Blue INK Security
Senior Security Consultant (Security Program Leader / Fractional CISO)
A fractional CISO engagement supporting mid-size organisations with cybersecurity program leadership, risk and compliance assessments, and implementation of technical security controls across cloud, SaaS, and enterprise environments.
Blue INK Security is looking for an experienced fractional CISO to lead cybersecurity programs for mid-size client organisations. The consultant will advise executive leadership on risk management, compliance, and security architecture, aligning programs with frameworks including ISO 27001, NIST, CIS Controls, SOC 2, and HIPAA. The role spans both strategic advisory and hands-on implementation across networks, cloud environments, SaaS platforms, and enterprise applications.
This is a client-facing position requiring strong executive presence and the ability to translate technical risk into clear business language. The consultant will develop security roadmaps, manage compliance initiatives from planning through execution, and build long-term governance programs suited to each client's operating environment.
- Lead clients through compliance initiatives including ISO 27001, CIS Controls, NIST 800-171, SOC 2, and HIPAA, including gap assessments and certification roadmaps.
- Define and implement security controls across networks, cloud environments, SaaS platforms, and enterprise applications.
- Act as a trusted cybersecurity advisor to executive leadership, IT teams, and business stakeholders across client organisations.
- Develop and implement incident response plans, security awareness programs, and tabletop exercises.
- Manage security and compliance projects from planning through execution, tracking KPIs and risk indicators for executive reporting.
- Coordinate with legal, IT, compliance teams, vendors, and auditors to align security initiatives with business objectives and ensure successful delivery.
- Proven experience leading cybersecurity programs or managing security initiatives within organisations of meaningful scale.
- Strong working knowledge of ISO 27001, CIS Controls, NIST frameworks, SOC 2, and/or HIPAA.
- Hands-on experience with IAM, MFA, endpoint protection, SIEM, vulnerability management, and incident response tools.
- Ability to communicate complex security risks clearly to non-technical executives and build trusted advisory relationships.
- Demonstrated ability to manage multiple client engagements and priorities independently.
- Preferred: CISSP, CISM, CISA, CRISC, or ISO 27001 Lead Auditor/Implementer certification; familiarity with cloud security in AWS, Azure, or Google Cloud.
Blue INK Security is a cybersecurity consultancy focused on helping organisations build resilient security programs aligned to industry best practices and regulatory requirements. The firm specialises in designing, implementing, and managing security solutions tailored to each client's operational and compliance needs.
Trusted by fast-growing companies around the world





