Information Protection Advisor - SSP & CMMC Programs

Cigna

BLOOMINGTON (MN)

Hybrid

USD 103,000 - 172,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

The Cigna Group is seeking an Information Protection Advisor to support federal compliance programs and ensure systems meet evolving cybersecurity and regulatory requirements. You will partner with business, technology, cybersecurity, and control teams to maintain audit-ready documentation and support compliance initiatives aligned with federal standards such as CMMC and NIST.

This role offers an opportunity to collaborate across teams, tackle complex documentation challenges, and contribute to

Qualifications

  • Bachelor's degree required; 4+ years in information security, IT risk, compliance, audit, cybersecurity, or related field; or 8+ years in lieu of a degree.
  • Experience interpreting NIST requirements and translating them into documentation and compliance activities.
  • Strong organizational skills to manage multiple priorities and deadlines.
  • Excellent written and verbal communication; attention to detail.
  • Ability to collaborate with technical teams, business partners, and control owners.

Responsibilities

  • Develop, update, and maintain federal SSPs and related compliance documentation for audit readiness.
  • Partner with system owners, control owners, engineering teams, and SMEs to validate control implementations and documentation.
  • Track documentation updates, open items, remediation activities, and evidence requirements.
  • Gather, organize, and maintain control evidence and supporting artifacts in approved repositories.
  • Support compliance assessments, audits, and certification activities by coordinating documentation and responses.
  • Identify documentation gaps and potential compliance concerns; escalate when appropriate.

Skills

Risk management
Compliance documentation
NIST requirements
Organizational skills
Attention to detail
Written and verbal communication
Team collaboration
Independent work

Education

Bachelor's degree

Job description

Help Protect and Strengthen Federal Security ComplianceAre you passionate about security, compliance, and protecting sensitive information? The Cigna Group is seeking an Information Protection Advisor to support our federal compliance programs and help ensure our systems meet evolving cybersecurity and regulatory requirements.

In this role, you will partner with business, technology, cybersecurity, and control teams to maintain accurate, audit-ready security documentation and support compliance initiatives aligned with federal standards. Your work will directly contribute to protecting critical systems, improving operational readiness, and supporting compliance with frameworks such as CMMC and NIST.

This is an excellent opportunity for a detail-oriented professional who enjoys collaborating across teams, solving complex documentation challenges, and driving quality and consistency in security and compliance processes.

Responsibilities:
  • Develop, Update, & Maintain assigned federal System Security Plans (SSPs) and related compliance documentation to ensure accuracy, completeness, and audit readiness.
  • Partner with system owners, control owners, engineering teams, and subject matter experts to validate control implementations, system boundaries, and security documentation.
  • Track documentation updates, open items, remediation activities, and evidence requirements through completion.
  • Gather, organize, and maintain control evidence and supporting artifacts in approved repositories.
  • Support compliance assessments, audits, and certification activities by coordinating documentation, responding to requests, and monitoring deliverables.
  • Identify documentation gaps, inconsistencies, and potential compliance concerns, escalating issues when appropriate.
  • Maintain compliance artifacts including POA&Ms, policies, procedures, control mappings, assessment records, and remediation documentation.
  • Support CMMC readiness efforts through control mapping, evidence collection, gap assessments, issue tracking, and remediation follow-up.
  • Assist with defining and maintaining compliance scope, system boundaries, inventories, and asset populations supporting federal operations.
  • Contribute to templates, procedures, and quality reviews that improve consistency, efficiency, and documentation standards across the compliance program.
  • Communicate project status, risks, and priorities while managing multiple deliverables and deadlines.
  • Support additional security, regulatory, contractual, and audit-related initiatives as business needs evolve.
Required Qualifications:
  • 4+ years of relevant experience in information security, IT risk, compliance, audit, cybersecurity, or a related field with a bachelor's degree; or 8+ years of relevant experience in lieu of a degree.
  • Working knowledge of risk management, compliance, audit, and security control documentation practices.
  • Experience interpreting NIST requirements and translating them into actionable documentation and compliance activities.
  • Strong organizational skills with the ability to manage multiple priorities and deadlines.
  • Demonstrated attention to detail and commitment to documentation accuracy and quality.
  • Excellent written and verbal communication skills.
  • Ability to collaborate effectively with technical teams, business partners, and control owners.
  • Self-motivated, action-oriented, and capable of working independently while exercising sound judgment.
Preferred Qualifications
  • Experience creating, maintaining, or supporting federal System Security Plans (SSPs).
  • Experience with Cybersecurity Maturity Model Certification (CMMC), NIST SP 800-171, NIST SP 800-53, or Department of Defense (DoD) security requirements.
  • Experience managing POA&Ms, control narratives, evidence mappings, system inventories, diagrams, policies, or procedures.
  • Knowledge of additional security and compliance frameworks such as SOC 2, PCI, SOX, HITRUST, or similar standards.
  • Experience supporting regulatory assessments, audits, or certification activities.
  • Professional certifications such as CISSP, CISM, CISA, CCP, or CCA.
  • Strong analytical, technical writing, and presentation skills.
  • Proven ability to build effective relationships across business, cybersecurity, and technology teams.

If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload.

For this position, we anticipate offering an annual salary of 103,100 - 171,900 USD / yearly, depending on relevant factors, including experience and geographic location.

This role is also anticipated to be eligible to participate in an annual bonus plan.

At The Cigna Group, you'll enjoy a comprehensive range of benefits, with a focus on supporting your whole health. Starting on day one of your employment, you'll be offered several health-related benefits including medical, vision, dental, and well-being and behavio

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Protection Advisor
Information Protection Advisor

Cigna • Bloomfield (CT)

Remote
USD 103,000 - 172,000
Information Protection Advisor - SSP & CMMC Programs
Information Protection Advisor - SSP & CMMC Programs

The Cigna Group • BLOOMINGTON (MN)

Hybrid
USD 103,000 - 172,000
Annual bonus plan
Medical, vision, dental benefits
401(k)
+1
Information Protection Advisor
Information Protection Advisor

The Cigna Group • St. Louis (MO)

Hybrid
USD 103,000 - 172,000
Health benefits
401(k)
Paid time off
Federal Information Protection & SSP Compliance Advisor
Federal Information Protection & SSP Compliance Advisor

Cigna • BLOOMINGTON (MN)

Hybrid
USD 103,000 - 172,000
Federal Information Protection & Compliance Advisor
Federal Information Protection & Compliance Advisor

Cigna • Bloomfield (CT)

Remote
USD 103,000 - 172,000
Information Protection & Compliance Advisor
Information Protection & Compliance Advisor

The Cigna Group • St. Louis (MO)

Hybrid
USD 103,000 - 172,000
Health benefits
401(k)
Paid time off
Remote Federal SSP & CMMC Compliance Advisor
Remote Federal SSP & CMMC Compliance Advisor

The Cigna Group • BLOOMINGTON (MN)

Hybrid
USD 103,000 - 172,000
Annual bonus plan
Medical, vision, dental benefits
401(k)
+1
Info Protection Advisor-App Security Eng- Hybrid
Info Protection Advisor-App Security Eng- Hybrid

cigna • Bloomfield (CT)

Remote
USD 156,000 - 172,000
Health benefits
401(k)
Paid time off
+1
Information Protection Advisor- Hybrid
Information Protection Advisor- Hybrid

cigna • Bloomfield (CT)

Hybrid
USD 120,000 - 150,000
Annual bonus
Health benefits
401(k)
+2
Info Protection Advisor-App Security Eng- Hybrid
Info Protection Advisor-App Security Eng- Hybrid

Cigna Health and Life Insurance Company • Bloomfield (CT)

Remote
USD 156,000 - 172,000
Telecommuting permitted
Annual bonus potential