Director of Software Engineering

Eccalon, LLC

Detroit (MI)

On-site

USD 80,000 - 120,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

A cybersecurity firm is seeking a Cybersecurity Advisor specializing in CMMC compliance. The role involves leading organizations through the certification process, advising on cybersecurity best practices, and developing strategies tailored to client needs. Qualified candidates will possess a degree in Cybersecurity or related field, be certified in key areas like CISSP or CMMC-AB, and have strong skills in risk analysis and incident management. The position requires collaboration with various stakeholders to enhance cybersecurity posture and ensure ongoing compliance.

Qualifications

  • Expert-level understanding of IT and cybersecurity landscapes.
  • Extensive experience in cybersecurity compliance and regulatory standards.
  • Strong project management skills, managing multiple projects and deadlines.

Responsibilities

  • Advise on cybersecurity issues including risk analysis and compliance.
  • Lead client’s CMMC certification, from assessment to final certification.
  • Conduct audits and prepare for external audits by third-party assessors.

Skills

Risk analysis
Incident management
Compliance
Security architecture
Strong communication skills
Analytical mindset

Education

Bachelor's degree in Cyber Security, IT, or related field
Relevant certifications (CISSP, CISM, CMMC-AB Certified Assessor)

Tools

CMMC framework
NIST standards
ISO 27001

Job description

The Cybersecurity Advisor (CA) specializing in Cybersecurity Maturity Model Certification (CMMC) has expert-level understanding of IT and cybersecurity landscapes, with in-depth knowledge of the CMMC framework, including its requirements, processes, and implementation strategies. The Cyber Advisor will lead client organization’s efforts to achieve and maintain CMMC compliance with current and future standards. The Cyber Advisor will serve as a trusted cybersecurity resource to both technical and non-technical stakeholders and can advise on wide-ranging cyber security topics, including cyber threats, technologies, and best practices, enhancing the organization's overall cybersecurity posture.

Qualified candidates should have a strong technical background (ex, systems, networks, cloud, etc.) in addition to vulnerability analysis, incident reporting, security standards, policy, and training content delivery.

The Cybersecurity Advisor may also conduct classroom and/or webinar instruction in the theory & execution of cyber security best practices to small and medium size business operators. The Advisor will work as part of a team to develop and refine cyber courseware.

Responsibilities
Key Responsibilities:
  • Provide expert advice on a wide range of cybersecurity issues, including risk analysis, incident management, compliance, and security architecture.
  • Develop and implement cybersecurity strategies tailored to the specific needs and risk profile of the organization.
  • Lead client organization's CMMC certification process, from initial assessment to final certification and continuous monitoring.
  • Develop and implement a CMMC compliance roadmap, including timelines, resource allocation, and key milestones.
  • Lead compliance and security assessments with various cybersecurity frameworks and standards, including CMMC, ISO 27001, NIST 800-171, NIST CSF, ISO 9001, and FedRAMP.
  • Act as the primary point of contact for all cyber compliance-related matters, liaising with senior management, external auditors, and other relevant parties.
  • Develop and implement cybersecurity strategies tailored to the specific needs and risk profile of the organization.
Framework Implementation
  • Interpret and apply appropriate cyber-related framework requirements to the organization's systems, processes, and policies as applicable.
  • Collaborate with IT, security, and operational teams to implement necessary controls and measures to achieve the required compliance with frameworks and policies, including CMMC.
Gap Analysis and Remediation
  • Conduct comprehensive gap analyses to identify deficiencies in current security practices relative to applicable cybersecurity requirements.
  • Develop and manage Plan of Action and Milestones (POA&Ms) to address identified gaps, ensuring timely and effective implementation of corrective actions.
Policy and Procedure Development
  • Create and maintain policies, procedures, and documentation required for security compliance, including System Security Plans (SSP).
  • Ensure all relevant stakeholders are informed of and adhere to these policies and procedures.
Training and Awareness
  • Work with Instructional System Design teams to create and deliver cybersecurity and awareness training to educate clients and employees on cybersecurity requirements, security policies, and best practices.
  • Conduct tabletop exercises to ensure organizational readiness in the event of a security breach.
  • Promote a culture of security awareness throughout the organization, emphasizing the importance of compliance.
Audits and Assessments
  • Plan and conduct audits to evaluate the effectiveness of security controls and compliance.
  • Prepare for and support external audits conducted by certified third-party assessors (e.g., C3PAOs).
Continuous Monitoring and Improvement
  • Implement continuous monitoring processes to ensure ongoing compliance with CMMC and other relevant security standards.
  • Regularly review and update security measures, policies, and procedures to reflect changes in the relevant cybersecurity framework or organizational needs.
Stakeholder Engagement
  • Act as the primary point of contact for all cyber-related matters, liaising with senior management, external auditors, and other relevant parties.
  • Provide expert guidance and support to internal teams on CMMC and other cyber-related issues and initiatives.
  • Identify, assess, and mitigate risks associated with non-compliance with security standards.
  • Develop risk management strategies that align with the organization's security objectives and compliance obligations.
Reporting and Documentation
  • Maintain comprehensive records of compliance-related activities, including assessment reports, audit findings, and remediation efforts.
  • Prepare and present regular status reports to senior management, highlighting progress, challenges, and next steps.
Required Qualifications
  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field.
  • Relevant certifications such as CISSP, CISM, CMMC-AB Certified Assessor, or equivalent.
  • Extensive experience in cyber security, with a focus on compliance and regulatory standards.
  • In-depth knowledge of the CMMC framework and its application in various organizational contexts.
  • Strong project management skills, including the ability to manage multiple projects and deadlines.
  • Excellent communication and interpersonal skills, with the ability to work effectively with technical and non-technical stakeholders.
  • Proficiency in developing and implementing security policies and procedures.
  • Analytical mindset with strong problem-solving abilities.
Preferred Qualifications
  • A master's degree in Cyber Security, Information Technology, Computer Science, or a related field.
  • Familiarity with other regulatory frameworks and standards, such as NIST SP 800-171, ISO 27001, and DFARS.
  • Experience working with government contractors and understanding of the federal contracting process.
  • Strong technical background, with experience in implementing security controls and technologies.
  • Ability to adapt to changing regulatory landscapes and organizational needs.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

DigiFlight, Inc. • Huntsville (AL)

On-site
USD 90,000 - 120,000
Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

DigiFlight, Inc. • Columbia (MD)

Hybrid
USD 90,000 - 130,000
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • Los Angeles (CA)

On-site
USD 90,000 - 130,000
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • United States

On-site
USD 90,000 - 120,000
CMMC (Cybersecurity Maturity Model Certification) Consultant
CMMC (Cybersecurity Maturity Model Certification) Consultant

Tenacious Solutions, LLC • Arlington (VA)

Remote
USD 80,000 - 120,000
CMMC & Cybersecurity Compliance Advisor
CMMC & Cybersecurity Compliance Advisor

Eccalon, LLC • Detroit (MI)

On-site
USD 80,000 - 120,000
Practice Director
Practice Director

Ascera • United States

On-site
USD 100,000 - 130,000
Competitive salary
401(k) with company match
Comprehensive medical, mental, and vision plans
+2
Senior Security Compliance Specialist
Senior Security Compliance Specialist

FORTEM TECHNOLOGIES INC • Lindon (UT)

On-site
USD 110,000 - 160,000
Associate Director – Cybersecurity Compliance Lead – $140-185K Plus Bonus & Pension
Associate Director – Cybersecurity Compliance Lead – $140-185K Plus Bonus & Pension

ACCsurance, LLC • United States

On-site
USD 140,000 - 185,000
Practice Lead, GRC Advisory for Shellproof Security
Practice Lead, GRC Advisory for Shellproof Security

The ProActive Technology Group • New York (NY)

On-site
USD 100,000 - 150,000
Competitive salary
Health, vision, and dental benefits
Performance-based incentives
+3