CMMC Practice Lead jobs in United States
cer-icon
Apply on Employer Site
company-logo

SecureStrux® · 2 days ago

CMMC Practice Lead

SecureStrux is seeking a CMMC Practice Lead with experience in CMMC consulting and assessments. In this role, you will manage the CMMC line of business, leading a team of assessors to deliver compliance and risk services to the Defense Industrial Base and Defense Agencies.

Cyber SecurityGovernmentInformation TechnologyNational SecuritySecurity
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote
Hiring Manager
Katie Saldarriaga, MBA
linkedin

Responsibilities

Lead and mentor a team of CMMC consultants, fostering collaboration, knowledge-sharing, and professional growth
Oversee and participate in client engagements, including compliance assessments, gap analyses, remediation planning, and readiness reviews, with a primary focus on CMMC, NIST 800-171, FedRAMP, NIST 800-53, FISMA, and related frameworks
Define assessment scopes for CMMC Level 1 and 2 and provide risk-based recommendations to clients based on findings
Support clients by developing remediation roadmaps and Plans of Action and Milestones (POA&Ms)
Manage client relationships and communications, ensuring high-quality delivery and measurable results
Contribute to the maturity of the compliance practice by refining internal processes, methodologies, and delivery standards
Partner with Business Development to support proposals, level-of-effort estimates, and technical subject matter expertise for both federal and commercial opportunities
Stay current on evolving CMMC and DoD requirements to ensure SecureStrux remains at the forefront of compliance advisory services
Create detailed information security policies and procedures to ensure compliance with various standards, including CMMC Level 2 and ISO 27001/2
Support other compliance-related projects as needed

Qualification

CMMC consultingCMMC assessmentsCybersecurity experienceCMMC certificationsNIST 800-171FedRAMP experienceSecurity compliance assessmentsLeadershipProject Management

Required

Associate or bachelor's degree, or equivalent experience, and 10+ years' experience
Active Secret Clearance required to start
Active Certified CMMC Professional (CCP) Certification required to start
Active Certified CMMC Assessor (CCA) Certification required to start
CISSP or equivalent required to start
10 years of Cybersecurity experience
5 years of assessment or audit experience
Knowledge of and hands-on experience with CMMC, NIST 800-171, and related frameworks
Deep familiarity with, or experience performing security compliance assessments supporting a C3PAO
Experience implementing various security policy frameworks and control design
Experience supporting FedRAMP and/or RMF security assessments

Preferred

Certification as a Project Management Professional (PMP) is preferred
Experience as a Security control Assessor DoD or Federal Agencies is a plus

Benefits

Comprehensive health benefits to support you and your family
Flexible time off
Continuing education allowance
A donation allowance for charitable causes
A matched 401k

Company

SecureStrux®

twittertwittertwitter
company-logo
SecureStrux® is a cybersecurity, engineering, risk and compliance firm.

Funding

Current Stage
Early Stage
Company data provided by crunchbase