Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Fractional CISO

Reflexion

Fractional CISO

This is a fully remote (work-from-home) position. Work from anywhere in the United States. Contract / fractional · ~15–25 hrs in the first 60 days, then ~5–10 hrs per quarter

About Reflexion

Reflexion Interactive Technologies builds neuro-cognitive and physiological sensing technology — vision-performance training and respiration-waveform sensing — used by athletes, teams, and now a global consumer-eyewear partner. We are a ~10-person, AWS-hosted company based in Lancaster, PA, closing enterprise partnerships that bring enterprise-grade vendor-security requirements with them.

The Role

We are hiring a fractional CISO to be the accountable security executive behind our compliance program as we finalize a major enterprise deal. This is not a build-a-SOC, hire-a-team role: our application-layer security is strong (bcrypt, encrypted sessions, CSRF, parameterized SQL, strict CSP, MFA/RBAC, AES-256 at rest, TLS 1.2+), our compliance calendar and evidence pipeline are run day-to-day by an internal compliance system, and engineering is handled by our CTO. What we need is the credentialed human who signs, validates, and represents.

You will work directly with the CEO (deal owner) and CTO (implementation owner). Our internal compliance agent drafts the documents, tracks the obligations register, and maintains the evidence locker — you review, correct, and put your name on what is true.

What You Will Do — First 60 Days
  • Review and harden our Statement of Applicability + evidence package (ISO 27001/NIST-mapped) responding to an enterprise customer's Information Security Addendum — built largely from an existing, customer-reviewed evidence base.
  • Sign the risk assessment and SoA as the named security officer; be the security contact enterprise vendor-risk teams can call.
  • Sit on 2–3 customer security-diligence calls (enterprise vendor-risk / InfoSec reviewers) alongside the CEO.
  • Validate what we attest against reality with the CTO (controls verification and gap triage: centralized logging, admin RBAC/audit trail, secrets management).
  • Advise on a security-exception / compensating-controls request and, if required, scope a right-sized SOC 2 Type I path (RFQs prepared; you would manage auditor selection and the engagement).
  • Scope and manage our first external penetration test (vendor shortlist ready) and own findings triage with the CTO.
Ongoing — A Few Hours A Quarter
  • Quarterly review of the compliance-calendar output (access reviews, risk-assessment refresh, training, phishing simulations, BC/DR and restore tests).
  • Annual re-attestation support; named contact for customer audits under contractual audit rights.
  • Incident readiness: review our breach-notification runbook (24–72h contractual clocks) and advise if an incident ever triggers it.
  • Tell us when a new deal's requirements genuinely change our posture — versus when to negotiate them down. We optimize for minimum-viable compliance and want a partner who respects that philosophy rather than gold-plating.
What We Are Looking For
  • Prior CISO / vCISO / security-lead experience at a company that sold to large enterprises — you have personally survived enterprise vendor-risk review (security questionnaires, information-security addenda, right-to-audit clauses) from the vendor side.
  • Hands-on fluency with ISO 27001 / NIST CSF control mapping, SOC 2 (readiness through audit), and pragmatic compensating-controls / security-exception practice.
  • Comfortable being the named, accountable individual — signing SoAs and risk assessments, taking customer calls, standing behind attestations.
  • Technical enough to verify controls in an AWS + Cloudflare stack with the CTO (IAM, KMS, CloudTrail/logging, network posture) — you do not implement, but you cannot be bluffed.
  • Working knowledge of HIPAA applicability analysis (we maintain a no-PHI / not-a-business-associate posture and need it defended, not expanded) and GDPR-adjacent vendor obligations (we have EU counsel; you coordinate, not own).
  • Plain-spoken, fast, allergic to compliance theater. You will be asked "is this actually required, or negotiable?" constantly — we want the honest answer.
  • Bonus: consumer wellness / health-adjacent data classification; EU AI Act awareness; prior work with AI-assisted compliance tooling.
What This Is Not
  • Not full-time, and no conversion pressure — genuinely fractional.
  • Not a program-build from zero: policies (v1.0), an evidence base, an obligations register, a DPA/SCC pack, and counsel relationships already exist.
  • Not an implementation role: engineering changes belong to the CTO; you verify and advise.
Engagement & Compensation

Hourly contract (rate DOE) or an equivalent small monthly block. Front-loaded first 60 days (~15–25 hours), then ~5–10 hours per quarter. Direct line to the CEO and CTO. NDA required; the work references a Fortune-Global-500-scale counterparty under confidentiality.

How To Apply

Send a short note covering: (1) an enterprise vendor-security review you got a small company through — what you accepted and what you pushed back on; (2) your hourly rate and availability over the next 60 days. Resume/LinkedIn welcome; the note matters more.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Fractional CISO in United States vacancy
  • Security1stconsulting is seeking a senior-level advisor to serve as fractional CTO and CISO for a county Sheriff's Office. The role reports to the Sheriff and collaborates with the IT Services Division to guide strategic technology and cybersecurity initiatives in a government... 
    Suggested
    Work at office

    Security1stconsulting

    Pomona, CA
    3 days ago
  •  ...Fractional CISO This is a fully remote (work-from-home) position. Work from anywhere in the United States. Contract / fractional · ~15–25 hrs in the first 60 days, then ~5–10 hrs per quarter About Reflexion Reflexion Interactive Technologies builds neuro-cognitive... 
    Suggested
    Hourly pay
    Full time
    Contract work
    Temporary work
    Remote work
    Work from home

    Reflexion

    Lancaster, PA
    28 days ago
  •  ...Fractional CISO Consultant Location: India (Remote) Duration: Ongoing Part-Time Position Overview: We are seeking an experienced and results-oriented fractional CISO to lead due diligence of SaaS product companies around their compliance, privacy, and security... 
    Suggested
    Ongoing contract
    Part time
    Remote work

    Saviance

    Boston, MA
    2 days ago
  •  ...Chief Technology Officer (CTO) – Precise Behavioral, Inc. - FRACTIONAL Overview We are seeking a hands‑on, strategic Chief Technology Officer (CTO) to lead the continued evolution and scaling of our technology platform at a critical stage of growth. As a company... 
    Suggested

    Gofractional

    Thousand Oaks, CA
    4 days ago
  •  ...Seeking a hands-on Fractional Chief Technology Officer to commit approximately 20 hours per week in a remote capacity, responsible for owning the technical strategy and execution for scaling an online education platform, including managing the technical roadmap, writing... 
    Suggested
    Remote work

    Virtual Vocations Inc

    United States
    11 hours ago
  •  ...Job Description Salary: 80k - 200k Overview We are seeking an experienced, business-minded technology leader to serve as a Fractional CTO or Technology Strategy Advisor across a portfolio of clients. This role combines high-level strategic leadership with... 
    Full time
    Temporary work
    For subcontractor
    Interim role
    Shift work

    Innovative Incorporated

    Hagerstown, MD
    29 days ago
  •  ...Fractional CTO Position Summary The Fractional CTO serves as a dedicated technology leader for assigned enterprise clients, partnering closely with organizations throughout the Omaha metropolitan area to align business goals, operational needs, and technology investments... 
    Full time
    Immediate start

    InfiNet Solutions

    Omaha, NE
    a month ago
  •  ...Join to apply for the Fractional CTO role at Right Balance ® Headquartered in Los Angeles, California, Right Balance provides top-tier technology talent for innovative companies in the US. We’re in the top 50 companies to watch in LA. Ideal Candidate Technical leaders... 
    Full time
    Contract work
    Part time
    Remote work
    Work from home

    Right Balance ®

    New York, NY
    5 days ago
  •  ...Fractional CTO- Digital Transformation Location: New York, NY, 50% Hybrid Work Environment Duration: Long Term, but it would be part-time Our start-up healthcare client is looking for a Fractional Chief Technology Officer (CTO 50%) to lead, direct, plan, and manage... 
    Part time

    Saviance

    New York, NY
    4 days ago
  •  ...subscription infrastructure to serve a rapidly growing base of individual and enterprise customers. We're looking for a hands-on Fractional CTO to own our technical strategy and execution as we scale from a course-purchase platform into a broader subscription, package,... 
    Part time
    Remote work

    Learntastic

    Dallas, TX
    8 days ago
  •  ...Job Description Job Description Description: Engagement Summary CG Financial Services seeks a Fractional Chief Information Officer (FCIO) to provide executive technology leadership, decision ownership, and execution accountability. The initial focus will be... 
    Contract work
    Interim role

    CG Financial Services

    Williamston, MI
    23 days ago
  •  ...the technology industry. We are currently looking to build our marketplace with HR leadership talent and have multiple needs for fractional chief people officers within our community of hiring companies.   Position Overview: Builds world-class HR functions. Typical... 
    Full time
    For contractors
    Start working today
    Remote work
    Flexible hours

    HireScale

    Minneapolis, MN
    more than 2 months ago
  •  ...Position Summary Just A Start is seeking a fractional Chief Technology Officer / Technology Advisor to provide strategic technology leadership, vendor oversight, and internal guidance as the organization continues to strengthen its technology infrastructure, cybersecurity... 
    Hourly pay
    Part time
    For contractors
    Remote work

    Just A Start

    Cambridge, MA
    28 days ago
  •  ...Just A Start in Cambridge, MA seeks a fractional Chief Technology Officer / Technology Advisor to provide strategic technology leadership, vendor oversight, and cybersecurity guidance as the organization strengthens its IT infrastructure and planning. The role is part... 
    Part time
    For contractors
    Remote work

    Just A Start

    Cambridge, MA
    1 day ago
  •  ...BEFORE APPLYING Demand Generation Manager – Cybersecurity & AI (Fractional | Remote) Location: Remote Working Pattern: Part-Time /...  ..., publishing and engagement reporting Shaping messaging for CISOs, risk leaders, compliance teams, SMEs and innovation leaders... 
    Full time
    Part time
    Remote work
    Flexible hours

    Rosie's People

    New York, NY
    8 days ago
  • $150k - $160k

    SMB Team is seeking a full‑time internal Fractional CTO to serve our portfolio of law‑firm owner clients. The role involves delivering AI readiness assessments and ongoing fractional CTO services to small law firms, helping them adopt AI tools, strengthen their technology... 
    Full time
    Work at office
    Work from home
    Flexible hours

    SMB Team

    New York, NY
    2 days ago
  •  ...The Fortinet Field CISO is a senior security, technology and policy advisor with a focus on thought leadership and being a trusted...  ...or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO) ~ Familiarity with AI/ML-driven security tools and emerging... 
    Work experience placement

    Fortinet

    Dallas, TX
    5 days ago
  • A growing FinTech company based in the US is seeking an experienced Fractional CTO to guide their technical organization during a period of rapid growth. The ideal candidate will have a strong background in technical leadership and FinTech, with proven success in scaling... 
    Remote job
    Full time

    Right Balance ®

    New York, NY
    10 hours ago
  • The Opportunity We are looking for a Fractional Chief Information Officer to lead the operational and strategic side of our technology function. The CIO is a senior executive responsible for our internal technology strategy, digital transformation, and technology-driven... 
    Part time

    Gofractional

    San Diego, CA
    1 day ago
  •  ...Job Summary Founding Fractional Chief Executive Officer Location: Illinois Position Type: Fractional Executive Leadership Assignment Reports Directly To: Chairman of the Board of Directors This is not an interim management assignment. This is not a consulting... 
    Full time
    Interim role
    Immediate start

    Gofractional

    Crete, IL
    4 days ago
  • $200k - $300k

     ...will serve as the senior cybersecurity practitioner and virtual CISO to a growing portfolio of mid-market clients (typically $25M–$1...  ...12 clients, providing executive-level security leadership on a fractional basis Conduct security risk assessments, gap analyses, and... 
    Summer work
    Remote work

    Interdependence

    Chicago, IL
    3 days ago
  • $280k - $375k

     ...CTO, CPO, Head of Marketing, Head of PeopleThe ObjectiveWe are seeking a strategic, operationally rigorous, and commercially engaged CISO who views security not as a cost center, but as a product differentiator and a catalyst for global trust. You will protect our... 
    Full time
    Local area
    Flexible hours

    Bit Sight

    Boston, MA
    3 days ago
  • $280k

    Agency: Federal Deposit Insurance CorporationDepartment: Other Agencies and Independent OrganizationsSalary: Starting at $280,000 Per year (EM 00)Dates: Open 08/03/2026 to 08/14/2026Schedule: Full-timeWork type: PermanentRelocation: FalsePosition ID: 2026-EM-PJN-0211Document...

    United States Government

    Washington DC
    4 days ago
  • $237.5k - $390k

     ...Title: Chief Information Security Officer (CISO)Location: Austin, TX / Morristown, NJ (hybrid)Reports To:Chief Technology OfficerAbout Hippo:Hippo was built on a promise: make homeownership effortless. Nearly a decade later, that mission still drives us. We use technology... 
    Temporary work
    Flexible hours

    Hippo Insurance

    Austin, TX
    10 hours ago
  • About MasterControlMasterControl Inc. is a leading cloud-based quality and compliance software provider for life sciences and other regulated industries. Our mission is to enableour customers to bring life-changing products to market faster while ensuring compliance and...
    Full time

    MasterControl

    Salt Lake City, UT
    3 days ago
  • $325k

     ...Posting Description CHIEF INFORMATION SECURITY OFFICER (CISO), Information Systems and Technology (IS&T), establishes and leads the enterprise-wide information security strategy across MIT. The CISO leads other overall direction and implementation of the information... 
    Full time
    Visa sponsorship

    Massachusetts Institute of Technology

    Cambridge, MA
    3 days ago
  •  ...and enterprise solutions.This career opportunity may be a good match for you if you possess the following:A proven track record as a CISO or SVP of Security in high-growth technology organizations — ideally companies building or deploying AI systems at scale.Strong... 
    Full time
    Work at office
    Local area
    Remote work
    Home office

    Cohere

    New York, NY
    2 days ago
  •  ...regulator, inside a risk assessment, or reviewing a piece of technical architecture as part of a lean team. You'll start as Deputy CISO, Americas, with a clear and genuine path to taking on the full Regional CISO role as you build track record in the seat. How quickly... 

    United States Digital Space LLC

    New York, NY
    4 days ago
  •  ...Overview A chief information security officer (CISO) is a senior executive responsible for managing an organization’s information security strategy. The role includes leading cybersecurity governance and risk management to protect digital assets, ensure regulatory... 

    GRAND CANYON UNIVERSITY

    Boise, ID
    10 hours ago
  • Define and execute the company's enterprise security strategy, aligned with business objectives and compliance obligations (including FedRAMP). Own security governance, policies, standards, and risk management practices across the organization. Embed security-by...

    Jobtailor

    Salt Lake City, UT
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Fractional CISO. Be the first to apply!