Source Job

US 4w maternity 4w paternity

  • You will lead the development and management of client Governance, Risk, and Compliance programs.
  • You will assess cybersecurity compliance against frameworks like CMMC, NIST SP 800-171, and DFARS.
  • You will provide advisory services and manage client expectations to ensure successful engagements.

CMMC Cybersecurity

20 jobs similar to Compliance Consultant, CMMC

Jobs ranked by similarity.

US

  • Lead enterprise IT infrastructure and cybersecurity operations for a government contracting company.
  • Ensure compliance with CMMC 2.0, NIST, and DFARS regulations across all systems.
  • Manage risk, business continuity, and enterprise systems governance including DAR and COOP planning.

Lynker Corporation is a leading provider of innovative solutions in weather and climate science. As an employee-owned business, Lynker combines scientific expertise with mature, results-driven processes to serve government clients and employs a team of 500-1000 staff.

Unlimited PTO

  • Lead end-to-end CMMC implementations for customers, owning the customer experience from kickoff through handoff and readiness milestones.
  • Translate customer requirements into clear implementation plans, including scope, timeline, milestones, owners, risks, dependencies, and success criteria.
  • Build repeatable implementation assets, including kickoff templates, project plans, RACI models, discovery questionnaires, evidence checklists, status reports, readiness criteria, risk registers, and handoff runbooks.

Secureframe is a cybersecurity compliance platform that helps companies achieve and maintain compliance standards. It is a fast-growing startup backed by top venture capital firms, fostering a culture of creativity and continuous learning.

US

  • Lead a team of 4-6 security consultants serving small to enterprise organizations across the Defense Industrial Base.
  • Provide compliance consulting, cloud security solutions, and thought leadership for CMMC certification readiness.
  • Develop standardized methodologies, mentor team members, and foster a culture of client success and technical excellence.

Aprio is a Top 20 CPA and advisory firm providing compliance advisory and automation services for fast-growing industries. With 40 U.S. office locations and over 3,200 team members globally, Aprio fosters a top-rated culture focused on growth and collaboration.

US Unlimited PTO 16w maternity 10w paternity

  • Own compliance operations for FedRAMP, DoD Impact Levels, and CMMC programs.
  • Manage federal obligation registers, POA&Ms, and continuous monitoring.
  • Produce artifacts including NIST 800-171 self-assessments and certification packages.

Kaizen builds modern, AI-native software for government services to restore public trust. Founded in 2022 and based in NYC, the company has raised $35 million from top venture firms and reaches 55 million Americans across 50+ agencies.

US

  • Act as a trusted consultant guiding clients through complex security and compliance challenges.
  • Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
  • Design and implement AWS and/or GCP security tools with deep expertise in cloud security.

Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.

US

  • Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
  • Oversee preparation and execution of external compliance audits, including facilitating security assessments.
  • Support mapping of compliance requirements to security control implementation using agile development processes.

Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.

$230,000–$270,000/yr
US Unlimited PTO 16w maternity 16w paternity

  • Own and manage federal compliance frameworks including FedRAMP, NIST, CMMC, DFARS, and StateRAMP.
  • Translate regulatory controls into automated tests and machine-readable specifications for continuous authorization.
  • Collaborate with Engineering, Product, and Design to shape product capabilities and influence strategy.

Our partner company is a technology organization focused on federal compliance automation, serving organizations from emerging companies to large enterprises. They operate with a remote-first culture and value autonomy, accuracy, and scalability.

US

  • Lead the security authorization process for systems and applications in compliance with NIST and DoD regulations.
  • Conduct risk assessments and develop security documentation to ensure high standards of security and compliance.
  • Work with sponsors to automate manual processes and implement technical solutions for cyber defense.

Dark Wolf Solutions provides cybersecurity and risk management services to protect sensitive information and critical infrastructure. They are a mid-sized company that values motivated, detail-oriented professionals and are an EEO/AA employer committed to diversity.

US

  • Lead compliance initiatives across commercial and federal lines, driving FedRAMP, CMMC, ISO 27001, SOC 2, and HITRUST programs.
  • Coordinate internal and external audits, ensuring stakeholder readiness and timely remediation of findings.
  • Manage program roadmaps, risk registers, and cross-functional execution to translate regulatory requirements into actionable plans.

We provide an AI-infused scenario planning and analysis platform to optimize business decision-making. We serve over 2,400 global customers including Fortune 50 companies and foster a Winning Culture focused on innovation, diversity, and leadership.

US

  • Support enterprise cybersecurity governance, compliance, and risk management programs.
  • Conduct security control assessments, audit readiness, and policy development.
  • Coordinate with technical teams and executive leadership to drive cybersecurity modernization.

ERP International is a nationally respected provider of health, science, and technology solutions supporting government and commercial clients. The company has been named a Top Workplace by WTOP News for 7 years and offers a culture of employee recognition, community outreach, and professional development.

$105,000–$125,000/yr
US

  • Own and continuously improve the company's compliance program across SOC 2, GDPR, ISO 27001, and other frameworks.
  • Lead external audits, develop security policies, and partner with engineering teams to implement controls.
  • Manage third-party risk, respond to customer security questionnaires, and build compliance metrics for executive reporting.

10a Labs is the safety and threat-intelligence layer trusted by frontier AI labs, AI unicorns, Fortune 10 companies, and leading global technology platforms. They are a high-growth technology company with a collaborative culture, operating in a fast-moving environment.

$105,000–$155,000/yr
US

  • Provide expert guidance on cybersecurity policies, Risk Management Framework (RMF) processes, and security control implementation.
  • Conduct vulnerability assessments, penetration testing, and Cybersecurity Compliance and Readiness Inspections (CCRI).
  • Prepare detailed technical reports and briefings for senior leadership on cybersecurity findings and progress.

The company is a partner organization focused on cybersecurity and mission-critical IT environments. They offer a remote work culture and support complex security initiatives for government and enterprise clients.

$150,000–$200,000/yr
US

  • Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
  • Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
  • Represent the compliance program in customer-facing discussions and security due diligence reviews.

Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.

US

  • Maintain traceability between federal Zero Trust guidance and organizational objectives.
  • Support governance forums and documentation for architecture decisions.
  • Coordinate with technical and program stakeholders to ensure alignment.

The company supports federal Zero Trust cybersecurity initiatives. It is a collaborative, people-focused environment emphasizing professional development and innovation.

US

  • Lead privacy and security impact assessments for partner-facing business applications.
  • Design and improve the Partner Data Privacy & Security Impact Assessment process.
  • Evaluate risks throughout the data lifecycle and recommend mitigation strategies.

Del Oro Consulting is a staffing and consulting firm that connects professionals with contract opportunities. They are a mid-sized organization focused on delivering specialized talent solutions in a collaborative environment.

US 3w PTO

  • Lead quality assurance for RMF authorization packages to ensure completeness and readiness for government review.
  • Coordinate with RMF analysts, ISSOs, system owners, and technical stakeholders to validate security documentation and evidence.
  • Mentor team members on documentation standards and best practices while tracking assessment readiness metrics to reduce rework.

True Zero Technologies is a veteran-owned small business that enables people and technology to drive quality outcomes. The company has been named a Best Place to Work multiple times and made the Inc. 5000 list of fastest-growing companies, reflecting its people-first culture and commitment to excellence.

US

  • Execute NIST SP 800-53 control mappings and implement security baselines.
  • Develop and maintain SSPs, POA&Ms, and authorization documentation.
  • Support continuous monitoring and gap assessments for ATO and FedRAMP.

This company provides cybersecurity and compliance consulting services, supporting defense contractors and federal organizations with NIST and FedRAMP requirements. It is an early-stage, remote-first company with a collaborative culture focused on federal cybersecurity.

$63,000–$83,000/yr
US

  • Coordinate cybersecurity awareness campaigns and training programs.
  • Maintain documentation for data classification, retention, and security controls.
  • Support compliance with frameworks like ISO and NIST.

Our partner is a mission-driven organization focused on strengthening information security and compliance. They foster a collaborative, remote-first culture with emphasis on professional growth and continuous learning.

US

  • Lead client engagements focused on cybersecurity strategy, privacy compliance, and security maturity improvements.
  • Provide virtual CISO advisory services, including cybersecurity roadmaps, risk mitigation, and incident response planning.
  • Develop and support privacy compliance programs aligned with frameworks such as CCPA/CPRA, GDPR, and ISO 27701.

Our partner is a cybersecurity and privacy advisory firm that helps organizations navigate complex regulatory and security challenges. They offer a flexible remote environment with diverse client engagements and a focus on continuous improvement.

US

  • Serve as a trusted advisor to government contractor clients on compliance and operational challenges.
  • Lead compliance assessments and gap analyses related to FAR, DFARS, CAS, and other federal requirements.
  • Support client interactions with government auditors including DCAA and DCMA.

This company provides advisory services to government contractors on compliance, contract management, and operational challenges. It fosters a collaborative workplace culture focused on integrity, trust, inclusion, and respect.