CMMC Program Assistant
Listed on 2026-07-10
-
IT/Tech
Cybersecurity
Emerson Construction Company is seeking a highly organized and detail-oriented CMMC Program Assistant to help maintain the company's Cybersecurity Maturity Model Certification (CMMC) compliance program. This position serves as the central operator for cybersecurity compliance activities, ensuring ongoing adherence to CMMC Level 2 and NIST SP 800-171 requirements. The successful candidate will work across departments to help maintain documentation and assessment evidence, assist with internal and external audits, support remediation efforts, and coordinate compliance-related activities to ensure audit readiness.
This role focuses on documentation, compliance, and program support rather than hands‑on technical administration.
- Monitor compliance status against NIST SP 800-171 requirements.
- Assist with maintaining the System Security Plan (SSP).
- Help track the Plan of Action and Milestones (POA&M).
- Assist with the coordination of cybersecurity policy and procedure reviews.
- Collect, organize, and maintain compliance evidence.
- Manage evidence repositories and ensure documentation remains current and audit‑ready.
- Assist with coordination of evidence collection activities across departments.
- Validate ownership and accountability for required documentation.
- Periodic evidence review and refresh cycles.
- Maintain compliance tasks and remediation trackers.
- Track POA&M activities through completion.
- Escalate overdue items and compliance risks to the IT Administrator.
- Ensure timely closure of audit findings and remediation efforts.
- Maintain compliance tasks and remediation trackers.
- Track POA&M activities through completion.
- Escalate overdue items and compliance risks to the IT Administrator.
- Ensure timely closure of audit findings and remediation efforts.
- Track vulnerability remediation efforts and compliance metrics.
- Ensure recurring compliance requirements are completed on schedule.
- Vendor and third Party Compliance/Support vendor risk management activities.
- Some experience in cybersecurity compliance, governance, risk management, auditing, quality management, or related disciplines.
- Experience managing documentation-intensive programs.
- Strong organizational, communication, and accountability management skills.
- Familiarity with NIST SP 800-171 requirements.
- Experience supporting federal compliance programs.
- Experience managing audit evidence repositories and assessment activities.
- Certified CMMC Professional (CCP)
- Certified Information Systems Security Professional (CISSP)
- Certified Internal Auditor (CIA)
- Certified Compliance & Ethics Professional (CCEP)
- CompTIA Security+
- Documentation management
- Organizational accountability
- Communication and relationship management
- Problem-solving and continuous improvement
If you need an accommodation as part of the employment process please contact Human Resources at
Phone:
Email:
Equal Opportunity Employer, including disabled and veterans.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).