Security Consultant (vCISO Mexico Based)
🌏 Worldwide
Management
Finance
Legal
Cybersecurity
Security Engineer
$500,000 - $550,000
Security Consultant (vCISO Mexico Based)
from 🌏 Worldwide
$500,000 - $550,000
We are growing our Security Advisory practice and are looking for a highly experiencedSecurity Consultant (vCISO) to join our award-winning team.
Join DYOPATH – A Great Place to Work 5 Years in a Row!
At DYOPATH, we’re proud to be recognized year after year as aGreat Place to Work. We simplify technology for our clients while investing deeply in our people, because we believe exceptional outcomes start with exceptional teams.
About the Role: Security Consultant (vCISO)
This is not a traditional “behind-the-scenes” security role. As aSecurity Consultant (vCISO), you will operate as atrusted advisor to executive teams, guiding organizations through complex cybersecurity challenges while also rolling up your sleeves to help build and execute their security programs.
Role Details
- Title: Security Consultant (vCISO Services)
- Location: Remote
- Schedule: Monday–Friday, standard business hours
- Availability: Occasional after-hours support for escalations
- Travel: Limited, international travel (primarily to the United States) based on client and leadership needs)
- English Requirement: Advanced (Professional proficiency required)
- Compensation: $500,000 – $550,000 MXN annually + performance-based bonus
This role blends:
- Executive-level strategy and influence
- Hands-on program development and execution
- Client relationship leadership and growth
You will play a critical role in shaping both our clients’ security postureand the evolution of DYOPATH’s security advisory services.
What You’ll Own (Your Mission)
You will serve as the primary security advisor for client organizations, helping themunderstand risk, make informed decisions, and build resilient security programs aligned to business goals.
Key Responsibilities
- Develop and leadenterprise security strategies, roadmaps, and governance frameworks
- Translate technical risk intobusiness and financial impact for executive and board-level audiences
- Leadincident response planning, tabletop exercises, and breach investigations
- Conductrisk assessments and maturity evaluations aligned to NIST, CIS, ISO, and other frameworks
- Build and maturesecurity programs, policies, and compliance initiatives
- Establish and guidevendor risk and third-party risk programs
- Deliver regularexecutive reporting on security posture, risk trends, and program progress
- Partner with IT, architecture, and business leaders to embed security into operations
- Supportclient growth and service expansion, including executive conversations and advisory engagements
- Stay ahead ofemerging threats, technologies, and regulatory requirements
What Success Looks Like
We believe clarity drives success. In this role, you will be expected to:
First 90 Days
- Build strong relationships with client stakeholders and internal teams
- Assess current security posture and identify key risks
6–12 Months
- Deliver and execute aprioritized security roadmap
- Establish a consistentexecutive reporting cadence
- Demonstrate measurable improvement insecurity maturity and risk reduction
- Position DYOPATH as atrusted long-term security partner
Initial focus will be ona key enterprise client engagement, with the opportunity to expand across multiple clients over time. You will play a pivotal role in bothstabilizing and growing the client relationship.Over time, you may managemultiple client engagements, requiring strong prioritization and adaptability.
This role is intentionally designed to blendStrategic advisory (executive engagement, roadmap planning, governance) and Hands-on execution (assessments, program development, incident response planning).You’ll be expected tooperate comfortably at both levels, delivering value in the boardroom and in the details.
Why This Opportunity Stands Out
- Executive-Level Impact
- Build & Shape the Practice
- High Trust & Autonomy
- Diverse, High-Impact Work
What You Bring
Experience & Background
- Bachelor’s degree in computer science, Information Technology, or related field
- 10+ years of progressive cybersecurity or IT experience
- 5+ years in aleadership or executive-level security role
- Proven experience leadingsecurity programs or advising senior leadership
Certifications (Preferred)
- CISSP, CISM, CISA, or equivalent senior-level certification
Skills & Leadership Attributes
- Deep expertise inrisk management, compliance, and security frameworks
- Strong ability to translate technical risks intobusiness outcomes
- Proven success in influencingexecutive and board-level stakeholders
- Experience buildinglong-term security roadmaps
- Strong problem-solving, prioritization, and decision-making skills
- Ability to managemultiple priorities and client demands
Benefits
- Aguinaldo (25 days – above legal requirement)
- Vacation + 25% premium
- IMSS + Major medical insurance (family included)
- Monthly savings fund + pantry vouchers
- Quarterly performance bonus opportunities
- Paid life events leave (parental, marriage, bereavement)
- Pet Insurance (because pets are family)
- And more — see full details at https://dyopath.com/careers
Ready to Make an Executive-Level Impact?
If you’re a cybersecurity leader who thrives oninfluence, strategy, and solving complex problems, we invite you to apply for this Security Consultant(vCISO) and help organizations build stronger, more resilient futures.
We are currently seeking candidates located in Mexico for this role.
Equal Opportunity Employer
DYOPATH is committed to a work environment free of all forms of discrimination. DYOPATH recruits and hires without regard to age, color, disability, gender, gender identity, genetic information, marital status, military status, national origin, race, religion, sexual orientation, veteran status, or any other legally protected characteristic. For more information about DYOPATH, please visit our website at www.dyopath.com. The above information has been designed to indicate the general nature and level of work performed by employees in this classification. It is not designed to contain or to be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the employee assigned to this job.