GRC Engineer (CMMC)
JobgetherNorth AmericaFull TimeEngineering
Remotely
awsfedrampcmmcsspnist sp 800 53poa&matonist sp 800 171
Job Description
📋 Description
- Analyze and apply NIST SP 800-53 controls and FedRAMP baselines
- Advise clients on CMMC 2.0 and NIST SP 800-171
- Authorize artifacts: SSPs, POA&Ms, SAPs, SARs
- Lead readiness assessments for ATO, JAB, and CMMC paths
- Define auth boundaries, data flows, and shared-responsibility models
- Execute continuous monitoring, vulnerability tracking, and security updates
🎯 Requirements
- 2+ years in GRC/cybersecurity compliance with FedRAMP, NIST 800-53/800-171, or federal lifecycles
- Experience authoring/evaluating federal artifacts, esp. SSPs and POA&Ms
- Foundational knowledge of CMMC 2.0 and NIST 800-171 for defense contractors
- Familiar with DFARS and CUI protection
- Experience with government cloud (AWS GovCloud, Azure Gov) and shared-responsibility models
- Able to translate regulatory requirements into actionable guidance
🎁 Benefits
- Competitive base salary with reviews
- Bonus opportunities based on performance
- Remote-first culture in the United States
- Mentorship and career development
- Training reimbursements and certifications
- Opportunity to deepen CMMC/NIST/FedRAMP expertise