Fractional CISO Leadership for Regulated Industries

Executive Security Leadership. Without the Full-Time Cost.

Most organizations in financial services, insurance, and healthcare don't need a full-time CISO. They need the right one, part of the time. J West Advisory gives business leaders executive-level security guidance so risk gets managed, audits get cleaner, and the business keeps moving.

Jon West, Founder and Principal of J West Advisory
Jon West, Founder and Principal
C|CISO · CISSP · CISM · CIPT
Who We Serve

Built for Industries Where Security Gets Audited, Not Just Discussed

We work with organizations where regulatory expectations are real, audit findings carry consequences, and security leadership has to show up ready. That's financial services, insurance, and healthcare. Those are the industries we know well, and where we do our best work.

Financial Services

  • Banks, credit unions, and lenders
  • Fintech and payment processors
  • GLBA, PCI-DSS, and state regulatory frameworks

Insurance

  • Carriers, MGAs, and insurance services firms
  • NAIC model law compliance and DOI readiness
  • Cyber insurance and third-party risk

Healthcare

  • Health plans, providers, and healthcare services organizations
  • HIPAA, CMS, and federal program requirements
  • Privacy programs and breach readiness
Services

Three Ways to Engage. One Trusted Partner.

Not every organization needs the same level of engagement. Some need a CISO in the room on a regular basis. Others need a clear-eyed outside perspective or help getting a specific project across the finish line. We offer three models so the work fits the need.

Tier 1: Fractional CISO Leadership

  • IT and security risk governance
  • Regulatory framework implementation
  • Security awareness and team development
  • Third-party and vendor risk management
  • Audit and incident readiness

Tier 2: Strategic Advisory

  • Security program maturity assessments
  • Risk posture and gap analysis
  • Roadmap and budget planning
  • Audit preparation and executive reporting

Tier 3: Project Engagements

  • Policy and standards refresh
  • Risk and vulnerability assessments
  • Tabletop exercises
  • AI governance readiness
  • Cyber insurance preparation and renewal support
Leadership

Meet Jon West, Founder and Principal

Jon West is a Chief Information Security Officer with over 16 years of experience leading security, privacy, and risk programs at national scale. His background spans financial services, insurance, and healthcare, three industries where the regulatory bar is high and the margin for error is low.

His path into security started in business and finance, which shapes how he thinks about risk today. Security decisions at J West Advisory get framed in operational and financial terms, not technical ones, because that's what boards and executives actually need to act on.

He holds credentials including C|CISO, CISSP, CISM, and CIPT. More practically, he's the person organizations call when an exam is coming, an audit finding needs a response, or leadership needs to understand what their actual risk exposure is. He gives them a straight answer.

Ready to Get Clarity on Your Risk?

Whether you need ongoing CISO leadership or a focused engagement, the first step is a conversation. Reach out and Jon will follow up to understand your situation and recommend a path forward.