> Markdown version of [/jobs/ext/2305860-chief-information-security-officers-ciso](https://www.wearedevelopers.com/jobs/ext/2305860-chief-information-security-officers-ciso). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Chief Information Security Officers (CISO) - **Company:** Vistrada LLC - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $150,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Control Objectives for Information and Related Technology (COBIT), Cyber Security, Information Security Management, Information Technology - **Published:** August 30, 2026 - **Apply:** https://www.workingnomads.com/job/go/1824177/ ## About the Role * 10+ years of CISO experience working in related field(s). * Expert knowledge of cybersecurity frameworks and regulations including: NIST, ISO, CMMC, PCI, COBIT, DFARS, HIPAA, etc. * Hands-on incident response coordination and oversight experience. * Strong understanding of IT Risk and components, including application, infrastructure, network, and vendors. * Bachelor's degree in Computer Science, Accounting, MIS, or comparable work experience. * Develop and present management level materials to effectively communicate and message to stakeholders. * Relevant certifications such as CISA, CISM, or CISSP, or similar experience. ## Description Vistrada is looking to hire strong Chief Information Security Officers (CISO). The CISO will provide strategic cybersecurity guidance and oversight to Vistrada clients by leading and managing their cybersecurity programs to help protect their infrastructure, data, people, and customers. Candidates should have extensive knowledge of cybersecurity best practices, industry standards, and regulations. They should also have strong communication, leadership, and project management skills, as well as the ability to work collaboratively with internal and external stakeholders., * Apply consultative and leadership skills to build high rapport with clients and team members. * Provide expert security advisory, compliance and security program oversight, oversee security/compliance assessments, and prepare high-quality reports (including gap analysis, POAM, recommendations, and remediation planning). * Lead and manage a team of security analyst(s) providing oversight, direction, expertise, and mentoring. * Provide virtual chief information security officer services. + Support clients on a fractional owner model. + Act as an extension of client's information security management and governance function. + Develop, implement, and oversee information security programs. + Assess, identify requirements for, and make recommendations on security controls and technologies. + Develop security roadmaps and plans of action. + Vendor and third-party risk management program support and due diligence. + Develop business continuity and incident response plans. + Focus on key performance indicators, metrics, security dashboards. * Assist With Business Development. + Work with potential new clients to understand and define business and technology needs, provide subject matter expertise to answer client's questions and concerns, and identify and align services with client's needs. + Support statements of work, identify resource requirements, assumptions, estimates, and assist with responses to Requests for Proposals (RFPs). + Identify client's security and technology needs and identify business development opportunities as outcomes of assessment activities. + Develop expert level content, participate in panel discussions and public speaking events, and attend conference exhibitor opportunities. * Architect high quality security solutions to the needs of clients. * Perform other duties that may be assigned by management. ## Related Videos - [Don't Be A Naive Developer: How To Avoid Basic Cybersecurity Mistakes](https://www.wearedevelopers.com/videos/498-don-t-be-a-naive-developer-how-to-avoid-basic-cybersecurity-mistakes) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence)