Fractional security & technology leadership

Fractional CISO, CIO & CTO for healthcare, SaaS and AI driven organizations

Secure transformation, identity architecture and AI ready operations, led by a seasoned executive who understands both engineering reality and regulatory expectations.

Partnering with teams that handle PHI, clinical data, complex identity and AI powered workflows.
Led by Tom Smolinsky

I help organizations modernize cloud environments, design identity aware and AI ready architectures, and build security programs that support real world operations instead of slowing teams down.

Tom Smolinsky Fractional CISO, CIO & CTO
Learn more →

Security and technology leadership with depth

Vitso is a boutique advisory practice focused on regulated, data intensive and AI aware organizations. The work combines executive judgement, practical architecture and hands on experience.

20+ years executive experience

CISO, CIO, CTO and Head of Technical Operations across healthcare, SaaS and life sciences.

Regulated environment focus

HIPAA, SOC 2, NIST 800-171, GxP and payer/provider ecosystems.

Cloud, identity and AI

Cloud modernization, identity models, Zero Trust patterns and AI ready architectures.

Proven outcomes

Cloud cost reductions, DR proven in real incidents and national scale identity design.

Trusted by technology and healthcare leaders

How Vitso can help

Fractional leadership and targeted engagements that align security, infrastructure, identity and AI initiatives with the reality of your teams and roadmap.

Fractional leadership

Fractional CISO, CIO and CTO support for organizations that need senior guidance without a full time executive seat.

  • Security and compliance leadership
  • Technical operations and infrastructure strategy
  • Identity and access management direction
  • Risk management and audit readiness

Cloud, identity and infrastructure

Modernization of hosting, platforms and access models with a focus on reliability, cost and privacy.

  • AWS architecture and cost alignment
  • Data protection and segmentation strategies
  • Zero Trust and network access patterns
  • Resiliency, DR and observability improvements

AI governance and secure enablement

Helping teams adopt AI safely while preserving trust with patients, customers and regulators.

  • Secure AI tool onboarding and controls
  • AI developer workflows and DLP expectations
  • Red Zone and data boundary design
  • Pragmatic AI governance frameworks

HIPAA Training for Builders Free

An engineer-friendly HIPAA training for developers, designers, data teams and operators who build systems that handle protected health information. Covers data flows, system boundaries, identity, auditability and safe development practices.

Start a conversation

If you are responsible for a product, platform or program that carries security, privacy or reliability risk and want a pragmatic partner at the table, I am happy to talk.

Reach out with a brief description of your context and what you are trying to solve. If it is not a fit, I will say so. If it is, we will design something that respects your constraints and your goals.

We'll respond within one business day