Virtual CISO
Job Description
DOT Security exists because businesses deserve a cybersecurity partner they can trust. As cyber threats became more sophisticated and disruptive, organizations needed more than technology; they needed experts who could help protect their people, operations, and livelihoods. Born from Impact Networking during a time when that need was rapidly growing, DOT Security was created to deliver a more proactive, personalized approach to cybersecurity.
What makes DOT special is that we've never lost sight of why we started. We exist to help organizations operate with confidence, while investing in talented people who are passionate about solving complex challenges and protecting what matters most. We've built something special, but we're far from finished. The people who join DOT today will help define what comes next.
A Virtual CISO (vCISO) acts as the client liaison for Managed Security services. The vCISO coordinates with the SOC team, client executive leadership, and client IT support to ensure excellent services are delivered.
The vCISO is not a remote position. The vCISO is required to be on-site at the DOT Security - Security Operations Center.
Assess client cybersecurity posture, identifying risks, gaps, and vulnerabilities
Recommend and help implement security training, tools, and policies
Review client cybersecurity policies, procedures, and controls with actionable feedback
Monitor and report on telemetry, vulnerability scans, and incident trends
Maintain and update client Risk Registers with clear notes and next steps
Track client progress against frameworks such as CIS Controls and NIST CSF
Translate technical security risks into clear business impacts for decision-makers
Identify, escalate, and assist in resolving security issues with urgency
Support incident response and remediation efforts where needed
Develop concise reports and communicate updates to IT and executive stakeholders
Contribute to the development and improvement of security processes and procedures
Stay current with emerging threats, tools, and best practices to guide clients effectively
Qualifications & Experience
Knowledge/Skills/Abilities
Strong client relationship management, including listening, expectation setting, and results delivery
Strong understanding of core cybersecurity concepts (networks, assets, data, users)
Ability to assess risk and provide practical recommendations
Clear communicator with both technical and non-technical audiences
Strong problem-solving, documentation, and customer service skills
Familiarity with security frameworks (CIS, NIST, MITRE, OWASP)
Hands-on exposure to system administration or vulnerability testing
Interest in continuous learning and staying current with threats and tools
Other Desired Attributes
Public Trust background check (Limited Requirement)
Relevant work experience in managed services industry
Cyber community participation (conferences/groups/tool authoring/CTFs)
Understanding of CIS Controls, NIST CSF, MITRE ATT&CK, and OWASP
Relevant degree or certifications (Security+, CySA+, CEH; CISSP/CISM a plus)
Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to skillset, experience and training, licensures and/or certifications, and other organizational needs.
DOT Security may offer applicable incentive compensation plans depending on role and/or department.
Full compensation details can and will be discussed with an Impact Talent Acquisition team member at the start of the interview process.
Benefits We Take Pride In5-year Tiffany & Co. Gift Card or Custom Menswear, 10-year Custom Rolex, 20-year $20,000 Check incentive rewards
Valuable time off with up to 20 days of PTO, 7 Paid Sick Days, 12+ paid holidays, and Paid Parental Leave
Development and growth opportunities with on-going training & continued education reimbursement
401(K) & retirement plans with complimentary financial advisory services
Comprehensive health, disability, life, dental, and vision plans
Work Authorization & Immigration Sponsorship
Candidates must be authorized to work in the United States at the time of application. Immigration sponsorship may be considered in select cases based on business need, cost, workforce planning, and applicable government requirements. Impact does not guarantee sponsorship for any visa category and may decline certain petitions based on associated costs or regulatory requirements.
Certain positions within DOT Security may involve access to information, technology, software, or technical data that is subject to U.S. export control laws and regulations, including the International Traffic in Arms Regulations (ITAR) and the Export Administration Regulations (EAR). Where required by applicable law based on the nature of the role, individuals in such positions must qualify as a “U.S. Person,” as defined by law, or otherwise be eligible to obtain any required government authorizations.
Recruitment Communications Notice
Please Note: All recruiting operations for DOT Security are managed by the Impact Networking Talent Acquisition Team. As a result, candidates should expect recruitment-related communications including application updates, interview scheduling, requests for information, and offer discussions to come from members of the Impact Talent Acquisition team.
We appreciate your interest in DOT Security and look forward to getting to know you.
Compensation Range: $100K - $140K
