About The Position

Work 100% remote helping DoD contractors pass CMMC audits and ship audit-ready documentation. This role involves leading CMMC policy development, writing System Security Plans (SSPs), managing Plans of Action and Milestones (POA&Ms), running compliance sprints, mapping evidence to NIST 800-171 controls, managing GRC platforms, and translating technical controls into clear client actions. You will coordinate evidence collection with technical teams and work on real CMMC audits.

Requirements

  • 3–5 years cybersecurity GRC, IT audit, or IA
  • Deep NIST 800-171 + CMMC knowledge
  • Security+ certification
  • Strong technical writing (audit-defensible docs)
  • Manage multiple clients at once
  • U.S. Citizenship required

Nice To Haves

  • CCP or RP certification (or ability to obtain fast)
  • Experience with FutureFeed, Apptega, or Purview
  • Prior C3PAO audit support
  • SSP or POA&M ownership

Responsibilities

  • Lead CMMC policy development across all 14 domains
  • Write SSPs and manage POA&Ms end-to-end
  • Run compliance sprints with 5–10 clients (clear ownership)
  • Map evidence to NIST 800-171 controls (audit-ready)
  • Manage GRC platform and client progress dashboards
  • Translate technical controls into clear client actions
  • Coordinate evidence collection with technical teams

Benefits

  • health
  • dental
  • vision
  • 401(k)
  • PTO
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service