Deputy CISO
$180k - $220kRK&K
Deputy Chief Information Security Officer
RK&K's Baltimore office is seeking a Deputy Chief Information Security Officer to lead the development and execution of a dedicated cybersecurity program. Reporting directly to the Chief Information Officer, the Deputy CISO will be responsible for all cybersecurity operations, cyber risk management, security architecture, incident response, governance, compliance, and the long-term strategy required to protect RK&K's people, data, systems, clients, and business operations.
This is a foundational leadership role. This position will be responsible for building a standalone cybersecurity function from the ground up. The Deputy CISO will separate cybersecurity responsibilities from traditional IT operations, establish clear ownership of security controls and risk decisions, and create a scalable security operating model that supports RK&K's continued growth.
The Deputy CISO will partner closely with the CIO to define cybersecurity strategy, prioritize investments, strengthen cyber resilience, and align security initiatives with business objectives. This role requires a hands-on leader who can operate strategically while also building practical capabilities, policies, processes, tools, and teams.
Essential Functions
Cybersecurity Leadership and Strategy
• Serve as RK&K's senior cybersecurity leader responsible for day-to-day cyber operations and execution of the firm's cybersecurity roadmap.
• Partner with the CIO to develop, maintain, and execute a multi-year cybersecurity strategy aligned with RK&K's business goals, client expectations, regulatory obligations, and risk appetite.
• Provide regular reporting to the CIO and executive leadership on security posture, risk trends, major initiatives, incidents, metrics, and investment needs.
• Advise the CIO on cybersecurity budget priorities, technology investments, staffing plans, vendor selection, and risk tradeoffs.
• Create annual and multi-year security plans with measurable goals, timelines, milestones, and success criteria.
• Represent cybersecurity in strategic technology planning, enterprise architecture decisions, digital transformation initiatives, acquisitions, client requirements, and major business initiatives.
Cyber Operations
• Develop and lead RK&K's cyber operations program, including security monitoring, detection, response, vulnerability management, endpoint security, identity security, email security, cloud security, and threat management.
Governance, Risk, and Compliance
• Develop and lead RK&K's cybersecurity governance, risk, and compliance program.
• Lead a formal cyber risk acceptance and exception process.
• Align cybersecurity compliance with contractual, regulatory, client-driven, and industry-specific cybersecurity requirements.
Security Architecture and Engineering
• Establish security architecture principles, standards, and review processes for infrastructure, applications, cloud services, networks, endpoints, and identity platforms.
• Partner with IT operations and enterprise architecture teams to ensure security is embedded into technology design and implementation.
Data Protection and Privacy Support
• Establish data protection strategies for sensitive business information, client data, employee data, financial data, intellectual property, and regulated information.
• Establish security requirements for document management, collaboration platforms, file shares, project data, client deliverables, and mobile access.
Incident Response, Resilience, and Business Continuity
• Develop incident response policies, plans, playbooks, communication templates, escalation matrices, and decision trees.
• Conduct tabletop exercises with executive leadership, IT, legal, HR, finance, communications, and business stakeholders.
• Establish ransomware readiness plans, including containment strategies, backup validation, recovery priorities, communication plans, and decision-making processes.
• Ensure backup environments are protected from compromise, unauthorized deletion, encryption by ransomware, and credential abuse.
• Define and maintain metrics for mean time to detect, mean time to respond, incident volume, root causes, recurring issues, and control failures.
Required Skills and Experience
• Bachelor's degree in computer science, information technology, business administration, or related field.
• 10 or more years of progressive experience in information technology, cybersecurity, risk management, security engineering, infrastructure, or related disciplines.
• 5 or more years of cybersecurity leadership experience, including responsibility for security operations, incident response, governance, or cyber risk management.
• Experience developing cybersecurity strategy, roadmaps, policies, standards, operating models, and governance processes.
• Strong understanding of cybersecurity operations, including monitoring, detection, response, vulnerability management, endpoint security, identity security, and incident response.
• Experience with cyber risk assessments, risk registers, control maturity assessments, remediation planning, and executive risk reporting.
• Experience leading incident response activities, tabletop exercises, post-incident reviews, and cyber crisis coordination.
• Familiarity with enterprise security technologies such as SIEM, EDR/XDR, MDR, vulnerability management platforms, firewalls, email security, identity platforms, DLP, CASB, PAM, and cloud security tools.
• Strong knowledge of identity and access management, privileged access, multi-factor authentication, conditional access, single sign-on, and access reviews.
• Experience supporting security audits, client questionnaires, contract security requirements, cyber insurance, or compliance reviews.
• Ability to lead strategically while also operating hands-on in a developing security environment.
Preferred Skills and Experience
• Professional certifications such as CISSP, CISM, CISA, CRISC, GIAC, CCSP, CGRC, or similar credentials.
• Experience supporting organizations with distributed offices, remote employees, field operations, project-based work, or client-driven security requirements.
• Experience developing or overseeing managed detection and response, managed SOC, or co-managed security operations models.
• Experience with data classification, data loss prevention, records management, secure collaboration, and document protection.
• Experience with business continuity, disaster recovery, ransomware readiness, and backup resilience.
• Experience presenting cybersecurity risks, plans, and investment needs to executive leadership or board-level audiences.
• Experience leading organizational change, especially where security responsibilities are being separated from legacy IT operations.
Other Duties
This job description indicates the general nature and level of work, knowledge, skills, abilities, and other essential functions (as covered under ADA). It is not designed to cover or contain a comprehensive listing of all activities and duties required of the employee. Other duties are assigned as required.
What We Offer
RK&K offers excellent potential for career advancement and professional growth. We also offer attractive compensation packages commensurate with experience and a comprehensive benefits package including:
- Paid time off
- Matching 401(k) plan
- Student Loan Retirement Match Program
- Paid Holidays
- Tuition reimbursement
- Health, dental, vision, life, and disability insurances
- Paid parental leave
- Wellness programs and employee resource groups
- Career Development
- Much, much more!
Why RK&K?
As a full-service engineering and construction management firm, RK&K gives you the opportunity to directly impact the communities in which we live and work. What sets RK&K apart is an award-winning culture that has fostered a spirit of collaboration and trust for over 100 years. To its clients, the firm delivers concepts, processes, and outcomes designed for success. RK&K has earned its reputation as a trusted partner, responsive employer, and community steward.
Design your career at RK&K—Apply Today!
Visa Sponsorship: This position is not eligible for employer-sponsored work authorization. Applicants must be currently authorized to work in the United States without the need for current or future sponsorship.
Salary Range: $180K-$220K
- ...Chief Information Security Officer (CISO) - Non Profit & Associations ~ Information Technology Hartman Executive Advisors was founded with the vision of providing business-focused, vendor-independent consulting to mid-sized companies. As independent, trusted strategic...SuggestedFull timeTemporary work
$113.16k - $146.39k
...Services Administration25 S. Charles StreetBaltimore, MD 21201Main Purpose of Job The main purpose of this position is to serve as the Deputy Executive Director of Operations. In this capacity, the incumbent directly assists the SSA Executive Director in developing the...SuggestedFull timeContract workRemote work- ...Hartman Executive Advisors is seeking a Chief Information Security Officer (CISO) to lead holistic Information Technology Security Programs across Hartman’s financial services client portfolios, primarily consisting of community banks and credit unions that address the...Suggested
- A leading engineering firm is seeking a Deputy Project Manager for their Energy/Institutional/Commercial Team in Baltimore, Maryland. This role involves site/civil design for energy clients and mentoring entry-level staff. The ideal candidate will have a Bachelor's degree...Suggested
- ...Hartman Executive Advisors seeks a seasoned Chief Information Security Officer (CISO) to lead holistic IT security programs for nonprofit and association clients. You will influence executive leadership, shape cybersecurity, risk, and compliance strategies, and drive...Suggested
- ...meaningful work and grow your career. Let’s see what we can achieve. Together. Summary The Chief Information Security Officer (CISO), working in collaboration with and in support of the firm’s strategic initiatives, is a senior executive responsible for protecting...Full timeWork at officeRemote workRelocationVisa sponsorshipRelocation package
$112k - $179k
ResponsibilitiesPeraton is seeking a Information Systems Security Officer in our Linthicum, MD office in support of our Department of Defense (DoD) customer as part of a highly talented, highly motivated, and high-performing team. This position offers a unique opportunity...Full timeContract workWork at officeMonday to FridayShift work$104k - $166k
ResponsibilitiesPeraton is seeking a Cybersecurity Vulnerability Analyst in our Linthicum, MD office in support of our Department of Defense (DoD) customer as part of a highly talented, highly motivated, and high-performing team. This position offers a unique opportunity...Contract workWork at officeShift work$125k - $175k
...critical to sustaining and advancing executive-level reporting, business management, and governance activities across the Office of the CISO. The Vice President will own high-visibility cyber reporting processes, including the Cyber Executive Reporting Dashboard, board-...Temporary workWork at office$160k - $230k
As the Global Cyber and Intelligence Partnerships Lead, you will establish, build, and manage relationships with key stakeholders across government, the intelligence community, peer financial institutions, and cybersecurity associations. You will play a critical role in...Temporary work- Digital Forensic Analyst Employment Type: Full-Time, Mid-Level Department: Forensics CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation & collection of mobile device and cloud‑stored data. The ideal candidate should be fluent in ...Full timeWork at officeRemote workFlexible hours
$112k - $179k
ResponsibilitiesPeraton is seeking a Cyber R&D Analyst/Service Manager in our Linthicum, MD office in support of our Department of Defense (DoD) customer as part of a highly talented, highly motivated, and high-performing team. This position offers a unique opportunity ...Contract workFor contractorsWork at officeShift work- ...latency global networking that supports 40% fully remote workforce and geographically dispersed engineering teams.* Partnering with the CISO, Lead the evolution toward hybrid/multi-cloud environments, software-defined data centers, and zero-trust security architectures.**...Work at officeRemote workFlexible hours
$90k - $100k
(Only QUALIFIED Healthcare Professionals accepted) Chiropractor - Chiropractor Baltimore (Pikesville) MD $90K-$100K | Great Benefits | Established Practice We are looking for a motivated Chiropractor to join our practice full time in Pikesville, MD a suburb just North...Full timeWork at office$105.4k - $207.8k
Position Summary As a Full Stack Engineer Senior Consultant in Deloitte Cyber’s Digital Trust & Privacy practice, you will operate at the intersection of client-facing advisory, product engineering, and hands-on technical delivery. You will help clients address ...Local areaVisa sponsorship$105.4k - $207.8k
Position Summary Cyber Senior Consultant - DevSecOps Position Summary Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional...Local areaWorldwideVisa sponsorship- DescriptionSAIC is seeking a Damage Assessment Management Office (DAMO) Cyber Triage Analyst with an active Top Secret clearance to support the Office of the Under Secretary of Defense for Research and Engineering (OUSD R&E) Damage Assessment Management Office (DAMO) Defense...Work experience placementWork at office
$105.4k - $207.8k
Position Summary Join Deloitte’s Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support high-visibility engagements...Local areaVisa sponsorship$97.61k - $188.38k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions...Local areaVisa sponsorship$134.5k - $265.1k
Position Summary Deloitte’s Cyber team helps clients address evolving cybersecurity challenges and opportunities by delivering solutions and managed services that reduce complexity, strengthen resilience, and support confident growth. As a Google SecOps Manager supporting...Local areaVisa sponsorship$90k - $110k
Chiropractor Baltimore (White Marsh) MD Urgently Hiring Full Time | $90K - $110K+ per year (DOE) + Bonus Opportunities | Full Benefits We are seeking a dynamic, motivated Chiropractor to join our growing multidisciplinary practice full time in Maryland with ...Full timeTemporary workImmediate start- The Joint Chiropractic in Owings Mills, Maryland is seeking a Chiropractor to deliver quality chiropractic care. The role involves consulting with patients, performing adjustments, and educating them on chiropractic benefits. A Doctor of Chiropractic degree and valid DC...Full timeFlexible hours
- Looking for a new way of delivering quality chiropractic care? The right adjustment is all it takes. Here at The Joint Chiropractic, we’ve got your back. As one of our doctors, you will find that our unique operating model gives you all the support you need to focus on ...Full timeMonday to Friday
$176k - $282k
...unclassified systems.Experience in the last five years briefing a Chief Information Officer (CIO) or Chief Information Security Officer (CISO) on agency-wide planned, recommended, and directed actions to enable operational effectiveness.Infrastructure & Network Expertise...Contract workFor contractorsWork at officeLocal areaShift work- Born in 1993, Excelsia Injury Care’s mission is to restore quality of life through patient-centric care and support for those injured in motor vehicle or work-related accidents. With over 100 patient care centers across the Mid-Atlantic, Midwest, and Mountain West regions...Local area
- HEALTHCARE RECRUITMENT COUNSELORS is seeking a motivated Chiropractor to join an established practice in Pikesville, MD, a suburb of Baltimore. This full-time role offers a competitive base with bonuses and comprehensive benefits, including health insurance and retirement...Full time
- HCRC consulting in Maryland is seeking a motivated Chiropractor to join our established practice full time in Pikesville. You will work to build long-term relationships with patients and provide high-quality, individualized care with strong manual adjusting skills. Ideal...Full time
$68.15k - $115.86k
Under limited supervision, the Cyber Security Analyst I / Systems Administrator is primarily responsible for the access management, auditing and deployment of user-based permissions to GBMC systems, electronic data and ensuring the overall safety of Information System ...Local areaImmediate start$135.8k - $203.6k
RELOCATION ASSISTANCE: Relocation assistance may be availableCLEARANCE REQUIRED FOR START: YesCLEARANCE TYPE: Top SecretTRAVEL: Yes, 10% of the Time Description At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact...Full timeLocal areaRemote workRelocation packageFlexible hoursShift work$105.4k - $207.8k
Position Summary Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions ...Local areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Deputy CISO. Be the first to apply!
- information systems security officer sso
- business information security officer
- chief information security officer ciso
- remote ciso
- business information security officer biso
- information systems security officer
- information security officer iso
- information security officer
- chief information security officer
- ciso



