vCISO
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 10h ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 26d ago
The date the source published, not the day we noticed it (2026-09-15). Last seen at its source 1h ago.
Is it remote?
Marked remote on the employer's board
Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.
Who may apply?
United States
The description states no restriction of its own. This is the source's own tag.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
Workable employer's own board first seen 11h ago · last seen 1h ago
The listing
About us:
Thrive delivers upon the promise of technology by enabling our clients’ digital transformation journeys with best practices on an AI, cybersecurity and cloud focused NextGen managed services platform.
Thrive’s culture is powered by diverse talent, big ideas, and a customer-first mindset—and it’s what truly sets us apart. Thrive is built for people who want more than a weekday routine. If you’re hungry to grow, eager to tackle new challenges and ready to drive real impact in a rapidly expanding environment, then welcome to THRIVE!
Requirements
Work with Thrive’s vCISO Service clients to assess their current Information Security Program and develop an appropriate, business aligned strategy to establish a proactive approach to cyber risk management. Implement customized, risk-based Information Security Programs and the associated controls frameworks to complement each client’s business and IT operations. Ensure all Governance, Regulatory and Compliance obligations are addressed from an Information Security perspective. Be a trusted advisor and “go-to” resource for Senior IT and Executive Leadership for all things relating to Information Security.
Responsibilities
- Serve as Information Security Subject Matter Expert for Executive leadership.
- Develop annual strategic plans and supporting project roadmaps.
- Collaborate and coordinate with internal IT resources to execute the security plan.
- Create remediation plans for all security assessments.
- Conduct annual risk assessments.
- Coordinate Penetration Tests with third parties.
- Collaborate with customers on policy development and implementation.
- Assist with Security Incident Response and tabletop exercises.
- Mentor client technical resources as requested
- Performs assessments with clients in the following areas:
- Information Security Strategy
- Information Security Governance
- Information Security Program Development and Management
- Information Security Risk Management
Qualifications
- Bachelor’s Degree or equivalent work experience in cybersecurity (MBA preferred)
- 5+ years’ experience Information Security Preferred
- Certified Information Systems Security Professional (CISSP) and/or Certified Information Security Manager (CISM)
- Expert in security frameworks such as CIS, NIST, CMMC, HIPAA/HITECH, PCI-DSS, ISO 27001/2