Perform audit testing in accordance with NIST SP 800-171, CMMC Level 1 and Level 2 Assessment Guide, and other authoritative IT security guidance
Validate information system security plans to ensure NIST control requirements are met
Assist in development of Security Authorization Packages and ensure completeness and compliance with CMMC requirements and other authoritative IT security guidance
Collaborate across multiple internal teams to ensure successful delivery of results based on scope of work
Prepare agendas (e.g. planning, fieldwork, closing, etc.) and request lists
Lead client meetings and maintain client relationships
Monitor evidence collection process
Review evidence and provide feedback to clients
Address and respond to client questions
Document evidence in supporting audit leadsheets and workbooks
Communicate engagement status to management, including escalating any potential issues
Requirements
Bachelor’s degree in management information systems, information security, computer science, or relevant discipline; or combination of relevant education and work experience
Familiarity with any of the following Security Frameworks (NIST, ISO, COBIT, HIPAA/HITECH, etc.) required
Experience with US government compliance, including FISMA, FedRAMP, RMF, and CSF preferred