About The Position

Alluvionic is seeking an experienced Virtual Chief Information Security Officer (vCISO) to provide part-time, executive-level cybersecurity leadership to support multiple client engagements. This role is responsible for establishing and maturing cybersecurity governance programs, advising executive leadership on risk and compliance, and ensuring alignment with key frameworks such as NIST CSF, NIST SP 800-171, and CMMC. The vCISO serves as a strategic advisor and program leader—bridging business objectives with cybersecurity priorities—while supporting both initial readiness efforts (e.g., CMMC certification) and ongoing program sustainment. This role is designed for a highly experienced cybersecurity professional capable of supporting multiple engagements concurrently with a structured, scalable delivery approach. Must be US Citizen. Position: Contingent Upon Contract Award. This is a part-time executive advisory engagement (approximately 25-30 hours per month) for an initial 12-month period, with potential for extension.

Requirements

  • 10+ years of cybersecurity leadership experience (vCISO, CISO, or equivalent advisory role)
  • Deep experience in governance, risk, and compliance (GRC) within regulated environments
  • Strong working knowledge of NIST CSF, NIST SP 800-171, CMMC, and related frameworks
  • Experience supporting audit readiness, compliance programs, and executive reporting
  • Ability to translate technical risk into business-aligned recommendations
  • Must be US Citizen

Nice To Haves

  • Relevant certifications preferred (e.g., CISSP, CISM, CRISC, CCP)

Responsibilities

  • Provide executive-level cybersecurity advisory services, including governance, risk management, and strategic planning
  • Establish and maintain cybersecurity governance structures, roadmaps, and reporting cadence
  • Lead enterprise risk management activities, including risk register development, tracking, and executive reporting
  • Support compliance and framework alignment (NIST CSF, NIST SP 800-171, CMMC, SOC 2, ISO 27001 as applicable)
  • Guide CMMC readiness efforts, including coordination of documentation, audit preparation, and assessment support
  • Provide executive reporting, dashboards, and strategic recommendations to support decision-making
  • Advise on security operations, vulnerability management, and incident response governance
  • Support cybersecurity investment planning, tool selection, and vendor evaluation
  • Facilitate communication across technical teams, leadership, and external stakeholders
  • Collaborate with delivery teams (e.g., Cyber Analysts, Project Managers) to ensure coordinated execution
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service