Technical Cyber Advisor
HybridHanover, Maryland, United States
Job Summary
Lead client organizations through CMMC certification, from initial assessment to final certification and continuous monitoring. Provide expert advice on risk analysis, incident management, compliance, and security architecture while developing tailored cybersecurity strategies. Conduct comprehensive gap analyses to identify deficiencies, manage Plan of Action and Milestones (POA&Ms), and implement necessary controls to achieve required compliance with frameworks like NIST 800-171, ISO 27001, and FedRAMP. Act as the primary point of contact for cyber-related matters, liaising with senior management, external auditors, and instructional teams to deliver training and conduct tabletop exercises. Prepare for external audits with certified third-party assessors and maintain comprehensive records of compliance activities. This hybrid role requires a minimum of three days per week on site in Hanover, MD.
Required Qualifications
- Minimum of three days per week on site in Hanover, MD
- Expert-level understanding of IT and cybersecurity landscapes
- In-depth knowledge of the CMMC framework, including its requirements, processes, and implementation strategies
- Strong technical background (ex, systems, networks, cloud, etc.)
- Vulnerability analysis
- Incident reporting
- Security standards
- Policy
- Training content delivery
- Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field
- Relevant certifications such as CISSP, CISM, CMMC-AB Certified Assessor, or equivalent
- Extensive experience in cyber security, with a focus on compliance and regulatory standards
- In-depth knowledge of the CMMC framework and its application in various organizational contexts
- Strong project management skills, including the ability to manage multiple projects and deadlines
- Excellent communication and interpersonal skills, with the ability to work effectively with technical and non-technical stakeholders
- Proficiency in developing and implementing security policies and procedures
- Analytical mindset with strong problem-solving abilities
Desired Qualifications
- A master's degree in Cyber Security, Information Technology, Computer Science, or a related field
- Familiarity with other regulatory frameworks and standards, such as NIST SP 800-171, ISO 27001, and DFARS
- Experience working with government contractors and understanding of the federal contracting process
- Strong technical background, with experience in implementing security controls and technologies
- Ability to adapt to changing regulatory landscapes and organizational needs
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.