1

Live In Fractional Ciso Jobs (NOW HIRING)

Fractional CISO This is a fully remote (work-from-home) position. Work from anywhere in the United ... Contract / fractional • ~15-25 hrs in the first 60 days, then ~5-10 hrs per quarter About ...

Fractional CISO This is a fully remote (work-from-home) position. Work from anywhere in the United ... Contract / fractional · ~15-25 hrs in the first 60 days, then ~5-10 hrs per quarter About ...

Fractional CISO This is a fully remote (work-from-home) position. Work from anywhere in the United ... Contract / fractional · ~15-25 hrs in the first 60 days, then ~5-10 hrs per quarter About ...

Field CISO

Dallas, TX · On-site

$150 - $200/hr

Experience in a customer-facing or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO) * Familiarity with AI/ML-driven security tools and emerging threat vectors * Preferably ...

Field CISO

Dallas, TX · On-site

$150 - $200/hr

Experience in a customer-facing or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO). * Familiarity with AI/ML-driven security tools and emerging threat vectors.

Experience in a customer-facing or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO) * Familiarity with AI/ML-driven security tools and emerging threat vectors * Preferably ...

Experience in a customer-facing or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO) * Familiarity with AI/ML-driven security tools and emerging threat vectors * Preferably ...

Experience in a customer-facing or commercial role (sales, pre-sales, advisory, consulting, or fractional CISO) * Familiarity with AI/ML-driven security tools and emerging threat vectors * Preferably ...

Serve as fractional CISO for customers without a dedicated security executive -- represent the security function in board meetings, partner with executives on risk decisions, and lead annual program ...

New

next page

Showing results 1-20

Live In Fractional Ciso information

See salary details

$98K

$173K

How much do live in fractional ciso jobs pay per year?

As of Jul 29, 2026, the average yearly pay for live in fractional ciso in the United States is $166,219.00, according to ZipRecruiter salary data. Most workers in this role earn between $167,000.00 and $173,000.00 per year, depending on experience, location, and employer.

Can you make $500,000 a year in cyber security?

A Live In Fractional CISO can potentially earn $500,000 annually, especially with extensive experience, advanced certifications like CISSP or CISM, and a strong reputation in the industry. High-level cybersecurity leadership roles often command six-figure salaries, but reaching this level typically requires a combination of strategic skills, networking, and a proven track record in managing security programs. Compensation varies based on client size, scope of responsibilities, and geographic location.

What jobs make $3,000 a day?

High-level cybersecurity roles such as a Live In Fractional CISO can earn around $3,000 or more per day, especially when consulting for multiple clients or organizations. Other high-paying jobs include specialized legal, medical, or executive roles, often requiring advanced certifications, extensive experience, and a flexible schedule. These positions typically involve strategic decision-making and significant responsibility, justifying their high daily rates.

How much does a fractional CISO cost?

A fractional CISO typically charges between $1,500 and $5,000 per day or $15,000 to $50,000 per month, depending on the scope of services, experience, and organization size. Costs can vary based on whether the engagement is part-time, project-based, or retainer, and often include strategic security planning, risk management, and compliance oversight.

Can a CISO work remotely?

A live-in fractional CISO can often work remotely, as many cybersecurity leadership roles are adaptable to virtual environments. However, the role may require on-site presence for certain meetings, assessments, or security operations, depending on the company's policies and security needs.

What is the difference between Live In Fractional Ciso vs Cybersecurity Consultant?

AspectLive In Fractional CisoCybersecurity Consultant
CredentialsTypically CISSP, CISM, or CISA certificationsVaries; often CISSP, CISM, or related certifications
Work EnvironmentPart-time, embedded within the organization, often onsiteProject-based, external, often remote or onsite
Employer UsageUsed by organizations seeking ongoing security leadershipHired for specific projects or assessments
Search & Comparison IntentLooking for ongoing security leadership optionsSeeking specific cybersecurity expertise or assessments

The Live In Fractional Ciso provides ongoing, embedded security leadership within an organization, often working onsite and acting as a part-time CISO. In contrast, a Cybersecurity Consultant is typically hired for specific projects or assessments, offering specialized expertise without long-term embedded involvement. Both roles require similar certifications but differ mainly in scope, engagement type, and work environment.

More about Live In Fractional Ciso jobs
What cities are hiring for Live In Fractional Ciso jobs? Cities with the most Live In Fractional Ciso job openings:
What are the most commonly searched types of Fractional Ciso jobs? The most popular types of Fractional Ciso jobs are:
What states have the most Live In Fractional Ciso jobs? States with the most job openings for Live In Fractional Ciso jobs include:
What job categories do people searching Live In Fractional Ciso jobs look for? The top searched job categories for Live In Fractional Ciso jobs are:
Infographic showing various Live In Fractional Ciso job openings in the United States as of July 2026, with employment types broken down into 65% Internship, 23% Full Time, and 12% Summer. Highlights an 76% Physical, 6% Hybrid, and 18% Remote job distribution, with an average salary of $166,219 per year, or $79.9 per hour.
Fractional CISO

Fractional CISO

Reflexion

Lancaster, PA • On-site, Remote

Contractor

Posted 13 days ago


Job description

Fractional CISO
This is a fully remote (work-from-home) position. Work from anywhere in the United States.
Contract / fractional • ~15-25 hrs in the first 60 days, then ~5-10 hrs per quarter
About Reflexion
Reflexion Interactive Technologies builds neuro-cognitive and physiological sensing technology - vision-performance training and respiration-waveform sensing - used by athletes, teams, and now a global consumer-eyewear partner. We are a ~10-person, AWS-hosted company based in Lancaster, PA, closing enterprise partnerships that bring enterprise-grade vendor-security requirements with them.
The role
We are hiring a fractional CISO to be the accountable security executive behind our compliance program as we finalize a major enterprise deal. This is not a build-a-SOC, hire-a-team role: our application-layer security is strong (bcrypt, encrypted sessions, CSRF, parameterized SQL, strict CSP, MFA/RBAC, AES-256 at rest, TLS 1.2+), our compliance calendar and evidence pipeline are run day-to-day by an internal compliance system, and engineering is handled by our CTO. What we need is the credentialed human who signs, validates, and represents.
You will work directly with the CEO (deal owner) and CTO (implementation owner). Our internal compliance agent drafts the documents, tracks the obligations register, and maintains the evidence locker - you review, correct, and put your name on what is true.
What you will do - first 60 days
  • Review and harden our Statement of Applicability + evidence package (ISO 27001/NIST-mapped) responding to an enterprise customer's Information Security Addendum - built largely from an existing, customer-reviewed evidence base.
  • Sign the risk assessment and SoA as the named security officer; be the security contact enterprise vendor-risk teams can call.
  • Sit on 2-3 customer security-diligence calls (enterprise vendor-risk / InfoSec reviewers) alongside the CEO.
  • Validate what we attest against reality with the CTO (controls verification and gap triage: centralized logging, admin RBAC/audit trail, secrets management).
  • Advise on a security-exception / compensating-controls request and, if required, scope a right-sized SOC 2 Type I path (RFQs prepared; you would manage auditor selection and the engagement).
  • Scope and manage our first external penetration test (vendor shortlist ready) and own findings triage with the CTO.
Ongoing - a few hours a quarter
  • Quarterly review of the compliance-calendar output (access reviews, risk-assessment refresh, training, phishing simulations, BC/DR and restore tests).
  • Annual re-attestation support; named contact for customer audits under contractual audit rights.
  • Incident readiness: review our breach-notification runbook (24-72h contractual clocks) and advise if an incident ever triggers it.
  • Tell us when a new deal's requirements genuinely change our posture - versus when to negotiate them down. We optimize for minimum-viable compliance and want a partner who respects that philosophy rather than gold-plating.
What we are looking for
  • Prior CISO / vCISO / security-lead experience at a company that sold to large enterprises - you have personally survived enterprise vendor-risk review (security questionnaires, information-security addenda, right-to-audit clauses) from the vendor side.
  • Hands-on fluency with ISO 27001 / NIST CSF control mapping, SOC 2 (readiness through audit), and pragmatic compensating-controls / security-exception practice.
  • Comfortable being the named, accountable individual - signing SoAs and risk assessments, taking customer calls, standing behind attestations.
  • Technical enough to verify controls in an AWS + Cloudflare stack with the CTO (IAM, KMS, CloudTrail/logging, network posture) - you do not implement, but you cannot be bluffed.
  • Working knowledge of HIPAA applicability analysis (we maintain a no-PHI / not-a-business-associate posture and need it defended, not expanded) and GDPR-adjacent vendor obligations (we have EU counsel; you coordinate, not own).
  • Plain-spoken, fast, allergic to compliance theater. You will be asked "is this actually required, or negotiable?" constantly - we want the honest answer.
  • Bonus: consumer wellness / health-adjacent data classification; EU AI Act awareness; prior work with AI-assisted compliance tooling.
What this is not
  • Not full-time, and no conversion pressure - genuinely fractional.
  • Not a program-build from zero: policies (v1.0), an evidence base, an obligations register, a DPA/SCC pack, and counsel relationships already exist.
  • Not an implementation role: engineering changes belong to the CTO; you verify and advise.
Engagement & compensation
Hourly contract (rate DOE) or an equivalent small monthly block. Front-loaded first 60 days (~15-25 hours), then ~5-10 hours per quarter. Direct line to the CEO and CTO. NDA required; the work references a Fortune-Global-500-scale counterparty under confidentiality.
How to apply
Send a short note covering: (1) an enterprise vendor-security review you got a small company through - what you accepted and what you pushed back on; (2) your hourly rate and availability over the next 60 days. Resume/LinkedIn welcome; the note matters more.