Live opening · Posted 6 hours ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
1. About Our Client:
The organization is a Woman Owned Small Business focused on applying human-centered design to strategy, innovation, communication, change, and branding within the federal government and related industry partners. It collaborates with engineers, futurists, and thought leaders to simplify complex challenges and communicate through visual storytelling. The organization operates in a specialized niche supporting federal clients and adjacent sectors.
2. About the Opportunity:
The IT & Compliance Manager leads the day-to-day IT operations, cybersecurity program, and regulatory compliance efforts for the organization. This role is central to maintaining IT governance and federal compliance, primarily focusing on sustaining Cybersecurity Maturity Model Certification (CMMC) Level 2. The position involves directing an external managed service provider (MSP) within a Google Workspace and macOS environment and acting as the key advisor on cybersecurity, compliance, and risk to executive leadership. The role is critical in driving compliance maturity and positioning the organization as a trusted federal contractor.
3. Responsibilities:
Lead CMMC Level 2 certification efforts and third-party assessment readiness
Develop and maintain System Security Plan (SSP), Plan of Action & Milestones (POA&M), and related documentation
Ensure compliance with NIST SP 800-171 controls and federal cybersecurity requirements
Conduct gap assessments, remediation planning, and audit preparation
Manage Controlled Unclassified Information (CUI) policies and employee training
Provide compliance updates to executive leadership
Oversee MSP for help desk support, device management, and IT operations
Establish SLAs and accountability for MSP performance and security compliance
Evaluate MSP effectiveness and manage vendor relationships
Assess and improve IT and compliance processes; develop SOPs and change management procedures
Implement and manage cybersecurity program including threat monitoring and endpoint protection
Develop and maintain Incident Response and Business Continuity/Disaster Recovery plans
Lead security awareness and phishing simulation programs
Manage identity and access controls including MFA and least-privilege principles
Collaborate with operations, program management, and finance to align IT and compliance with contract delivery
Support business development through compliance and cybersecurity expertise
4. Requirements:
Bachelor’s degree in IT, Cybersecurity, Computer Science, or related field or equivalent experience
5 to 8+ years in IT, cybersecurity, or compliance roles
2+ years experience in government contracting or federal consulting preferred
Hands-on experience with CMMC Level 2 readiness and certification efforts strongly preferred
Expertise with NIST SP 800-171 controls and compliance program implementation
Experience developing and auditing SSPs, POA&Ms, and security policies for CMMC or similar frameworks
Ability to communicate compliance risks and posture to executive leadership
Experience in external-facing roles such as audits and client interactions related to cybersecurity
Experience managing MSP relationships
Prefer hands-on experience with macOS environments and endpoint management tools
Google Workspace administration and security configuration experience a plus
Proven ability to document and scale IT and compliance processes in a growing organization
5. Pay Range and Compensation Package:
The pay range and compensation package for this role will be determined based on the candidate’s experience, skills, and other relevant factors.
Equal Opportunity Statement:
Equal Opportunity Statement: Our client is an equal opportunity employer. They celebrate diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, or national origin.
Note:
RemoteHunter is a recruitment partner of this role. Please note that all employment decisions, including candidate assessment, interviews, hiring, compensation, and employment terms, are made exclusively by the hiring employer.
Work arrangement
Yes
More openings worth a look
Recently tracked roles with full details and direct application links.