SonicJobs Logo
Left arrow iconBack to search

Certified CMMC Professional

DigiFlight
Posted 16 days ago, valid for 14 days
Location

Dhs, MD 20588, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The Certified CMMC Professional (CCP) will evaluate organizations' cybersecurity practices against CMMC requirements and support readiness engagements and formal assessments.
  • This role involves validating control implementations, analyzing documentation, and executing assessments in line with the CMMC Assessment Process (CAP).
  • Candidates must have 3–5 years of experience in cybersecurity, IT audit or compliance, and governance, risk, and compliance (GRC).
  • A salary range for this position is competitive and commensurate with experience, reflecting the specialized nature of the role.
  • The ideal candidate will possess strong analytical skills, attention to detail, and the ability to communicate effectively in both advisory and assessment capacities.

Duties and Responsibilities

The Certified CMMC Professional (CCP) supports both CMMC readiness engagements and formal assessment activities by evaluating an organization’s cybersecurity practices against CMMC requirements. This role contributes to control implementation validation, documentation analysis, and assessment execution, while ensuring alignment with the CMMC Assessment Process (CAP).

Readiness & Advisory Support

  • Support organizationsin preparing for CMMC Level 1 and Level 2 certification
  • Perform gap assessments against:
  • CMMC requirements
  • NIST SP 800-171 controls
  • Assistin the development and refinement of:
  • System Security Plans (SSPs)
  • POA&Ms
  • Policies and procedures
  • Helpidentifyand remediate control deficiencies prior to formal assessment
  • Provide guidance on:
  • Control implementation expectations
  • Evidence requirements
  • Certification boundary considerations


Minimum Experience

3–5 years of experience in:

  • Cybersecurity
  • IT audit or compliance
  • Governance, Risk, and Compliance (GRC)
  • Information systems or IT operations

Working knowledge of:

  • CMMC Level 1 and Level 2 requirements
  • NIST SP 800-171
  • CMMC Assessment Process (CAP)
  • FedRAMP
  • SOC 2


Required Skills

  • Experience supporting:
  • Security assessments or audits
  • Compliance frameworks (e.g., FedRAMP, SOC 2, ISO 27001)
  • Familiarity with DoD contractor environments and Controlled Unclassified Information (CUI)
  • Analytical thinking and attention to detail
  • Ability to interpret control requirements and supporting evidence
  • Strong written and verbal communication skills
  • Ability tooperatein both advisory and assessment roles with discipline

Considerations

  • Must avoid conflicts of interestin accordance withapplicable CMMC ecosystem expectations



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.