I love this article by Michelle Drolet on Network World:
The enterprise is facing a dangerous combination of mounting cybersecurity threats of increasing subtlety—and a widening gap in the skills required to identify and combat them. Having someone who knows how to lead the charge in identifying and analyzing threats, creating strategic security plans and ensuring compliance requires the right level of expertise.
Enter the virtual CISO.
For smaller businesses, it simply doesn't make sense to invest in a full-time CISO when you can hire a virtual one and get the specialty skills you need to draw up a strategic overview and deliver the big picture. With a virtual CISO, there's no need to worry about benefits or monthly overhead.
Whether you're looking to get a snapshot of your security posture, you need to fill a temporary gap, or you need a leader to roll out a company-wide information security policy, the virtual CISO is a compelling value proposition.