Fractional Chief Information Security Officer (CISO)

Austco
  • Irving, Texas
    30+ days ago

    Job Description

    We’re not looking for someone to advise on security. We're looking for someone to own it.

    Austco Healthcare is a global clinical communication company, deployed in hospitals and aged care facilities across 60+ countries and we're hiring a Fractional CISO to lead and mature our security function.

    This role has a Board-level mandate, real executive sponsorship, and genuine autonomy. You will unify security across our corporate entity and subsidiaries, advance our alignment to the ACSC Essential Eight, and help shape our cloud strategy across a global organization.

    The role is 2–3 days a week, based in Dallas, TX and is the kind of engagement where you'll leave a mark.

    If you've led security transformation in a complex, multi-entity environment, and you'd rather own the outcome than manage a slide deck, we'd like to hear from you!

    POSITION DESCRIPTION

    Fractional Chief Information Security Officer

    ABOUT THE ROLE

    Austco Healthcare is seeking an experienced Fractional CISO to lead enterprise cybersecurity strategy across a growing global organization. This is a strategic, hands-on leadership role, responsible for unifying security across Austco's corporate entity and its acquired subsidiaries, all regions, and any future acquisitions.

    Position Details

    Location: Dallas, TX (with travel to regional offices as required)

    Engagement Type: Contract / Fractional (part-time)

    Commitment: Approx. 2 – 3 days per week, ongoing

    Reports To: CEO

    Industry: Healthcare Technology

    About Austco Healthcare

    Austco Healthcare Limited (ASX: AHC) is a global provider of clinical communication, workflow and real-time location technology. Founded in 1986, Austco's IP-native Tacera nurse call platform, Medicom nurse call solution, Pulse workflow suite and Built-in RTLS capability are deployed in hospitals and aged care facilities across more than 60 countries. Headquartered in Australia, Austco operates across six countries with a global workforce of approximately 350 employees, supporting healthcare providers to deliver safer, smarter and more efficient care.

    What You'll Do

    SECURITY STRATEGY & GOVERNANCE

    • Develop and own the enterprise information security strategy aligned to business objectives across Austco and all subsidiaries

    • Drive adoption of a centralized, managed IT operating model and advance maturity against the ACSC Essential Eight

    • Establish and maintain security policies, standards, and frameworks (NIST CSF, ISO 27001, SOC 2, ACSC Essential Eight)

    • Chair or advise the security steering committee; report to the Board on risk posture and maturity progress

    • Lead IT roadmap planning and migration of infrastructure to cloud-based environments (AWS and equivalent), establishing a centralized IT operating model

    ACQUISITION INTEGRATION & SUBSIDIARY ALIGNMENT

    • Engage Austco's subsidiaries to align their IT domains with the enterprise security framework

    • Evaluate and integrate future acquisitions from a security and IT perspective — assessing posture, risks, and integration requirements

    • Work across all Austco regions (US, Canada, Australia, UK, Singapore, New Zealand) to drive consistent adoption of security objectives

    RISK & COMPLIANCE

    • Lead risk assessments and manage the organizational risk register

    • Ensure compliance with HIPAA, HITECH, and applicable international data privacy regulations (GDPR, Australian Privacy Act, PDPA)

    • Oversee third-party and vendor risk, including managed service provider (MSP) relationships

    INCIDENT RESPONSE & OPERATIONS

    • Own the incident response plan and lead response to significant security events

    • Serve as a key escalation point within Austco's Business Continuity Plan (BCP) and Disaster Recovery Plan (DRP)

    • Partner with IT teams and the MSP on vulnerability management, security architecture, and operational security

    • Drive security awareness training across all global offices

    LEADERSHIP & STAKEHOLDER MANAGEMENT

    • Manage local IT teams across subsidiaries and regions, providing direction, oversight, and mentorship

    • Act as the primary interface with the managed service provider (MSP), ensuring service levels and security standards are met

    • Serve as the internal and external-facing security authority for Austco

    • Advise on security implications of M&A activity, product development, and infrastructure changes

    What Success Looks Like in The First 6 to 12 Months

    Within the first year, we expect this engagement to deliver:

    • A unified, centralized IT operating model established across the corporate entity and the ANZ subsidiaries

    • Measurable progress against the ACSC Essential Eight, to a maturity level agreed with the Board

    • Enterprise security policies, standards and a live organizational risk register adopted group wide

    • An approved cloud migration roadmap underway

    • Incident response, business continuity and disaster recovery plans validated through at least one tabletop exercise

    • Security and IT integration plans agreed for each Austco subsidiary

    What We're Looking For

    ESSENTIAL

    • 10+ years in information security, with at least 3 years in a CISO or senior security leadership role

    • Demonstrated success leading security transformation in complex, multi-entity or post-acquisition environments.

    • Proven ability to drive organizational change, including transitioning decentralized IT environments to centralized/managed models

    • Experience building and executing IT roadmaps, including cloud migration (AWS or equivalent)

    • Strong knowledge of HIPAA/HITECH, NIST CSF, ISO 27001, SOC 2, and the ACSC Essential Eight

    • Experience operating across multiple international jurisdictions

    • Strong executive communication and board-level reporting skills

    • Availability for on-call incident response; willing to serve as the security escalation point for BCP/DRP events

    • Ability to operate autonomously with minimal day-to-day supervision

    HIGHLY REGARDED

    • CISSP, CISM, or CISA certification

    • Experience with IEC 62443 or medical device cybersecurity standards (FDA pre/post-market guidance)

    • Background supporting SaaS or cloud-based product companies

    • Familiarity with US, Canadian, New Zealand, Australian, UK, and Singapore regulatory environments

    How We See This Engagement

    This is a role with real accountability and real backing. It carries clear executive sponsorship, a defined mandate from the Board, and the autonomy to build the security function from the ground up. We are looking for a partner who wants ownership of that mandate, not a caretaker who waits for instruction. Austco is equally committed to setting this engagement up to succeed, with the access, authority and support the role requires.

    Engagement And Next Steps

    This is an initial engagement of approximately two to three days per week, with an expected term of twelve months and scope to extend as the security function matures. Compensation is commensurate with experience and the fractional nature of the role.

    Our Commitment to Inclusion

    Austco Healthcare is an equal opportunity employer. We welcome applicants of all backgrounds and are committed to a fair and inclusive selection process.

    #ZR

    Numbers & Facts

    LocationIrving, Texas

    Skills

    • Acquisition Integrationunmatched
    • Aged Careunmatched
    • Amazon Web Services (AWS)unmatched
    • Business Continuity Planning (BCP)unmatched
    • CISA - Certified Information Systems Auditorunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Centralized Operations/Managementunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Computer Securityunmatched
    • Disaster Recoveryunmatched
    • Enterprise Protectionunmatched
    • FDA (Food and Drug Administration)unmatched
    • HIPAA (Health Insurance Portability and Accountability Act)unmatched
    • Healthcareunmatched
    • Healthcare Providersunmatched
    • Hospitalunmatched
    • IP (Internet Protocol)unmatched
    • ISO (International Organization for Standardization)unmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • International Electro-Technical Commission (IEC)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Maintain Complianceunmatched
    • Management of Information Systems/Technology (MIS)unmatched
    • Medical Equipmentunmatched
    • Medical Protocolsunmatched
    • Mentoringunmatched
    • Mergers and Acquisitionsunmatched
    • Nursingunmatched
    • On Callunmatched
    • Operations Security (OPSEC)unmatched
    • Organizational Development/Managementunmatched
    • Organizational Skillsunmatched
    • Privacy Regulationsunmatched
    • Process Improvementunmatched
    • Product Developmentunmatched
    • Regulationsunmatched
    • Reporting Skillsunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Software as a Service (SaaS)unmatched
    • System Migrationunmatched
    • Team Lead/Managerunmatched
    • Technical Leadershipunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Willing to Travelunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder