Lead CCA Certified Professionals

TestPros

United States

Remote

USD 83,000 - 145,000

Part time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

TestPros is seeking an experienced CMMC Consultant to guide clients through CMMC 2.0 implementation and compliance levels 1–4. This part-time consulting role offers flexible scheduling and the opportunity to work with DoD contracts and federal requirements.

Ideal candidates bring 5+ years in cybersecurity consulting, CCP and CCA certifications, and hands-on experience with NIST SP 800-171/800-172, DFARS, and eMASS/ACAS. Remote or CST-based engagement preferred.

Qualifications

  • Over 5 years of cybersecurity consulting experience in DoD contracts.
  • CCP and CCA certifications are required.
  • Experience with NIST SP 800-171/800-172 and DFARS guidance.
  • Knowledge of CMMC 2.0 changes and C3PAO processes.

Responsibilities

  • Assess organizational readiness for CMMC levels 1–4 and gaps.
  • Provide guidance for self-assessments and third-party certifications.
  • Develop a compliance roadmap addressing NIST 800-171/172 controls and CUI/FCI handling.
  • Oversee subcontractors to meet CMMC requirements.
  • Establish incident reporting (72-hour) and continuous compliance processes.
  • Deliver training for internal teams and contractors.

Skills

CMMC expertise
DoD contracts
NIST 800-171

Education

CCP certification
CCA certification

Tools

eMASS
ACAS

Job description

TestPros delivers innovative independent IT assessment solutions to critical challenges facing the nation and the world. We support the U.S. Federal Government and Commercial clients within the continental USA.TestPros is dedicated to making lives better, safer and more secure. We are seeking an experienced CMMC (Cybersecurity Maturity Model Certification) Consultantsto provide guidance and support to our team in achieving compliance with the latest CMMC 2.0 requirements. The consultant will work with our clients to help them navigate CMMC levels 1-3 and ensure continuous compliance with DoD cybersecurity regulations. This is a part-time, flexible position ideal for a subject matter expert with CMMC implementation experience. Start: Future projects late 2026 or 2027 (not an immediate job opening) Type: Part-time consulting Overview

Key Responsibilities:
  • Assess Organizational Readiness: Evaluate current cybersecurity practices and gaps in relation to the three CMMC 2.0 levels (Foundational, Advanced, Expert).

  • CMMC Certification Guidance: Provide expert advice on the steps required to achieve and maintain certifications for Levels 1, 2,3 and 4. This includes guidance on self-assessments, third-party certifications, and government-led assessments.

  • Compliance Strategy: Develop a comprehensive roadmap for achieving CMMC compliance, including identifying necessary controls and policies, implementing NIST SP 800-171/800-172 requirements, and addressing Federal Contract Information (FCI) and Controlled Unclassified Information (CUI) security.

  • Subcontractor Oversight: Assist prime contractors in ensuring that subcontractors meet CMMC certification requirements, implementing a robust supply chain compliance management system.

  • Incident Reporting & Continuous Compliance: Provide guidance on establishing continuous monitoring and compliance processes, including the rapid reporting of security incidents (72-hour notification) and annual affirmations of compliance.

  • Training & Awareness: Conduct training sessions for internal teams and contractors to understand the CMMC requirements and how to implement appropriate cybersecurity controls.

Qualifications:
  • Over 5 years of experience in cybersecurity consulting, specializing in DoD contracts, compliance frameworks (e.g., NIST SP 800-171), and CMMC implementation

  • Certified CMMC Professional (CCP)

  • Certified CMMC Assessor (CCA)

  • Certified DOD CMMC assessorhttps://cyberab.org/CMMC-Ecosystem/Ecosystem-Roles/Assessing-and-Certification

  • Expertise in setting up an authorized CMMC Third Party Assessment Organization (C3PAO)

  • Proficient with new CMMC 2.0 requirements and knowledgeable about the Department of Defense's recently released final rule for the Cybersecurity Maturity Model Certification (CMMC) Program.

  • Experience working with the Defense Industrial Base (DIB) and handling Controlled Unclassified Information (CUI).

  • Prior experience developing Plans of Action and Milestones (POA&M) for cybersecurity compliance.

  • Familiarity with the latest DFARS Clause 252.204-7021 requirements and the implications of the August 2024 CMMC 2.0 updates.

Technical Skills:
  • Strong understanding of federal cybersecurity regulations such as DFARS and FISMA.

  • Proficient in tools like eMASS and ACAS, with extensive knowledge of cybersecurity standards (NIST 800-171, NIST 800-172).

Communication:
  • Excellent written and verbal communication skills, with the ability to translate complex compliance details into clear, actionable guidance for non-technical audiences.

Clearance:
  • Active or recently active DoD security clearance (preferred but not required).

Rate: $60-105/hr (1099 or Corp. To Corp.). This rangerepresentsagood-faithestimate and is not a guarantee; final compensation isdeterminedby factors such as experience, qualifications, and government contract labor rate requirements and may fall outside the stated range. Equal Opportunity Employer TestPros is an equal-opportunity employer and does not discriminate in employment based on race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or any other non-merit factor. Offer Considerations TestPros considers several factors when extending an offer, including but not limited to, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, geographic location, education, and certifications. Federal Compliance As a federal contractor, TestPros is subject to all federal and state mandates and/or other customer requirements.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

CMMC (Cybersecurity Maturity Model Certification) Consultant
CMMC (Cybersecurity Maturity Model Certification) Consultant

Tenacious Solutions, LLC • Arlington (VA)

On-site
USD 80,000 - 120,000
Security Controls Assessor
Security Controls Assessor

TestPros • United States

Remote
USD 69,000 - 131,000
Part-Time CMMC Consultant (CCP/CCA)
Part-Time CMMC Consultant (CCP/CCA)

Testpros • United States

Remote
USD 60,000 - 105,000
CMMC Compliance Consultant (Part-Time, Flexible)
CMMC Compliance Consultant (Part-Time, Flexible)

TestPros • United States

Remote
USD 83,000 - 145,000
Penetration Tester
Penetration Tester

TestPros • United States

Remote
USD 143,270,000 - 242,458,000
Security Controls Assessor / OSCAL
Security Controls Assessor / OSCAL

TestPros • United States

Remote
USD 69,000 - 117,000
Medical/dental/vision insurance
Life insurance
Paid time off
+2
FedRAMP Subject Matter Expert
FedRAMP Subject Matter Expert

TestPros • United States

Remote
USD 69,000 - 131,000
CMMC Program Manager
CMMC Program Manager

Balfour Beatty US • Falls Church (VA), Northern (KY)

Hybrid
USD 125,000 - 195,000
CMMC Compliance & IT Support Specialist
CMMC Compliance & IT Support Specialist

Fathom Robotics • Fort Worth (TX)

Hybrid
USD 41,000 - 55,000
Cybersecurity Program Manager
Cybersecurity Program Manager

Testpros • Washington

On-site
USD 160,000 - 230,000
Medical/dental/vision insurance
401(k) retirement plan with company match
Paid time off
+1