South Dakota Board of Regents-posted 19 days ago
$73,063 - $88,063/Yr
Full-time • Mid Level
Rapid City, SD
51-100 employees
Educational Services

South Dakota Mines is seeking a dedicated and knowledgeable IT Specialist for Cybersecurity Compliance to lead our Cybersecurity Maturity Model Certification (CMMC) efforts. This role is critical in ensuring the security of Controlled Unclassified Information (CUI) and safeguarding the university's Department of Defense (DoD) research portfolio. The specialist will be responsible for developing, implementing, and managing a secure and compliant enclave for CUI data, ensuring adherence to federal cybersecurity regulations. This position will play a pivotal role in mitigating contractual risks, protecting the university's research enterprise and maintaining the institution's reputation as a trusted partner in national security research.

  • Lead CMMC Compliance Program: Oversee the university's Cybersecurity Maturity Model Certification (CMMC) compliance program, from initial gap analysis to final certification and continuous monitoring. This position will serve as the principal architect and leader of the university's comprehensive Cybersecurity Maturity Model Certification program.
  • Documentation Management: Develop and maintain essential documentation, including the System Security Plan (SSP) and Plan of Action & Milestones (POA&M). This position will oversee the lifecycle management of the full CMMC program.
  • Policy Development: Create and implement university-wide security policies and procedures that translate CMMC requirements into actionable practices.
  • Audit and Assessment Management: Manage and lead the response for all internal and external CMMC audits and assessments.
  • Risk and Vulnerability Management: Conduct risk assessments and oversee the vulnerability management lifecycle for the Controlled Unclassified Information (CUI) environment.
  • Collaboration with Researchers: Work closely with researchers and Research Affairs to develop Technology Control Plans (TCPs) that convey the data flow of CUI data on research projects.
  • Continuous Improvement: Regularly conduct internal audits to assess the effectiveness of security controls and provide reports and briefings on program status, risks, and milestones to university leadership.
  • Primary Contact for Assessments: Act as the primary point of contact for third-party assessment organizations (C3PAOs) during official CMMC and other assessments.
  • Team Member for ITS department: Position will be integrated with the IT department to provide support to campus.
  • This position requires access to federal government data made available through grant funding which limits access to U.S. citizens. Proof of U.S. citizenship will be required prior to hire.
  • Knowledge and skill in cybersecurity fundamentals such as incident management, forensic analyses, obfuscation techniques, vulnerability scans, threat intelligence, encryption, and decryption.
  • Broad understanding of client/server and webserver architectures and systems.
  • Broad understanding of networking technologies, architectures, and tools.
  • Knowledge of Internet network addressing.
  • Familiarity with programming languages and methodologies.
  • Knowledge of data management, retrieval systems, transfer technologies, and backup systems.
  • A strong understanding of cybersecurity industry standards.
  • The ability to design, improve, secure, and standardize processes related to: Networking Software development Systems engineering Financial and risk analysis Security intelligence
  • South Dakota Mines is committed to recruiting and retaining a talented workforce and offers an excellent comprehensive benefits package including medical, dental, vision, and life coverage options for employees, spouses and dependents; retirement plans; paid holidays; and a generous vacation and sick day allowance.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service