vCISO & Cyber Risk Advisor for Clients

Heartland Business Systems, LLC.

West Des Moines, Northern (IA, KY)

Hybrid

USD 110,000 - 160,000

Full time

10 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Bonus
Incentive
Commission
Retirement plans
HSA-compatible benefits
Growth opportunities
Community involvement
Personal development
PTO
Work-life balance
Recognition and awards

Job summary

Heartland Business Systems is seeking a Senior Information Security Consultant to provide cybersecurity and risk assessment services for multiple clients, serving as virtual CISO where needed. You will lead risk reviews, develop policies, and design controls in collaboration with client teams.

The role emphasizes communication with stakeholders, engagement leadership, and staying current with HIPAA, PCI, GDPR, NIST, ISO standards while driving security programs and client success.

Qualifications

  • 5+ years of related experience
  • 5+ years implementing Cybersecurity Programs
  • 3+ years implementing Compliance and Governance Programs
  • CISSP or other current industry standard certifications in areas of security expertise
  • Significant experience as a security consultant, analyst, engineer, system administrator, IT lead, or similar role focused on information security responsibilities
  • Proven experience recommending and delivering cybersecurity, compliance, and risk management services
  • Ability to identify and evaluate risk to IT systems and associated business processes and communicate risks to management
  • Demonstrated experience with regulatory/compliance requirements (e.g., PCI, HIPAA/HITRUST, SOX, FISMA), information security frameworks and controls (e.g., NIST, ISO, CIS)
  • Demonstrated experience reviewing and recommending appropriate technical, administrative, and physical controls
  • Demonstrated experience selecting and implementing appropriate risk mitigation strategies to ensure IT systems remain within established risk tolerance levels
  • Ability to develop policies, standards, and baseline configurations
  • Strong attention to detail and ability to document findings and convey information
  • Ability to manage project deliverables and deadlines
  • Ability to provide superior customer service via phone and email
  • Excellent professional verbal and written communication skills
  • Strong listening and presentation skills
  • Ability to clearly communicate with co‑workers, management, clients, and vendors
  • Maintain an professional appearance and vocabulary
  • Ability to multi‑task, prioritize, and manage time effectively
  • Maintain an outcome focused mindset
  • Have strong prioritization skills
  • Always be a team player
  • Carry a professional attitude and respectful demeanor

Responsibilities

  • Work as a member of the cybersecurity team providing consultative and proactive risk & security related support to HBS’ account base.
  • Assist clients with identifying gaps within existing risk & security programs and designing solutions to address those challenges.
  • Support clients with the identification, development, and implementation of technological and organizational controls to support risk and security programs.
  • Deliver leadership services in support of security remediation or mitigation.
  • Responsible for overall project management of many large projects and may work directly with other engineering resources in addition to the client.
  • Lead work in all phases of the engagement, including project planning, developing project plans, leading teams in completing tasks, client status reporting, and presenting project results to the client.
  • During the entire sales process, provide sales consultants and other HBS staff with assistance, review, validation, and optimization of privacy and security solutions.
  • Maintain a high level of knowledge related to privacy and security regulations (i.e. HIPAA, CMMC, PCI, GDPR, etc.) and standards best practices (NIST 800, ISO 2700X, CIS, etc.), OCR enforcement trends, HHS/OCR guidelines, and state‑specific consumer‑protection rules.
  • Prepare articles, whitepapers, blogs and speak at industry conferences to create awareness of our brand/services as it relates to privacy, security, and risk management.
  • Conduct a variety of risk assessments and provide guidance on improving processes, creating policies & procedures, and working with other HBS teams when necessary, on solution sets.
  • Present educational and information sessions with clients and other staff, as appropriate.
  • Develop information security programs and provide strategic guidance to clients while serving as vCISO.
  • Build and further develop client relationships.
  • Work in a team atmosphere as both a leader and contributor as assigned. At all times maintaining a professional and respectful demeanor.
  • Provide input on the improvement of customer facing documentation such as proposals, statements of work, status reports, reports, marketing materials, etc.
  • Provide input on the improvement of risk and cybersecurity products and services offered to clients.
  • Work to attain and maintain relevant cybersecurity and risk certifications.
  • Minimum of 1350 hours, or equivalent vCISO work, billed per fiscal year prorated based on start date. These charge hour requirements will be balanced against professional development and on the job training.

Skills

Cybersecurity programs
Compliance programs
Certifications CISSP
Security consulting
Risk assessment
Regulatory compliance
Security frameworks
Policy development
Communication
Teamwork

Job description

Heartland Business Systems is seeking a Senior Information Security Consultant to provide cybersecurity and risk assessment services for multiple clients, serving as virtual CISO where needed. You will lead risk reviews, develop policies, and design controls in collaboration with client teams.

The role emphasizes communication with stakeholders, engagement leadership, and staying current with HIPAA, PCI, GDPR, NIST, ISO standards while driving security programs and client success.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior InfoSec Consultant & vCISO Strategist
Senior InfoSec Consultant & vCISO Strategist

HEARTLAND-BUSINESS-SYSTEMS-LLC • West Des Moines (IA)

On-site
USD 120,000 - 170,000
InfoSec Consultant & vCISO - Risk & Compliance
InfoSec Consultant & vCISO - Risk & Compliance

HEARTLAND-BUSINESS-SYSTEMS-LLC • Fayetteville (AR)

On-site
USD 80,000 - 110,000
Information Security & Risk Consultant
Information Security & Risk Consultant

HEARTLAND-BUSINESS-SYSTEMS-LLC • Town of Sun Prairie (WI)

On-site
USD 90,000 - 120,000
Information Security Consultant: Risk & Compliance Lead
Information Security Consultant: Risk & Compliance Lead

HEARTLAND-BUSINESS-SYSTEMS-LLC • West Des Moines (IA)

On-site
USD 75,000 - 110,000
Remote vCISO: Senior Cybersecurity Compliance Leader
Remote vCISO: Senior Cybersecurity Compliance Leader

Intelligent Technical Solutions • United States

Remote
USD 95,000 - 120,000
Medical Insurance
Dental & Vision
Life Insurance
+6
Information Security Consultant
Information Security Consultant

HEARTLAND-BUSINESS-SYSTEMS-LLC • Town of Sun Prairie (WI)

On-site
USD 90,000 - 120,000
Information Security Consultant
Information Security Consultant

HEARTLAND-BUSINESS-SYSTEMS-LLC • West Des Moines (IA)

On-site
USD 75,000 - 110,000
Information Security Consultant
Information Security Consultant

HEARTLAND-BUSINESS-SYSTEMS-LLC • Fayetteville (AR)

On-site
USD 80,000 - 110,000
Remote vCISO Manager: Lead Security & Compliance Programs
Remote vCISO Manager: Lead Security & Compliance Programs

Workstreet, Inc. • United States

On-site
USD 180,000 - 240,000
Career development
Technical training
Competitive compensation
+2
Senior Information Security Consultant
Senior Information Security Consultant

HEARTLAND-BUSINESS-SYSTEMS-LLC • West Des Moines (IA)

On-site
USD 120,000 - 170,000