yandex
insightassurance
Страна
США
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
УдалённоПолная занятость

Certified CMMC Professional (CCP)

Оценка ИИ

Отличная вакансия для узких специалистов с редкой сертификацией. Полная удаленка, бонусы по результатам работы и работа в быстрорастущей компании с корнями из Big 4 делают предложение очень привлекательным.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует обязательной активной сертификации CCP и гражданства США, что значительно сужает круг кандидатов. Необходимо глубокое знание специфических стандартов NIST и CMMC 2.0, а также опыт работы с оборонными подрядчиками.

Анализ зарплаты

Медиана130 000 $
Рынок110 000 $ – 160 000 $
Оценка ИИ

Предлагаемая позиция CCP в США обычно оплачивается выше среднего по рынку кибербезопасности из-за дефицита сертифицированных специалистов для оборонного сектора. Рыночные оценки для специалистов с опытом 3-5 лет варьируются от 110 до 150 тысяч долларов в год.

Сопроводительное письмо

I am writing to express my strong interest in the Certified CMMC Professional (CCP) position at Insight Assurance. With over five years of experience in cybersecurity compliance and a deep understanding of NIST SP 800-171, I have successfully guided multiple organizations through complex gap assessments and remediation planning. My background in developing System Security Plans (SSPs) and managing POA&Ms aligns perfectly with the responsibilities outlined for this role.

As an active CCP credential holder and a U.S. citizen, I am prepared to immediately support your clients within the Defense Industrial Base. I am particularly drawn to Insight Assurance's tech-enabled approach to auditing and your reputation as a fast-growing firm founded by Big 4 veterans. I am confident that my technical expertise in GCC High environments and my ability to translate complex CMMC 2.0 requirements into actionable strategies will make me a valuable asset to your advisory team.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в insightassurance уже сейчас

Присоединяйтесь к лидерам кибербезопасности и помогите защитить оборонную промышленность США, работая полностью удаленно!

Описание вакансии

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.

We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.

Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.

Position Summary

We are seeking a knowledgeable and motivated Certified CMMC Professional (CCP) to support the delivery of CMMC readiness and advisory services for clients in the Defense Industrial Base (DIB). The CCP will work directly with organizations seeking to meet CMMC 2.0 and NIST SP 800-171 compliance requirements.

This role serves as a trusted advisor, assisting clients with documentation, gap assessments, remediation planning, and readiness activities in preparation for formal CMMC assessments conducted by Certified Third-Party Assessment Organizations (C3PAOs).

Key Responsibilities

  • Conduct CMMC readiness assessments and gap analyses against CMMC 2.0 practices and NIST SP 800-171 requirements.
  • Assist in developing and reviewing key compliance documents such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms).
  • Support clients in implementing cybersecurity controls and processes aligned with CMMC 2.0 Levels 1 and 2.
  • Collaborate with IT, security, and compliance teams to identify risks and track remediation efforts.
  • Provide expert guidance and interpretation of CMMC requirements, helping organizations understand their obligations under DFARS 252.204-7012/7019/7020.
  • Prepare clients for official CMMC assessments by reviewing evidence, policies, and technical configurations.
  • Stay current with updates from The Cyber AB, DoD, and NIST related to the CMMC 2.0 program.
  • Communicate findings and recommendations clearly through reports, presentations, and client meetings.
  • Work closely with Certified CMMC Assessors (CCAs) or C3PAO partners to align client readiness efforts with official assessment standards.

Required Qualifications

  • Active Certified CMMC Professional (CCP) credential issued by The Cyber AB.
  • U.S. Citizenship (required for DoD and DIB-related engagements).
  • 3–5+ years of experience in cybersecurity, compliance, risk management, or audit.
  • Strong understanding of CMMC 2.0, NIST SP 800-171, and related DoD cybersecurity regulations.
  • Experience performing gap analyses, security documentation reviews, and compliance consulting.
  • Excellent communication and analytical skills with the ability to explain technical concepts to non-technical audiences.
  • Ability to work independently and manage multiple client engagements in a fast-paced environment.

Preferred Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field (or equivalent experience).
  • Additional certifications such as Security+, CISSP, CISA, or CAP.
  • Experience supporting defense contractors or working in environments handling Controlled Unclassified Information (CUI).
  • Familiarity with Microsoft GCC High, AWS GovCloud, or other compliant cloud environments.
  • Prior experience working with or for a Certified Third-Party Assessment Organization (C3PAO).

BENEFITS

Flexible Paid Time Off and paid Holidays 

Quarterly Performance Bonuses

100% Remote

Competitive salary and benefits package.

Opportunities for professional growth and development.

Collaborative and innovative work environment.

Insight Assurance is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

Privacy Notice CCPA:

  • Insight Assurance shares your personal data/information with Greenhouse recruiting because this is the tool we use for the recruitment process.
  • Insight Assurance does not sell personal data/information under any circumstances.
  • You may exercise your rights under personal data protection legislation by reaching out to us via: HR@insightassurance.com or submit a request via mail at 400 N Tampa St. 15th Floor Suite 129, Tampa, FL 33602

Privacy Notice GDPR:

This notice informs you about the categories of Personal Data/ Information and the Purpose and Scope of Processing Activities to be undertaken by Insight Assurance (we, us, our), under its job application and recruitment process.

We resort to Greenhouse.com as the platform that supports our recruitment process, and therefore your Personal Data/ Information will be Processed on this tool (hosted, shared with, cross-referenced, accessed by our team); we have in place contractual terms and the commitment of Greenhouse.com that ensures the Security and Confidentiality plus Purpose limitation with regards to the Processing of your Personal Data.

When you reply to one of your job postings, you voluntarily and freely submit your Personal Data to us; this, allied with the fact that the Processing by us (and over Greenhouse.com) of that Personal Data has the sole Purpose of validating your application and proceeding with the inherent scrutiny and decision, allows us to argue having Legitimate Interest as the applicable Legal Basis to undertake the Processing of your Personal Data under this scope.

We are a U.S. based company, hence some or all Personal Data pertaining to you will be hosted in the U.S.

The categories of Personal Data under Processing consist of:

  • Identification
  • Contact
  • Education and Professional
  • Interview performance
  • Evaluation

You may exercise several Rights as determined under applicable Personal Data Protection legislation, in short:

  • *Right of Access*– meaning getting information about the Personal Data under Processing by us, except for the information you already know;
  • *Right of Erasure*– you may ask for us to erase all Personal Data pertaining to you under Processing; this may imply you being excluded from the recruitment process, for without information we cannot proceed with it;
  • *Right of Opposition or Restriction of Processing*– you may ask us to stop some Processing or restrict the Processing of some Personal Data, this may imply you being excluded from the recruitment process, at our sole discretion also for without information we cannot proceed with it;
  • *Rectification*– you can rectify your Personal Data at anytime
+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • CMMC 2.0
  • NIST SP 800-171
  • Cybersecurity
  • Audit
  • Risk Management
  • Compliance
  • CISSP
  • CISA
  • Microsoft GCC High
  • AWS GovCloud
  • DFARS

Возможные вопросы на собеседовании

Проверка понимания основного стандарта, на котором базируется CMMC 2.0 Level 2.

Каков ваш опыт проведения оценки соответствия по стандарту NIST SP 800-171 и какие основные сложности вы встречали при работе с DIB-клиентами?

Оценка практических навыков документирования процессов безопасности.

Опишите ваш подход к разработке Плана обеспечения безопасности системы (SSP) для организации, работающей с контролируемой несекретной информацией (CUI).

Проверка умения работать с техническими решениями для соблюдения комплаенса.

Работали ли вы с Microsoft GCC High или AWS GovCloud? Какие специфические настройки конфигурации наиболее важны для соответствия CMMC?

Оценка способности кандидата управлять ожиданиями клиента в процессе подготовки к аудиту.

Как вы расставляете приоритеты в Плане действий и вехах (POA&M), если у клиента ограниченные ресурсы для устранения выявленных пробелов?

Проверка осведомленности о текущих изменениях в законодательстве.

Как последние обновления от DoD и The Cyber AB относительно CMMC 2.0 повлияли на вашу методологию проведения предварительных оценок (Readiness Assessments)?

Похожие вакансии

SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
Operation Zero
450 000 ₽ – 900 000 ₽

Исследователь безопасности Android

УдалённоРоссия
Android · Reverse Engineering · Exploit Development · Kernel Research · C++ · ARM Assembly · Java · Ghidra · IDA Pro · Linux Kernel · Kotlin · JavaScript
+12 навыков
NDA
250 000 ₽ – 450 000 ₽

Эксперт по защите периметра (WAF)

УдалённоРоссия
WAF · Wallarm · Positive Technologies Application Firewall · NGFW · IPS · Vulnerability Assessment · Network Security
+7 навыков
Квазар
до 350 000 ₽

DevOps-инженер/ИБ (devops engineer, information security)

УдалённоРоссия
TCP/IP · DNS · DHCP · HTTPS · SMTP · BGP · OSPF · VLAN · NAT · Zero Trust · RBAC · SIEM · Zabbix · ELK · Wazuh · Grafana · Bash · PowerShell · Python · VMware · Proxmox · Hyper-V · KVM · SoC
+24 навыков
Атом Безопасность
200 000 ₽ – 400 000 ₽

Application Security Еngineer (AppSec)

УдалённоРоссия
C++ · Rust · JavaScript · Python · TypeScript · SAST · DAST · SCA · ASOC · CI/CD · GitLab CI · Docker · Fuzzing · Threat Modeling
+14 навыков
ХАКСКИ КОНСАЛТИНГ
280 000 ₽ – 350 000 ₽

Инженер по сетевой безопасности

УдалённоРоссия
NGFW · UTM · Proxy · IDS · IPS · VPN · ACL · iptables · Routing · Switching · Network Security · IP
+12 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

insightassurance
Страна
США