> Markdown version of [/jobs/ext/1216562-ciso-program-delivery-leader-cybersecurity-services](https://www.wearedevelopers.com/jobs/ext/1216562-ciso-program-delivery-leader-cybersecurity-services). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CISO Program Delivery Leader (Cybersecurity Services) - **Company:** American IT Systems - **Location:** Portland, ME, United States - **Experience:** Expert - **Salary:** $104,000.0 - $156,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing, Cloud Computing Security, Cyber Security, Identity and Access Management, Security Information and Event Management, Control Structures, CIS Benchmarks, SailPoint - **Published:** July 9, 2026 - **Apply:** https://www.careerjet.com/jobad/us0b2fcadc10485d7d1b063feaa082facf ## About the Role 15+ years of experience in cybersecurity and IT delivery Experience as CISO / Security Leader / Delivery Head Certifications preferred: CISSP, CISM, CISA ISO 27001 Lead Implementer/Auditor, Familiarity with enterprise IT landscapes (Infrastructure, Applications, Cloud) Frameworks & Compliance Expertise in: NIST, ISO 27001, CIS Controls HIPAA / healthcare compliance (preferred given context) Audit, risk, and control frameworks Leadership & Communication Strong executive presence and stakeholder management skills Ability to influence C level leadership and drive decisions Excellent communication, governance, and reporting capabilities ## Description We are looking for a dynamic and experienced CISO cum Overall Program Delivery Leader to lead customer end to end service delivery. This role will act as a trusted security advisor to the client and drive a robust governance, risk, and compliance framework, while managing global onsite offshore delivery teams. The individual will be accountable for strategy, governance, execution, and operational excellence across all cybersecurity layers including Risk & Compliance, SOC, Protection, Detection & Response, and Recovery., 1. CISO Leadership & Security Strategy Act as virtual CISO / security leader for the client, defining cybersecurity vision and roadmap Establish and implement enterprise security frameworks (NIST, ISO 27001, CIS, HIPAA, etc.) Define security policies, standards, and control structures aligned to business needs Provide advisory on risk posture, threat landscape, and compliance mandates 2. End to End Program Governance Own overall program governance across all security workstreams Establish PMO governance model aligned to CIO and GRC functions Ensure end to end accountability, visibility, and performance tracking 3. Security Operating Model Ownership Lead and operationalize the end to end security operating model, including: Risk & Compliance Security Operations Center (SOC) Detection & Response (Threat monitoring, Incident response) Recovery & Resilience (DR, BCP testing) Ensure segregation of duties, clear communication, and control adherence 4. Delivery Leadership (Onsite + Offshore Model) Lead global delivery teams (onsite + offshore) across security domains Drive high quality, SLA driven delivery with continuous improvement 5. Risk, Compliance & Audit Management Lead risk management, compliance monitoring, and control assurance programs Ensure readiness for internal/external audits and regulatory assessments Drive VAPT, audit remediation, and compliance reporting 6. Security Operations & SOC Governance Oversee 24x7 SOC operations and threat monitoring Ensure effective incident detection, response, and escalation management Govern security tools, SIEM, endpoint, and identity platforms Drive maturity improvement for threat intelligence and response capabilities 7. Financial & Commercial Management Own program is financial, budgeting, and margin management Manage delivery across T&M, Fixed Price, and Managed Services models Drive cost optimization and value realization initiatives 8. Stakeholder & Executive Management Act as single point of accountability for client leadership (CISO/CIO/CXOs) Build strong partnerships with IT, business, and compliance stakeholders Present executive dashboards, risk posture, and transformation roadmap 9. Transformation & Continuous Improvement Lead security transformation initiatives (IAM, SailPoint, Cloud Security, GRC) Drive automation, process optimization, and innovation in security services, Job Summary: In addition to the responsibilities below, this position is also responsible for leading the implementation of best practice models; leading the implementation of pat… ## Related Videos - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [OPA for the cloud natives](https://www.wearedevelopers.com/videos/713-opa-for-the-cloud-natives) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)