Chief Information Security Officer, Virtual

Job not on LinkedIn

November 21

Apply Now
Logo of GXA

GXA

SaaS • Cybersecurity • B2B

GXA is an IT services company based in the Dallas-Fort Worth Metroplex, Texas, providing comprehensive solutions such as managed IT, cybersecurity, network security, and IT consulting. With 16 years of experience, GXA serves various industries including charter schools, commercial real estate, manufacturing, and nonprofits. The company emphasizes customized IT solutions to help businesses manage their IT operations effectively and securely. GXA is committed to high standards in information security, holding certifications like SOC 2 Type II and ISO 9001, to ensure the protection and efficiency of their client's technology infrastructures. Serving both commercial and government clients, GXA strives to improve technology experiences and resolve IT challenges, enhancing the productivity and security of Texas businesses.

11 - 50 employees

Founded 2004

☁️ SaaS

🔒 Cybersecurity

🤝 B2B

📋 Description

• Develop a deep understanding of each client's business environment, compliance requirements, and cybersecurity challenges. • Collaborate with client executives to design and implement comprehensive cybersecurity programs aligned with business objectives. • Establish trusted advisor relationships with client leadership to enhance governance, risk management, and compliance initiatives. • Proactively anticipate emerging security and compliance challenges, providing strategic guidance to mitigate potential risks. • Effectively manage IT risks to align with business goals and reduce risk exposure. • Assist clients in achieving and maintaining compliance with relevant frameworks, including ISO27001, SOC2 Type2, CMMC, HIPAA, PCI, GDPR, and other industry standards. • Conduct security assessments and deliver detailed presentations of findings and recommendations. • Facilitate annual security ceremonies, including risk assessments, tabletop exercises, and third-party audits. • Provide strategic security guidance and leadership to internal GXA IT teams and client IT teams. • Ensure the implementation of effective security controls aligned with the client’s security program. • Conduct research to identify security enhancements and provide informed recommendations to clients. • Stay up-to-date with emerging information technology trends and evolving security standards. • Develop and implement effective incident response plans to minimize the impact of security breaches. • Prepare and lead Information Security Review meetings to communicate risks, incidents, and mitigation strategies. • Provide guidance during security incidents, ensuring a coordinated response to minimize impact and recovery time. • Collaborate with clients to manage and assess the security risks associated with third-party vendors and suppliers. • Assist clients in identifying and safeguarding sensitive data, ensuring data privacy through encryption, access controls, and data loss prevention measures. • Promote a culture of security awareness among client employees to minimize human error and social engineering risks. • Design and implement security training programs tailored to each client's needs. • Build and maintain strong client relationships through regular meetings, strategic engagements, and transparent communication. • Inspire clients by showcasing the value of effective information security in reducing cyber risks and enhancing business resilience. • Foster a positive client experience by being engaged, energetic, and solution-oriented.

🎯 Requirements

• Relevant certifications such as CISSP, CISM, CISA, or CCISO are highly desirable. • Prior MSP or MSSP in similar role or experience overseeing multiple clients is required. • Strong IT background and skills. • Exceptional communication abilities and executive presence are essential. • Possessing a bachelor's degree in computer science is a desirable qualification. • Exhibiting high levels of energy and a determined drive is imperative. • Capable of handling multiple tasks and adept at adapting swiftly to changing circumstances. • Self-motivated and able to excel in a fast-paced working environment. • 7+ years of experience in information security leadership, with a focus on governance, risk management, and compliance. • Proven experience as a CISO, vCISO, or in a senior cybersecurity leadership role. • Strong knowledge of security frameworks and compliance standards, including ISO27001, SOC2, NIST, GDPR, and HIPAA. • Expertise in risk management, incident response, security architecture, and vendor risk management. • Advanced proficiency in cybersecurity tools, technologies, and best practices. • Exceptional communication, leadership, and client relationship management skills.

Apply Now
Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com