Lead CMMC Certified Assessor (CCA)

Boston Government Services, LLC (BGS)

United States

On-site

USD 80,000 - 120,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health Insurance
Dental Insurance
Vision Insurance
Paid Vacation
401K
Long and Short-Term Disability

Job summary

Boston Government Services, LLC (BGS) is seeking a Lead CMMC Certified Assessor to conduct cybersecurity framework assessments ensuring compliance with regulatory requirements. This remote position requires at least 4 years of relevant experience, certification as a Lead CMMC Certified Assessor, and proficiency in AWS or Azure. The job includes responsibilities such as maintaining documentation, conducting assessments, developing project plans, and providing customer guidance. BGS offers competitive benefits including health, dental, vision, and a 401K plan.

Qualifications

  • 4 years of direct cybersecurity or Information Technology experience required.
  • Must have a Lead CMMC Certified Assessor (CCA) certification.
  • Prior cybersecurity assessment experience is required.
  • Experience in security/compliance focused roles with technical security audits.

Responsibilities

  • Conduct cybersecurity assessments to determine compliance.
  • Develop & manage assessment project plans.
  • Create assessment reports and gap analysis reports.
  • Provide guidance to customers to facilitate compliance.

Skills

Cybersecurity assessments
Technical document writing
Risk assessments
Cloud security auditing
Communication skills

Education

Associate’s degree or higher

Tools

Amazon Web Services (AWS)
Microsoft Azure

Job description

Overview

The Lead CMMC Certified Assessor is responsible for the performance of cybersecurity framework assessments to determine compliance with Government‑mandated cybersecurity regulatory requirements. This position is primarily responsible for Cybersecurity Maturity Model Certification (CMMC) for Maturity Levels 1, 2, and 3, NIST SP 800‑171, and NIST SP 800‑172 assessments but may also be asked to conduct assessments against NIST SP 800‑53 Risk Management Framework (RMF), ISO 27001, Center for Internet Security, and the NIST Cybersecurity Framework.

Responsibilities
  • Maintain CMMC documentation for BGS as a Certified Third‑Party Assessor Organization (C3PAO) within the CMMC Ecosystem.
  • Conduct cybersecurity assessments for a broad range of customer environments to determine any gaps that exist between compliance requirements and actual implementation based on common NIST standards, such as NIST SP 800‑53, NIST SP 800‑82, and NIST SP 800‑171.
  • Lead or participate in assessment teams to evaluate organizations against compliance standards.
  • Develop & manage assessment project plans.
  • Work with the customer to conduct interviews and observe technical implementations.
  • Provide guidance to customers, as needed, to facilitate compliance requirements.
  • Conduct compliance and cybersecurity workshops.
  • Create assessment reports and gap analysis reports.
  • Create System Security Plans, Plan of Action & Milestones, and security procedures.
  • Other duties as assigned.
Requirements
  • Associate’s degree or higher (equivalent experience/military will be considered)
  • 4 years of direct cybersecurity or Information Technology experience are required.
  • Must have a Lead CMMC Certified Assessor (CCA).
  • Must have one or more of the following certifications:
    • Cybersecurity & Infrastructure Security Agency (CISA).
    • Certified Information Systems Security Professional (CISSP).
    • Certified Cloud Security Professional (CCSP).
    • Certified Information Security Manager (CISM).
    • CompTIA Advanced Security Practitioner (CASP+).
    • Certified Chief Information Security Officer (CCISO).
    • Global Information Assurance Certification (GIAC).
    • GIAC Certified Enterprise Defender (GCED).
    • GIAC Certified Incident Handler Certification (GCIH).
    • GIAC Security Leadership (GSLC).
  • Prior cybersecurity assessment experience is required.
  • Experience in technical document writing.
  • Experience in a security/compliance focused role with 3 to 5 years of experience performing technical security audits and risk assessments.
  • Minimum of 1 year of experience with cloud-based concepts with an emphasis on security and auditing Amazon Web Services (AWS) or Azure controls.
  • Ability to pass a federal background check.
  • Successful drug screening.
  • Must be eligible to obtain and maintain a security clearance.
  • Willingness to travel as needed.
Preferred Qualifications
  • 3+ years’ of experience with cloud-based concepts with an emphasis on security and auditing AWS or Azure controls.
Location / Work Arrangement
  • This position is Remote with some travel / onsite requirements.
Benefits

BGS offers a competitive total compensation package to eligible employees. Benefits include Health, Dental, Vision, Life Insurance, Paid Vacation, 401K, Long and Short‑Term Disability.

EEO

BGS is an Equal Opportunity/Affirmative Action employer. All qualified applicants are encouraged to apply and will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.

Schedule is full‑time, Monday – Friday 40‑hour week.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead CMMC Assessor - Remote Cybersecurity Auditor
Lead CMMC Assessor - Remote Cybersecurity Auditor

Boston Government Services, LLC (BGS) • United States

On-site
USD 80,000 - 120,000
Security Control Assessor
Security Control Assessor

Boston Government Services, LLC (BGS) • United States

Remote
USD 110,000 - 150,000
Health Insurance
Dental Insurance
Vision Insurance
+4
Senior Assessor (CMMC) US Based
Senior Assessor (CMMC) US Based

ControlCase, LLC • Fairfax (VA)

Remote
USD 120,000 - 150,000
401(k) retirement savings plan
Comprehensive health insurance
100% company-paid life insurance
+2
Security Control Assessor
Security Control Assessor

Boston Government Services, LLC (BGS) • Knoxville (TN)

On-site
USD 75,000 - 120,000
Health Insurance
Dental Insurance
Vision Insurance
+3
On Call CCMC Assessor - San Diego, CA
On Call CCMC Assessor - San Diego, CA

Epsilon Systems Solutions, Inc • San Diego (CA)

On-site
USD 62,000 - 76,000
Paid sick leave
401(k) contributions
ESOP participation
Director of Software Engineering
Director of Software Engineering

Eccalon, LLC • Detroit (MI)

On-site
USD 80,000 - 120,000
Technical Cyber Advisor On-site
Technical Cyber Advisor On-site

Eccalon, LLC • Detroit (MI)

On-site
USD 120,000 - 180,000
Certified CMMC Assessor (CCA)
Certified CMMC Assessor (CCA)

Shadowscape • United States

Remote
USD 80,000 - 120,000
Competitive salary
Performance incentives
Opportunity to shape a growing practice
CMMC Program Manager
CMMC Program Manager

Balfour Beatty US • Dallas (TX)

Hybrid
USD 120,000 - 190,000
Medical Insurance
Dental Insurance
Vision Insurance
+6
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • Los Angeles (CA)

On-site
USD 90,000 - 130,000