RED SKY Consulting is an IT and Cybersecurity staffing solutions and consulting company, and they are seeking a VP, Portfolio Cyber Engineering to enhance cybersecurity control environments across their portfolio. This senior technical position focuses on hands-on configuration, assessment, and remediation of cybersecurity tools in collaboration with portfolio company IT teams.
Responsibilities:
- Conduct remote configuration assessments across portfolio company cybersecurity platforms, including EDR, email filtering, DNS filtering, MFA, vulnerability scanning, and SIEM/log monitoring environments
- Provide hands-on remote configuration support directly to portfolio company IT staff and managed service providers — not advisory guidance, direct technical execution
- Drive portfolio-wide proactive assessment cycles to surface control deficiencies before they escalate to incidents
- Lead targeted remediation engagements for portfolio companies carrying low cyber maturity ratings under our cyber risk framework
- Verify remediation completion and track coverage improvements through the portfolio management dashboards
- Translate minimum cybersecurity requirements into platform-specific configuration standards for the tools deployed across the portfolio
- Develop and maintain configuration optimization playbooks for security platforms in active use across portfolio companies
- Identify and remediate security tool coverage gaps — including tools not deployed, misconfigured, or not monitored — across portfolio environments
- Coordinate remediation workstreams with portfolio company IT counterparts and MSPs; maintain delivery accountability without direct reporting authority
- Report remediation status, maturity trajectory, and outstanding risk exposure to Portfolio Operations leadership on a regular cadence
Requirements:
- 10-15 years of hands-on cybersecurity engineering experience with direct, documented responsibility for configuring security platforms in production environments
- Experience operating across multiple portfolio companies, client environments, or acquired entities simultaneously — systems integrator, holding company, or management consulting backgrounds are the primary candidate profiles
- Demonstrated ability to translate technical security findings into business risk language for CFO, CEO, and board-level audiences
- Proven track record of driving and verifying remediation outcomes — not simply identifying gaps and delivering reports
- Strong project and workstream management capability across concurrent engagements without direct line authority
- Excellent written and verbal communication skills; ability to produce technical documentation and present findings in plain, executive-ready language
- Bachelor's degree in information technology, cybersecurity, computer science, or equivalent demonstrated experience
- Candidates must demonstrate hands-on configuration experience — not general familiarity — with the platforms listed below. Experience with the majority is required; depth across all is strongly preferred
- Private Equity / M&A Acumen (Preferred): Understanding the dynamics of working with separate portfolio company entities, especially in contexts like carve-outs and post-acquisition integration
- CISSP — Strongly Preferred
- CCSP or CISM
- CompTIA Security+, Network+, or A+
- MCSE or MCSA