Contractor, Lead CMMC Certified Assessor

Security AnalystSecurity AnalystContractRemoteTeam 51-200

Location

United States

Posted

5 days ago

Salary

Not specified

No structured requirement data.

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

BARR is seeking a part-time contractor to join as the Lead CMMC Certified Assessor (CCA) for our growing CMMC service line. This role offers a unique opportunity to be involved from the outset of our journey towards becoming a C3PAO, with anticipated engagement work starting in 2026. Pending business needs, there's potential for this position to transition to full-time.

  • Lead and oversee dedicated Assessment Teams for CMMC Level 2 certification assessments on behalf of the C3PAO.
  • Act as the primary liaison with organizations seeking certification (OSCs), ensuring all assessment activities adhere to CMMC-AB and CAICO requirements.
  • Ensure assessment integrity and consistency by providing leadership, oversight, and quality assurance across multiple assessment engagements.
  • Verify adherence to CMMC methodology, guiding Assessment Teams in scoping, evidence collection, and scoring procedures.
  • Coordinate with CAICO and stakeholders to meet formal designation requirements, submit documentation, and maintain compliance with CMMC assessment protocols.
  • Utilize industry expertise to train CCAs and other CMMC team members.
  • Assist the CMMC leadership team in scoping validation, engagement pricing, and resource management.
  • Provide regular updates to the BARR CMMC Leadership team on engagement status.

Qualifications

  • Lead CMMC Certified Assessor (LCCA) designation by the CyberAB.
  • United States citizenship required.
  • Ability to travel approximately 25-35%.
  • Active DoD Secret Clearance or ability to obtain one.
  • 8+ years of cybersecurity experience, including 5+ years in managerial roles and 3+ years in CMMC assessments.
  • Experience with large government contractors and effective communication with executive leadership.
  • Hold one (1) or more of the following active certifications:
    • CISM
    • CISSO
    • CPTE
    • CompTIA CySA+
    • FITSP-A
    • GCSA
    • CISA
    • CISSP
    • CISSP-ISSEP
    • GSLC
    • GSNA

Requirements

  • Manage assigned Assessment Teams, ensuring roles are defined, daily coordination is effective, and assessors comply with CMMC Assessment Process (CAP) and NIST SP 800-171A.
  • Oversee evidence collection and validation to ensure objectivity, consistency, and compliance.
  • Review and approve assessment findings, including preliminary and final scoring, and ensure accurate documentation submission.
  • Coordinate assessment schedules, logistics, interviews, site visits, and secure information handling.
  • Participate in post-assessment reviews and continuous improvement efforts, providing feedback to refine internal assessment procedures.

Desired Qualifications & Skills

  • Additional experience with cloud platforms (AWS, Azure, GCP).
  • Strong leadership, team management, problem-solving, and communication skills.
  • Deep knowledge of CMMC model, assessment processes, NIST standards, and DFARS requirements.

Benefits

  • BARR Advisory specializes in meeting clients where they are, from small start-ups to global enterprises and everything in between.
  • Ability to customize cybersecurity compliance and consulting services based on individual client needs.
  • Focus on building trusted client relationships through partnership and support.
  • Commitment to a remote culture that ensures autonomy, mastery, and purpose.
  • Inclusive workplace dedicated to hiring and developing diverse talent.
  • Equal opportunity employer with a commitment to reasonable accommodations for individuals with disabilities.

Job Requirements

  • Lead CMMC Certified Assessor (LCCA) designation by the CyberAB.
  • United States citizenship required.
  • Ability to travel approximately 25-35%.
  • Active DoD Secret Clearance or ability to obtain one.
  • 8+ years of cybersecurity experience, including 5+ years in managerial roles and 3+ years in CMMC assessments.
  • Experience with large government contractors and effective communication with executive leadership.
  • Hold one (1) or more of the following active certifications:
  • CISM
  • CISSO
  • CPTE
  • CompTIA CySA+
  • FITSP-A
  • GCSA
  • CISA
  • CISSP
  • CISSP-ISSEP
  • GSLC
  • GSNA
  • Manage assigned Assessment Teams, ensuring roles are defined, daily coordination is effective, and assessors comply with CMMC Assessment Process (CAP) and NIST SP 800-171A.
  • Oversee evidence collection and validation to ensure objectivity, consistency, and compliance.
  • Review and approve assessment findings, including preliminary and final scoring, and ensure accurate documentation submission.
  • Coordinate assessment schedules, logistics, interviews, site visits, and secure information handling.
  • Participate in post-assessment reviews and continuous improvement efforts, providing feedback to refine internal assessment procedures.
  • Desired Qualifications & Skills
  • Additional experience with cloud platforms (AWS, Azure, GCP).
  • Strong leadership, team management, problem-solving, and communication skills.
  • Deep knowledge of CMMC model, assessment processes, NIST standards, and DFARS requirements.

Benefits

  • BARR Advisory specializes in meeting clients where they are, from small start-ups to global enterprises and everything in between.
  • Ability to customize cybersecurity compliance and consulting services based on individual client needs.
  • Focus on building trusted client relationships through partnership and support.
  • Commitment to a remote culture that ensures autonomy, mastery, and purpose.
  • Inclusive workplace dedicated to hiring and developing diverse talent.
  • Equal opportunity employer with a commitment to reasonable accommodations for individuals with disabilities.

Related Job Pages

More Security Analyst Jobs

Full TimeRemote

The Information Security Analyst is responsible for protecting an organization’s computer systems, networks, and data from security threats. This role involves monitoring security systems, analyzing incidents, implementing security controls, and ensuring compliance with security ...

SIEMIDSIPSDLPvulnerability scanningTCP/IPDNSfirewallsVPNNISTISO 27001SOC 2GDPRHIPAA
United States

Forensic Collection Specialist

Harbor Litigation Solutions

Providing custom eDiscovery solutions to corporations, law firms and government entities.

Security Analyst6 days ago
Full TimeRemoteTeam 11-50Since 2012

Position Overview: The Forensic Collection Specialist is responsible for the acquisition, preservation, and documentation of digital evidence in a legally defensible manner. You will work directly with internal teams, clients, and occasionally custodia...

Digital forensicsEnCaseFTKCellebriteMagnet AXIOMChain-of-custodyESI collectionEvidence preservation
United States
Full TimeRemoteTeam 10,001

This role supports Starbucks Technology by driving compliance programs such as SOX, PCI, and SWIFT through effective risk-to-control alignment and scalable compliance operations. The analyst will design and maintain Governance Risk Compliance (GRC) capabilities across policies, standards, controls, assessments, and automation.

United States
$106K - $201K / year
Full TimeRemoteTeam 10,001

The role involves utilizing various tools to investigate security alerts and indicators of compromise, reviewing log data, and assessing the operational health of security platforms. Responsibilities include detecting, assessing, and responding to incidents, performing rapid triage, following playbooks, and creating custom detections aligned with the MITRE ATT&CK Framework.

United States
$112K - $211K / year