Fractional CISO

The person who leads security decisions, for companies that cannot have one full time.

The challenge

Below a certain size a full-time security lead is not sustainable, and decisions end up split between whoever runs the systems and whoever signs the contracts: neither has the full picture. With NIS2, responsibility for security also falls on management bodies. A Fractional CISO is that role, part time: bringing priorities to management, keeping the plan, dealing with suppliers and auditors and leaving written decisions behind, not a dependence on us.

What we deliver

  • Security plan with priorities, indicative budget and owners
  • An agreed regular presence and a single point of reference for decisions
  • Review of suppliers and of the security requirements in contracts
  • Reporting to management in a form readable without a technical background