Security Compliance Consultant

Other Jobs To Apply

No other job posts for this day.

Own The Role: 112Cyber (formerly SP6 Cyber Risk & Compliance) is looking for a Compliance SME wanting to take the next step in their career! In this role, you will assist organizations in solidifying and strengthening their security posture while also conducting assessments for those pursuing certification. Joining our Compliance team, you will see your impact across the company as you take ownership over customer projects and advising our platform team on the different compliance rules. From there, you will be supporting Defense Industrial Base (DiB) companies to ensure they are CMMC and/or NIST 800-171 compliant. You will accomplish this through providing pre-audit readiness and GAP assessments, plans of action and milestones (POA&M) support, Compliance as a Service (CaaS), and official C3PAO assessments. How You’ll Drive Success: Advisory Services • Leading cybersecurity gap assessments aligned with NIST SP 800-171 and Cybersecurity Maturity Model Certification (CMMC). • Supporting the day-to-day activities of engagements for external clients, as a contributing member of 112Cyber’s customer-facing Cyber Risk & Compliance practice. • Assist external customers in their FedRAMP, DFARS 7012, CMMC, and NIST 800-171 compliance initiatives. • Applying cyber compliance / risk management knowledge, control principles and technical knowledge across cyber risk and compliance engagements. • Consulting with end clients to gather requirements and understand our clients' key business and security challenges. Working with team members to advise on practical and arenaflex-effective solutions to help mitigate our clients’ cybersecurity risks and challenges. • In depth knowledge of relevant security regulatory compliance requirements and translating those into business processes and security controls to enhance and support client’s compliance and audit capabilities. • Articulating and defending IT controls testing approach and performing test of design and operating effectiveness. • Develop and deliver training to internal teams and customers. • Establishing and maintaining effective working relationships with colleagues, existing clients, and prospective client organizations. • Supporting the ASCERA product team and advising them on NIST continuous monitoring software. C3PAO Assessments • Conducting formal assessments of organizations’ cybersecurity practices using the CMMC assessment process (CAP). • Collaborate with client organizations to plan assessments, develop assessment schedules, and ensure readiness • Assess the effectiveness of security practices and ensure they align with the CMMC practices and processes. • Interview key personnel within the organization to understand how cybersecurity practices are implemented and maintained. • Evaluate sufficiency and adequacy of evidence to verify implementation. • Maintain an objective and unbiased stance during the assessment process, ensuring that conclusions are based on facts and evidence. • Ensure that all documentation is properly prepared for submission to eMASS if the organization is seeking certification. Requirements To Be Successful: • CMMC Certified Assessor (CCA) or Certified Professional (CCP). • Security+, CySA+, CISA, CISM, SSCP, CISSP or other related certification • 2 minimum years of experience testing and documenting IT security controls including experience managing and facilitating external IT audits. • 2 minimum years of experience leading external or internal audits, e.g., CMMC, FedRAMP, ISO 27001, PCI. • 2 minimum years of experience with cybersecurity. • Self-driven, with a strong desire to succeed. • Ability to engage with customers/executives and foster positive relationships. • Exceptional communicator and ability to relay complex technical concepts to non-technical audience. Benefits Why 112Cyber? • The chance to be part of a winning team and a premier C3PAO. • Competitive salary. • Quarterly Bonus plan. • Comprehensive medical, dental, and vision plans. • 401(k) with company match. • 30 days annual paid time off. • Significant Training and Development and Certification attainment. • Opportunity for long term career advancement. • Your contributions are felt and recognized at our growing company. About 112Cyber: 112Cyber is an industry recognized C3PAO (Certified Third-Party Assessor Organization) dedicated to assisting organizations in effectively identifying and managing cyber risks while ensuring compliance with industry standards, federal laws, and regulations. Apply tot his job

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...