Jobs · Oregon

vCISO

Convergence Networks · Portland, OR · 1 wk ago
Full-time

About the role

As a vCISO (Virtual Chief Information Security Officer) at Convergence Networks, you will serve as the information security expert for our clients, helping design and lead their overall security posture. You will work with a diverse range of businesses across various industries, assisting them in establishing and maintaining their information security management programs to ensure the confidentiality, integrity, and availability of their IT systems, networks, and data.

Through established consulting processes, you will guide clients in strategic, operational, and budgeting efforts to protect their information assets. By understanding each client’s business and industry, you will provide tailored consulting and guidance to business leaders.

Responsibilities

  • Assist client senior leadership in making informed technical and risk management decisions by providing expertise on technologies, information security standards, risk management, and compliance requirements.
  • Establish strong client relationships built on trust and mutual respect, including regular onsite meetings.
  • Provide confident consultation and solution proposals based on a deep understanding of the client’s business needs, IT posture, risk tolerance, pain points, cultural influences, and financial/regulatory constraints.
  • Assist customers in integrating information security into their business strategy, processes, and culture.
  • Collaborate with clients to identify opportunities to improve risk posture, developing solutions for remediating or mitigating risks aligned with business objectives, financial constraints, and regulatory requirements.
  • Create, maintain, and grow professional relationships with key stakeholders and decision-makers to facilitate difficult financial conversations regarding invoices, contracts, and support conflicts.
  • Stay current with trends, advances, and solutions in the IT and IT security industries.
  • Research and educate on how new governmental legislation and compliance regulations impact client security policies and procedures.
  • Provide recommendations on IT best practices and security awareness training.
  • Serve as a liaison to auditors, assessors, and examiners.
  • Continuously increase the value proposition of recurring monthly service agreements with existing customers.

Skills

  • Excellent verbal and written communication skills.
  • IT management and support history, including strategic consultation and network administration.
  • Working knowledge of networking technologies such as firewalls, routers, switches, firewall access controls, VPNs, perimeter security, network access controls, network monitoring software, endpoint protection, data loss prevention, and security information and event management (SIEM).
  • Strong understanding of security threats, vulnerabilities, exploits, and safeguards.
  • IT project management experience.
  • Knowledge of the three fundamental safeguard types: technical, administrative, and physical.
  • Experience in cyber risk management and incident response planning.
  • Familiarity with risk assessment procedures, role-based authorization, authentication technologies, and security attack pathologies.
  • Experience developing and authoring information security policies, standards, processes, procedures, and guidelines.
  • Sound knowledge of identity & access management, vulnerability assessment tools (e.g., Nessus), and data encryption technologies.
  • Ability to drive a vision for cybersecurity while achieving tactical results.
  • Experience communicating security concepts to technical and non-technical audiences.
  • Ability to relate business requirements and risks to technology proposals for security-related issues.
  • Commitment to continuous improvement and challenging the status quo.
  • High level of personal integrity, professionalism in handling confidential matters, and sound judgment when advising client leadership.
  • Patience, empathy, confidence, and strong customer service skills for working with diverse businesses, technologies, and personalities.
  • Ability to work effectively both independently and within a team.
  • Ability to stay focused and effective in a fast-paced environment.
  • Strong interpersonal skills to build rapport with clients and teammates.
  • Self-starter with a positive attitude, initiative, and ownership over work.
  • Exceptional follow-through skills and ability to work with minimal supervision.

Qualifications

  • High school diploma or equivalent.
  • Certified Information Systems Security Professional (CISSP) or equivalent, or willingness to obtain within the first year of employment.
  • 5+ years of relevant information security experience.
  • Possess or willingness to earn one or more CMMC ecosystem credentials: Registered Practitioner (RP), Certified Professional (CP), or Certified Assessor (CA).

Preferred qualifications that set applicants apart:

  • Associate degree or higher in Information Technology, IT Assurance, or Information Security (Cybersecurity).
  • Active security certifications such as CISA, CRISC, CISM, GSEC, or Security+.
  • Experience in industries such as Healthcare, Defense, or Payment Processing.
  • Knowledge and experience with Microsoft 365, Microsoft Azure, and other cloud service offerings.
  • Familiarity with the MSP environment and associated tools like ConnectWise, Kaseya, M365, and Azure.

Work Environment

Normal office working conditions with regular sitting/standing at a desk and computer use. The role may require:

  • Standing, walking, sitting, using hands, seeing, reaching, talking, writing, and hearing.
  • Occasional carrying or lifting of equipment when working on-site.
  • Extended hours during peak periods, on-call work, or travel, including nights or weekends.
  • Regular contact with others via meetings, phone, or email for data collection, problem-solving, needs analysis, and technical training development.
  • Some travel to Convergence or client sites.

Benefits

  • Group benefits plans, including medical, dental, vision (US), and health savings and dental (Canada).
  • Retirement plans (401k in the US and RRSP in Canada).
  • Education and certification reimbursement to support professional growth.
  • Regular feedback and performance conversations with your manager, including quarterly reviews.
  • Outstanding teammates and a selective hiring process to ensure a high-quality team.
  • Teambuilding and company events throughout the year, often including families.
  • Culture of unity, transparency, and trust, with leadership support for personal and professional growth.

Similar jobs