Fractional CIO
The executive technology seat on a part-time basis — strategy, budget, vendors, and the security posture — owned end to end until you're ready to hire in-house, or indefinitely.
Fractional CIO · Cybersecurity · AI Governance · Chicago Metro & Global (Remote)
Tullio IT places a foundational technology and security executive — the kind who builds the base an organization runs on, then runs it with discipline — inside your business on a fractional basis: to steady operations, harden the environment, and make the calls a board can defend. Built inside the institution, proven from zero.
The practice
Five ways the work shows up. Every engagement runs on a single source of truth, with a documented control record behind the decisions.
The executive technology seat on a part-time basis — strategy, budget, vendors, and the security posture — owned end to end until you're ready to hire in-house, or indefinitely.
Security leadership with executive ownership: posture, controls, and the hard calls a regulated enterprise needs standing, not just after a breach. Then incident command and the rebuild when one lands — bringing a breached enterprise back online and closing the gaps that let it happen, written down and auditable.
One governed system of record instead of arguing spreadsheets. Master-data management and golden-record architecture so the numbers the board sees are the numbers that are true.
Board-defensible controls and cyber-insurance readiness for the risks now landing on the agenda. And AI governance and assurance, run with the same discipline as security — an inventory of where AI is used, policy and oversight gates, and the audit-and-insurance evidence to back it. Provenance, source-of-truth, and guardrails, so the organization can sign its name to what the system produces. Mapped to the standards your auditors already ask about — ISO 42001 and the NIST AI RMF.
The technology side of a transaction — diligence before the deal closes, integration after it does. Merging two environments into one that actually runs, without losing the data, the controls, or the operations in the cutover.
Selected track record
National manufacturing, public-sector law enforcement, higher education, and SMB consulting — environments where the systems have to stay up and the decisions have to hold up.
Recruited to stand up the technology organization. Led a 46-day enterprise rebuild in the wake of an international cyberattack — the kind of board-defensible incident discipline now in demand across regulated industries.
The practice itself: executive technology and security leadership delivered part-time to mid-market organizations that needed the seat without the headcount.
Enterprise technology leadership at public-sector scale — roughly a $12M budget and 6,500 users across a complex, high-accountability environment.
Where the operating discipline started: do it right, write it down, stand behind it.
Tullio John Borghi · under the sign of Pisces
Design it right. Secure it. Sign your name to it.
How it works
A standing share of the week. The ongoing executive seat — set hours, predictable cost, full ownership of the technology and security agenda.
Lighter-touch counsel for a leadership team or board — strategy reviews, security posture, and the calls that need a senior operator's read.
A defined engagement with an end date — a rebuild, a migration, an audit-readiness push, or incident response when it matters most.
Get in touch
A short conversation is the fastest way to know if there's a fit. No deck, no pitch — just a direct read on the problem.