Thrive Logo

Thrive

vCISO

Reposted 10 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The vCISO role involves assessing clients' Information Security Programs, developing risk management strategies, and ensuring compliance with governance and regulatory obligations while collaborating with IT resources and executive leadership.
The summary above was generated by AI

About Us

Thrive is a rapidly growing, industry leading technology solutions provider focusing upon Cloud, Cyber Security, Networking, Disaster Recovery and Managed Services. Our mission is to become the largest and most respected provider of NextGeneration managed services, serving emerging, mid-market, and enterprise customers alike.  We are a transnational company presently operating throughout the US and in the UK, Australia, Canada, Hong Kong, the Philippines and Singapore. We have a rich history growing organically and through strategic acquisitions, having completed nearly two dozen acquisitions since our founding.      

Position Overview 

Work with Thrive’s vCISO Service clients to assess their current Information Security Program and develop an appropriate, business aligned strategy to establish a proactive approach to cyber risk management. Implement customized, risk-based Information Security Programs and the associated controls frameworks to complement each client’s business and IT operations. Ensure all Governance, Regulatory and Compliance obligations are addressed from an Information Security perspective. Be a trusted advisor and “go-to” resource for Senior IT and Executive Leadership for all things relating to Information Security. 

Responsibilities 

  • Serve as Information Security Subject Matter Expert for Executive leadership. 

  • Develop annual strategic plans and supporting project roadmaps. 

  • Collaborate and coordinate with internal IT resources to execute the security plan. 

  • Create remediation plans for all security assessments. 

  • Conduct annual risk assessments. 

  • Coordinate Penetration Tests with third parties. 

  • Collaborate with customers on policy development and implementation. 

  • Assist with Security Incident Response and tabletop exercises. 

  • Mentor client technical resources as requested 

  • Performs assessments with clients in the following areas:  

  • Information Security Strategy 

  • Information Security Governance 

  • Information Security Program Development and Management 

  • Information Security Risk Management 

Qualifications 

  • Bachelor’s Degree or equivalent work experience in cybersecurity (MBA preferred) 

  • 5+ years’ experience Information Security Preferred 

  • Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM) 

  • Expert in security frameworks such as CIS, NIST, CMMC, HIPAA/HITECH, PCI-DSS, ISO 27001/2 

Similar Jobs

2 Hours Ago
Remote
USA
580K-780K Annually
Senior level
580K-780K Annually
Senior level
Software
Lead and evolve enterprise and client-facing cybersecurity strategy, governance, and incident response. Build scalable security services (vCISO, managed security), advise executives and clients, manage vendors, embed security into products, and drive risk-based KPIs to support revenue and retention.
Top Skills: DyoguardHipaaIso 27001NistSoc 2Vciso
3 Hours Ago
Remote
USA
120K-140K Annually
Expert/Leader
120K-140K Annually
Expert/Leader
Software
Serve as a virtual CISO advising executive teams and leading client security programs. Develop security strategy, roadmaps, governance, incident response, risk assessments, vendor risk programs, and executive reporting. Translate technical risk into business impact, embed security with IT and business leaders, and support client growth across engagements while delivering hands-on assessments and program execution.
Top Skills: CisIsoNist
3 Days Ago
Remote
USA
500K-550K Annually
Expert/Leader
500K-550K Annually
Expert/Leader
Software
Serve as a virtual CISO advising executive teams: develop enterprise security strategies and roadmaps, lead incident response and breach investigations, conduct risk and maturity assessments aligned to NIST/CIS/ISO, build security and third‑party risk programs, deliver executive reporting, and partner with IT to embed security across operations while supporting client growth and multiple engagements.
Top Skills: CisCisaCismCisspIncident ResponseIsoNistRisk ManagementSecurity GovernanceVendor Risk Management

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account