Schellman: Provides IT compliance, cybersecurity, and attestation services.
1+ YOEExperience in CMMC and NIST-based assessments, 1+ years professional services or Schellman experience, CCP required and favorable DoD Tier 3 determination, strong technical and client communication skills.
CMMC, NIST SP 800-171, NIST 800-53, FedRAMP, 32 CFR Part 170, Microsoft Word, Microsoft Excel, Microsoft PowerPoint
CMMC Senior Consultant (Cybersecurity Maturity Model Certification)
United States
RemoteFull Time
SilverSky: Provides managed cybersecurity detection and response services.
4+ YOEExperience performing CMMC readiness assessments and pre-audit work in Microsoft GCCH and/or Amazon Gov clouds; strong knowledge of CMMC, NIST SP 800-171, DFARS 252.204-7012; bachelor’s in IT/CS or 4+ years equivalent; CCP/CCA/CISSP credentials preferred; strong communication and project leadership.
Sentinel Blue: Managed cybersecurity and compliance services for government contractors.
Must hold LCCA with Tier III clearance, experience conducting CMMC Level 2 assessments, strong knowledge of NIST SP 800-171/800-172 and CAP, assessment report writing, and team leadership; eligible to work with defense clients or meet U.S. person/export control requirements.
Paragone Solutions: Provides cybersecurity, IT training, and professional services to federal agencies.
6+ YOELeads planning, coordinating, and supporting CMMC assessments; requires 6+ years cybersecurity experience, DoD familiarity, and strong PM/communication skills.
Microsoft Azure, Microsoft Defender, Microsoft Sentinel, Microsoft 365 GCC/GCC High
PCL Construction: Global general contractor building infrastructure, commercial, and industrial projects.
3+ YOE3+ years government contract or cybersecurity compliance experience; working knowledge of CMMC, NIST SP 800-171, DFARS/FAR safeguarding; assessment and evidence coordination; strong communication and stakeholder skills.
DigiFlight: Provides cybersecurity, aerospace, and systems engineering for government agencies.
4+ YOE3–5 years in cybersecurity, IT audit/compliance, and GRC; knowledge of CMMC Level 1/2, NIST 800-171, CAP, FedRAMP, SOC 2; experience with security assessments and DoD/CUI environments; strong communication.
Washington or Cleveland or California or Colorado or Hawaii or Illinois or Maine or Maryland or Massachusetts or Minnesota or New Jersey or New York or Vermont or Virginia or Washington or District of Columbia
$126k-$243k/yrHybridFull Time
Accenture Federal ServicesNYSE: ACN: Provides technology and consulting services to U.S. federal agencies.
5+ YOE5+ years in cybersecurity compliance/audit/assessment; experience with CMMC 2.0, NIST SP 800-171/172, FAR 52.204-21; one of CCP, CCA, CISSP, or CISA required; assessment leadership and client advisory experience.
Arizona or Colorado or Florida or Georgia or Idaho or Illinois or Kansas or Kentucky or Massachusetts or Michigan or Minnesota or Montana or North Carolina or Ohio or Pennsylvania or South Dakota or Tennessee or Texas or Washington or Wisconsin
$150k-$185k/yrRemoteFull Time
FRSecure: Cybersecurity consultancy providing risk assessments and information security management.
5+ YOE5+ years in information security, CCA and CISSP required, current CAICO, ability to obtain Tier 3 DoD determination, experience as vCISO/security consultant, excellent communication and mentorship skills.
Lead CMMC assessments, evaluate objective evidence, conduct interviews and testing, document findings; certified CCA required; related cybersecurity certifications preferred.
CMMC Assessor (Independent Contractor and Full Time Opportunities)
Fairlawn, Ohio, United States
HybridFull Time, Contract
Smithers: Provides testing, consulting, and compliance services for global industries.
Maintain Cyber AB CCA or Lead CCA credentials, conduct CMMC assessments, produce audit reports, communicate with clients, and use SQA procedures and platforms.
Triton Systems: Develops and commercializes advanced technology for defense and aerospace.
3+ YOE3+ years IT experience with CMMC Level 2 implementations, deployments, vulnerability/patch management (Qualys, NinjaOne), SIEM (SolarWinds SEM), Microsoft 365 GCC High (iTune); ability to obtain security clearance; US citizenship and valid driver's license required.
Qualys, NinjaOne, iTune, SolarWinds, SolarWinds SEM, Microsoft 365 GCC High, SIEM
Point Blank Enterprises: Designs and manufactures body armor and tactical protective equipment.
5+ YOEBachelor’s in Computer Science or Cybersecurity; 5+ years in cybersecurity/security analysis; US Person with ability to pass background checks; certifications preferred.
SIEM, Scripting, Government Cloud, Network Troubleshooting, Inventory Management
On Call Computer Solutions: Cybersecurity and compliance services for Department of Defense contractors.
3+ YOECMMC CP required (or ability to obtain CCP/CCA within 90 days), 3+ years cybersecurity/compliance experience, knowledge of NIST SP 800-171/DFARS/CMMC, strong communication and project-management skills.
NIST SP 800-171, CMMC 2.0, DFARS 252.204-7012, SPRS, Microsoft Government Cloud (GCC/GCC High)
The Armor Group: Manufacturer of custom industrial metal products and precision machinery.
Experience managing CMMC/NIST SP 800-171 compliance and DFARS requirements; maintaining SSP and POA&M; conducting risk and gap assessments; coordinating with IT and leadership to sustain audit-ready posture.
Secureframe: Automated security compliance and risk management platform.
2+ YOE2+ years in implementation, professional services, customer success, or technical project delivery; strong project-management instincts; technical fluency with cloud, identity, and security concepts; ability to operationalize CMMC/NIST requirements and lead customer implementations.
Avum: Software engineering and systems integration for government agencies.
3+ YOEBachelor's or equivalent, 3+ years in cybersecurity/GRC/audit, working knowledge of CMMC and NIST SP 800-171, control validation, evidence collection, technical security familiarity, strong documentation and communication skills.
CMMC, NIST SP 800-171, Microsoft 365, Azure, AWS, Windows Server, Active Directory, Entra ID, Linux, SIEM, EDR
Secureframe: Automated platform for security and compliance certifications.
2+ YOE2+ years in implementations or customer-facing delivery; technical fluency with identity, endpoints, cloud, logging; project-management skills; knowledge or ability to learn CMMC/NIST SP 800-171 and evidence management.