Consultant vCISO / GRC
NINKZ · United States · 4 days ago
RemoteRemoteConsultingFull-time
About the role
We are looking for a vCISO / GRC Consultant to support our clients on governance, operational security management, and compliance. You will act as an outsourced security leader, providing direct support to IT teams and management.
Responsibilities
- Strategic and operational security management (roadmap, risks, KPIs)
- ISO 27001 support (gap analysis, remediation plan, certification preparation)
- Vulnerability management and security scan monitoring
- SOC coordination and incident management
- Internal security awareness and phishing campaigns
- Security policy, process, and documentation development
- Executive reporting and security committee presentations
Requirements
- 5+ years of experience in operational security or GRC
- In-depth knowledge of ISO 27001, NIS2, and DORA
- Experience in SOC management or crisis handling
- Ability to engage with both technical and non-technical stakeholders
- Professional English (international assignments possible)
Preferred certifications: ISO 27001 LA/LI, CISSP, CISM, or equivalent.
Benefits
- Diverse clients (large enterprises, industry, fintech, healthcare)
- High-value, visible role with real impact
- Collaboration with pentest and audit experts
- Autonomy and meaningful responsibilities
- Remote work possible