIAC certifications (GSLC, GCIH, GPCS) where they match the engagement focus.
Certifications are useful shorthand for baseline knowledge, not a substitute for the operational judgment the role demands.
How the Role RunsClient-facing advisory work delivered as a service. You manage a portfolio of clients with different risk profiles, maturity levels, and budgets. Cadence per client typically runs monthly operating reviews, quarterly executive reviews, and annual strategy refreshes, with formal gap analyses at kickoff and at least annually thereafter. Travel is occasional. Most work is remote, with onsite presence when it materially improves the engagement. The vCISO is part of iCorps’ managed security practice, with peer review on major client deliverables and a consistent point of view across the practice.
If you want to do real security work with clients who need it, in an environment that takes the craft seriously, we would like to hear from you.
$95.7k - $126.7k
The Security Department’s overall mission is to identify and counter security threats to... ...personnel, classified and unclassified information systems, personal identifiable... ...Linux, Ubuntu, Mac, etc.Experience with virtualization and Cloud technologies is preferredAbility...SuggestedCasual workRemote workFlexible hours$280k - $375k
...its integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance, and... ...risk management.Role OverviewBitsight is seeking a Chief Information Security Officer to lead and evolve our global security program. This role...SuggestedFull timeLocal areaFlexible hours$325k
...Posting Description CHIEF INFORMATION SECURITY OFFICER (CISO), Information Systems and Technology (IS&T), establishes and leads the enterprise-wide information security strategy across MIT. The CISO leads other overall direction and implementation of the information...SuggestedFull timeVisa sponsorship- ...that’s all in? At Imprivata, we deliver unified access and security management programs that eliminate friction, empowering... ...can make an impact—you’ll find it here.We are seeking a Chief Information Security Officer to join our team. This is a hybrid opportunity based out...SuggestedWork at officeLocal area
$243k - $365k
...Verily is seeking a passionate and experienced leader for the company’s centralized Security organization. The scope of Security encompasses security and privacy engineering, information security, and governance, risk, and compliance, in support of a wide range of...SuggestedFull timeWork experience placement$112.9k - $257k
...Opportunity: Everyone knows security needs to be “baked in” to a system... ...for access to classified information.CompensationAt Booz Allen, we... ...interviews (whether in-person or virtual) is prohibited unless... ...be performed at a Booz Allen office or customer facility, where employees...VirtualFull timeContract workPart timeWork at officeLocal areaRemote work$150k - $175k
...and industry best practicesBachelor’s degree in Engineering, Information Technology, or related field preferredCBS News and Stations, brings... ...’s most dynamic teams.Opportunities for both on-site and virtual engagement events.Unique opportunities to make meaningful connections...VirtualLive inLocal areaWeekend workDay shiftAfternoon shift$150k - $170k
...governance.Participate in risk assessments, security audits, incident response, and... ...initiatives spanning servers, storage, virtualization, Active Directory, Microsoft 365, Exchange... ...COMSOLThe Burlington, MA, location has offices instead of cubicles or an open-floor plan...Casual workWork at officeFlexible hours$77.5k - $176k
...looking for more and better information? Do you want a job where you... ...research skills to improve national security? Never has the role of an all... ...(whether in-person or virtual) is prohibited unless permission... ...be performed at a Booz Allen office or customer facility, where...VirtualFull timeContract workPart timeWork at officeLocal areaRemote work$105.4k - $207.8k
...threat landscape through scalable, resilient security operations solutions. In this hands-on... ...SecOps architectures for security information and event management (SIEM) and security... ...networking concepts such as IP networking, virtual private networks (VPNs), domain name system...VirtualLocal areaVisa sponsorship$97.61k - $188.38k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...Saviynt.Understand complex business and information technology management processes. Execute... ...Directory Architecture and Virtual DirectoriesInformation for applicants with...VirtualLocal areaVisa sponsorship- ...Reporting to the Global Chief Technology Officer, the Chief Information Security Officer (formerly known as the Global Security Officer) develops and maintains enterprise security and risk policies, oversees vendor management activities, and influences user behavior....Work at officeLocal area
$82.6k - $162.8k
...support organizations as they modernize security operations through advanced analytics, cyber... ..., and scale solutions using cyber and information technology telemetry dataA successful... ...natural language processing (NLP), chatbots, virtual assistants, computer vision, cognitive...VirtualLocal areaVisa sponsorship- ...Chief Information Security Officer (CISO) Location: TX (Hybrid) About BigRio BigRio is a Digital Transformation consulting firm headquartered in Boston, MA, specializing in data and analytics, custom development, software implementation, data analytics, and...
$250k - $350k
...Executive Chief Technology Officer, Defense (Remote Considered) Ainabl is delivering... ...revenue-generating quantum-secure networking systems for next... ...Interview: 45‑minute virtual call with CEO Technical Deep... ...your opportunity. Additional Information Location: Boston, MA, USA (...VirtualPermanent employmentRemote work- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security...
- ...Chief Information Security Officer (CISO) About the Company Trusted provider & publisher of consumer insights about car models & auto brands Industry Market Research Type Privately Held, Private Equity-backed Founded 1968 Employees 1001-5000...
- ...Chief Information Security Officer (CISO) About the Company Well-recognized private research university providing technology-first learning Industry Higher Education Type Educational Institution Founded 1861 Employees 5001-10,000 Categories...
- ...Chief Information Security Officer (CISO) About the Company Clinical-stage biotechnology (BioTech) firm Industry Biotechnology Type Public Company Founded 2012 Employees 51-200 Categories Biotechnology Medical Therapeutics Healthcare...
- ...education curriculum development virtual school online education... ...for technology safety and security, experience in partnering with data... ...required. Hiring Manager Title Chief Executive Officer Functions Information Technology Engineering...Virtual
$300k - $412.5k
...Role OverviewThe Chief Technology Officer (CTO) is a senior executive responsible for defining and executing... ...of a technology firm with the rigor, security, and regulatory expectations of a... ...trends, and competitive dynamics to inform technology and operating strategy.M&A...Full timeTemporary workFlexible hours- ...kA rapidly growing robotics startup that recently completed a successful Series B funding round is seeking an experienced Chief Technology Officer (CTO) to help lead the company through its next phase of growth. This is a rare opportunity to join the executive leadership...Full time
- ...seeking a Licensed Mental Health Therapist to provide high-quality virtual IOP and PHP-level care to teens, young adults, and families. In... .... Join a mission-driven, tech-enabled organization expanding access to inclusive, data-informed behavioral healthcare nationwide.Virtual
- ...better. Always hire up, never down. We partner with organizations of all sizes to explore, design, and implement AI strategies that are secure, scalable, and human-centered. We believe AI should amplify human potential, not replace it, and we build with that conviction in...Full timeFor contractorsRemote workDay shift
$63.35 per hour
...Job Description Job Description Salary: $63.35 Information System Security Officer III REQ: 26-J-0810 The ISSO is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close...For contractorsWork at officeImmediate startFlexible hours- ...intelligent insights. The RolePresidio is seeking Network and Security Practice Leads, in Boston MA. These individuals will be hands-... ...that drive strategic outcomes for clients globally. For more information, visit *****Applications will be accepted on a rolling basis.Presidio...Full timeFor contractorsLocal area
- ...scheduling. Responsibilities: Client Relations: Cultivate and nurture client relationships through effective communication. Virtual Presentations: Deliver engaging product demonstrations via online platforms. Sales Targets: Achieve individual and team sales...VirtualFull timeFor contractorsRemote workWork from home
- ...Clinical outcomes are equal to or better than inpatient hospitalization. Work in a team environment (Physicians, NPs, RNs) in a virtual Command Center Medically Home significantly reduces total medicine expense from avoidable inpatient visits, post-acute care...VirtualPart time
- ...Small Business. SUBJECT MATTER EXPERTS specializing in security and risk management. We’re intimately familiar with DOD... ...savings plan. At Watermark, our people come first! Information Systems Security Officer III The ISSO is responsible for ensuring the...Hourly payContract workFor contractorsWork experience placementWork at officeLocal area
- ...Hours: Monday-Thursday 6:00 am - 3:30 pm & Friday 6:00 am - 10:00 am. The role will probably last until the end of January. We can do virtual interviews only to save time. Job Summary: As an Animal Care/Support Associate for our Gnotobiotics production site in...VirtualTemporary workSeasonal work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Virtual Chief Information Security Officer (vCISO). Be the first to apply!
- virtual interview Woburn, MA
- flexible virtual Woburn, MA
- remote virtual Woburn, MA
- virtual Woburn, MA
- virtual work from home Woburn, MA
- work at home virtual call center Woburn, MA
- work from home virtual customer service Woburn, MA
- virtual customer service Woburn, MA
- virtual phone operator Woburn, MA
- information security lead Woburn, MA





