Technical Cyber Advisor On-site

Eccalon, LLC

Detroit (MI)

On-site

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Eccalon, LLC seeks a Cybersecurity Advisor specializing in CMMC to lead client efforts toward certification and ongoing compliance. The role requires expert knowledge of IT, cyber risk, and frameworks such as CMMC, ISO 27001, NIST SP 800-171, and FedRAMP, with the ability to translate standards into practical controls.

You will work with technical and non-technical stakeholders, develop and execute a CMMC roadmap, conduct assessments and training, and prepare for audits.

Qualifications

  • Bachelor's degree or higher in Cyber Security, IT, CS or related field.
  • CMMC-AB Certified Assessor or equivalent certification preferred.
  • Extensive cybersecurity experience with focus on compliance and regulatory standards.

Responsibilities

  • Provide expert advice on risk analysis, incident management, compliance, and security architecture.
  • Develop and implement cybersecurity strategies tailored to the organization.
  • Lead the CMMC certification process from assessment to certification and monitoring.
  • Develop/CMMC compliance roadmap with timelines, resources, and milestones.
  • Lead assessments across frameworks including CMMC, ISO 27001, NIST 800-171, NIST CSF, ISO 9001, FedRAMP.
  • Act as primary contact for cyber compliance with stakeholders and auditors.
  • Create and maintain security policies and documentation (SSP, etc.).
  • Deliver training and awareness programs, including tabletop exercises.

Skills

Cybersecurity
Regulatory compliance
Project management
Policy development
Risk analysis
Communication skills
CMMC knowledge

Education

Bachelor's degree in Cyber Security / IT / CS
Master's degree in Cyber Security / IT / CS
CMMC-AB Certification
CISSP/CISM certification

Job description

The Cybersecurity Advisor (CA) specializing in Cybersecurity Maturity Model Certification (CMMC) has expert-level understanding of IT and cybersecurity landscapes, with in-depth knowledge of the CMMC framework, including its requirements, processes, and implementation strategies. The Cyber Advisor will lead client organization’s efforts to achieve and maintain CMMC compliance with current and future standards. The Cyber Advisor will serve as a trusted cybersecurity resource to both technical and non-technical stakeholders and can advise on wide-ranging cyber security topics, including cyber threats, technologies, and best practices, enhancing the organization's overall cybersecurity posture.

Qualified candidates should have a strong technical background (ex, systems, networks, cloud, etc.) in addition to vulnerability analysis, incident reporting, security standards, policy, and training content delivery.

The Cybersecurity Advisor may also conduct classroom and/or webinar instruction in the theory & execution of cyber security best practices to small and medium size business operators. The Advisor will work as part of a team to develop and refine cyber courseware.

Responsibilities
Key Responsibilities:
  • Provide expert advice on a wide range of cybersecurity issues, including risk analysis, incident management, compliance, and security architecture.
  • Develop and implement cybersecurity strategies tailored to the specific needs and risk profile of the organization.
  • Lead client organization's CMMC certification process, from initial assessment to final certification and continuous monitoring.
  • Develop and implement a CMMC compliance roadmap, including timelines, resource allocation, and key milestones.
  • Lead compliance and security assessments with various cybersecurity frameworks and standards, including CMMC, ISO 27001, NIST 800-171, NIST CSF, ISO 9001, and FedRAMP.
  • Act as the primary point of contact for all cyber compliance-related matters, liaising with senior management, external auditors, and other relevant parties.
  • Develop and implement cybersecurity strategies tailored to the specific needs and risk profile of the organization.
Framework Implementation:
  • Interpret and apply appropriate cyber-related framework requirements to the organization's systems, processes, and policies as applicable.
  • Collaborate with IT, security, and operational teams to implement necessary controls and measures to achieve the required compliance with frameworks and policies, including CMMC.
Gap Analysis and Remediation:
  • Conduct comprehensive gap analyses to identify deficiencies in current security practices relative to applicable cybersecurity requirements.
  • Develop and manage Plan of Action and Milestones (POA&Ms) to address identified gaps, ensuring timely and effective implementation of corrective actions.
Policy and Procedure Development:
  • Create and maintain policies, procedures, and documentation required for security compliance, including System Security Plans (SSP).
  • Ensure all relevant stakeholders are informed of and adhere to these policies and procedures.
Training and Awareness:
  • Work with Instructional System Design teams to create and deliver cybersecurity and awareness training to educate clients and employees on cybersecurity requirements, security policies, and best practices.
  • Conduct tabletop exercises to ensure organizational readiness in the event of a security breach.
  • Promote a culture of security awareness throughout the organization, emphasizing the importance of compliance.
Audits and Assessments:
  • Plan and conduct audits to evaluate the effectiveness of security controls and compliance.
  • Prepare for and support external audits conducted by certified third-party assessors (e.g., C3PAOs).
Continuous Monitoring and Improvement:
  • Implement continuous monitoring processes to ensure ongoing compliance with CMMC and other relevant security standards.
  • Regularly review and update security measures, policies, and procedures to reflect changes in the relevant cybersecurity framework or organizational needs.
Stakeholder Engagement:
  • Act as the primary point of contact for all cyber-related matters, liaising with senior management, external auditors, and other relevant parties.
  • Provide expert guidance and support to internal teams on CMMC and other cyber-related issues and initiatives.
  • Identify, assess, and mitigate risks associated with non-compliance with security standards.
  • Develop risk management strategies that align with the organization's security objectives and compliance obligations.
Reporting and Documentation:
  • Maintain comprehensive records of compliance-related activities, including assessment reports, audit findings, and remediation efforts.
  • Prepare and present regular status reports to senior management, highlighting progress, challenges, and next steps.
Required Qualifications
  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field.
  • Relevant certifications such as CISSP, CISM, CMMC-AB Certified Assessor, or equivalent.
  • Extensive experience in cyber security, with a focus on compliance and regulatory standards.
  • In-depth knowledge of the CMMC framework and its application in various organizational contexts.
  • Strong project management skills, including the ability to manage multiple projects and deadlines.
  • Excellent communication and interpersonal skills, with the ability to work effectively with technical and non-technical stakeholders.
  • Proficiency in developing and implementing security policies and procedures.
  • Analytical mindset with strong problem-solving abilities.
Preferred Qualifications
  • A master's degree in Cyber Security, Information Technology, Computer Science, or a related field.
  • Familiarity with other regulatory frameworks and standards, such as NIST SP 800-171, ISO 27001, and DFARS.
  • Experience working with government contractors and understanding of the federal contracting process.
  • Strong technical background, with experience in implementing security controls and technologies.
  • Ability to adapt to changing regulatory landscapes and organizational needs.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of Software Engineering
Director of Software Engineering

Eccalon, LLC • Detroit (MI)

On-site
USD 80,000 - 120,000
CMMC (Cybersecurity Maturity Model Certification) Consultant
CMMC (Cybersecurity Maturity Model Certification) Consultant

Tenacious Solutions, LLC • Arlington (VA)

Remote
USD 80,000 - 120,000
Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

DigiFlight, Inc. • Huntsville (AL)

On-site
USD 90,000 - 120,000
Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

DigiFlight, Inc. • Columbia (MD)

Hybrid
USD 90,000 - 130,000
Senior Security Compliance Specialist
Senior Security Compliance Specialist

FORTEM TECHNOLOGIES INC • Lindon (UT)

On-site
USD 110,000 - 160,000
Senior Cybersecurity Compliance Consultant
Senior Cybersecurity Compliance Consultant

Jobgether • United States

On-site
USD 95,000 - 120,000
Medical insurance
Dental and vision coverage
Life insurance
+1
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • United States

On-site
USD 90,000 - 120,000
CMMC Security Engineer
CMMC Security Engineer

Red Cup IT, Inc. • Los Angeles (CA)

On-site
USD 90,000 - 130,000
CMMC Security Engineer
CMMC Security Engineer

Visa Hunt • United States

On-site
USD 120,000 - 190,000
CMMC & Cybersecurity Compliance Advisor
CMMC & Cybersecurity Compliance Advisor

Eccalon, LLC • Detroit (MI)

On-site
USD 80,000 - 120,000