This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are looking for an experienced CMMC Consultant to support compliance and audit preparation efforts for a Long-term Contract opportunity in Torrance, California. This role will guide the development of high-quality security documentation, help translate compliance expectations into practical controls, and partner with cross-functional teams to strengthen assessment readiness. The ideal candidate brings a strong background in cybersecurity governance, policy development, and security compliance within complex enterprise environments.
Job Responsibility:
Develop, revise, and enhance security policies, standards, and procedures so they are thorough, consistent, and prepared for formal review
Create new compliance documentation where gaps exist and improve existing materials to align with CMMC expectations and audit standards
Partner with legal, people operations, and security stakeholders to confirm documentation accuracy, applicability, and organizational alignment
Collaborate with internal teams to define required controls, document measurable success criteria, and identify appropriate evidence for validation
Evaluate whether controls should be applied enterprise-wide or tailored to specific teams, while identifying technical and compensating measures when needed
Lead activities that strengthen readiness for a future C3PAO assessment, including organizing documentation and supporting pre-audit preparation
Help maintain appropriate separation of duties across compliance and assessment activities to support an objective audit posture
Coordinate with external assessors and internal stakeholders to keep readiness efforts on track and provide clear status reporting to leadership
Take ownership of audit readiness initiatives or support daily execution tasks that advance the organization's compliance goals
Requirements:
5+ years of experience in cybersecurity, information security, or compliance-focused roles
Demonstrated experience writing and improving cybersecurity policies, standards, and procedural documentation
Strong understanding of CMMC, security assessments, and audit readiness practices
Background in implementing or validating enterprise, network, application, or technical security controls
Experience working across legal, HR or people operations, security, and other business functions to drive compliance outcomes
Knowledge of cybersecurity compliance frameworks and the ability to identify compensating controls when standard approaches are not feasible
Strong analytical, organizational, and communication skills with the ability to manage documentation and reporting independently