Avishai Avivi
@avishaiavivi
Fractional CISO delivering AI governance, privacy, and security risk reductions.
What I'm looking for
I’m a C-suite cybersecurity and privacy leader operating at the intersection of cybersecurity, privacy, and AI—governing it all through a unified risk and compliance (GRC) lens. I make cybersecurity accessible by translating technical risk and regulatory complexity into language that lands with boards, audit committees, and engineering teams.
Across 30 years in financial services, telecommunications, and SaaS, I’ve led major security organizations, managed $20M+ budgets, and delivered outcomes like SOC 1/2 and ISO 27001 certifications with zero audit exceptions. I’ve reduced security spend (including a 30% reduction through stack rationalization), protected 20M+ PII records, improved phishing click-rates to ~4% or below, and built AI governance programs aligned to FCC/CPNI, data residency, and security requirements to enable compliant adoption at business speed. Most recently, I’ve provided fractional CISO and CIO leadership, including hands-on support for IaC-based secured production environments and executive risk reporting that turns exposure into business-level decisions.
Experience
Work history, roles, and key accomplishments
Principal, Fractional CISO & CIO
Remote Independent Practice
Jul 2025 - Present (1 year)
Provided fractional CISO and CIO advisory for a fintech/gaming platform, delivering security governance and technology strategy and standing up an IaC-based production environment for iOS/Android users. Served as a technical advisor to a cyber investment portfolio supporting security architecture and investment due diligence.
Led combined cybersecurity and enterprise IT organization, owning strategy, infrastructure, compliance, and technology investment. Implemented AI-driven phishing training and security review automation, coordinated penetration testing, and built an enterprise AI governance program for compliant AI adoption.
Served as CISO and CPO for a cybersecurity SaaS, leading a lean security and IT function and building the cybersecurity program from the ground up. Delivered SOC 2 Type II and ISO 27001:2022, responded to a security incident with forensic partners, and owned the GDPR-aligned privacy program.
Owned the enterprise security and privacy program, protecting 20M+ PII records and achieving SOC 1/2 and ISO 27001 with zero exceptions. Launched a security awareness program that drove phishing click-rates to 4%.
Vice President & Deputy CISO
E*TRADE Financial Corp
Apr 2016 - Nov 2017 (1 year 7 months)
Assisted the CISO with board-level cyber-risk reporting and led third-party penetration testing for mission-critical customer-facing applications. Designed a vulnerability and patch management framework to unify operations across multiple IT teams.
Led growth of the security architecture team and expanded responsibilities across security strategy and security awareness and training. Developed cloud and SaaS security strategy for a Cloud Security Excellence Center and established enterprise security guardrails across a large application portfolio.
Progressed through acquisitions into security engineering leadership, owning areas including security research, application security, QA, technical writing, and development. Led engineering for an intrusion prevention system and delivered IDP 8200 while reducing engineering OpEx through financial governance.
Sr. Account Manager
Israel Xpert Trusted Systems Ltd.
May 1999 - May 2000 (1 year)
Worked as a Sr. Account Manager at Israel Xpert Trusted Systems Ltd. in the security reseller and systems integrator space.
Managed IT operations at Check Point Software Technologies.
Captain, Acting CISO
Israel Defense Forces (Unit 8200)
Feb 1993 - May 1998 (5 years 3 months)
Served as Captain and Acting CISO in Israel Defense Forces (Unit 8200) within a military intelligence and cybersecurity role.
Education
Degrees, certifications, and relevant coursework
Columbia Business School
Master of Business Administration, Business Administration
Earned a Master of Business Administration through the Berkeley–Columbia Executive MBA program, with the Columbia Business School degree awarded in 2010.
Haas School of Business, UC Berkeley
Master of Business Administration, Business Administration
Earned a Master of Business Administration through the Berkeley–Columbia Executive MBA program, with the Haas degree awarded in 2009.
Queens College, City University of New York
Bachelor of Science, Computer Science
Earned a BS in Computer Science from Queens College, City University of New York in 1993.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Avishai?
You can contact Avishai and 90k+ other talented remote workers on Himalayas.
Message AvishaiGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
