GRC CMMC Consultant
About Us
Thrive is a rapidly growing technology solutions provider focusing upon Cloud, Cyber Security, Networking, Disaster Recovery and Managed Services. Our corporate culture, engineering talent, customer-centric approach, and focus upon “next generation” services help us stand out amongst our peers. Thrive is on the look-out for individuals who don’t view their weekdays spent at “a job”, but rather look to develop valuable skills that ignite their passion and lead to a CAREER. If you’re attracted to a “work hard, play hard” environment, seeking the guidance, training and experience necessary to build a lucrative career, then welcome to THRIVE!!
Position Summary
The Governance, Risk, and Compliance (GRC) CMMC Consultant is a client-facing role that helps build, manage, and maintain cybersecurity compliance programs for clients across various industries, primarily within the government sector where most clients will be government contractors or sub-contractor providers that need to comply with government regulations.
The GRC Consultant supports the Assessment, Program Establishment, and Support work required for Abacode’s clients to become and remain compliant with their respective cybersecurity and privacy frameworks. The GRC Consultant develops client reporting and metrics, updates dashboards, and collects and validates evidence/artifacts.Primary Responsibilities
- Participates in day-to-day operations and client engagement activities across various client projects involving compliance readiness and security assessments
- Supports the Abacode GRC Service Delivery team with conducting on-going and new assessments of controls, processes, and procedures across multiple clients and compliance standards: NIST 800-171 (CMMC), SOC 2, ISO 27001, HIPAA, PCI DSS, NIST CSF and CIS
- Supports clients with maintaining compliance with such frameworks by guiding them through control execution and evidence collection and review
- Supports compliance, policy, procedural, and technical review of client information security and/or compliance program(s), providing maturity and improvement recommendations based on experience and industry best practices
- Performs security controls gap analysis and identification based on compliance mandates, standards, and security benchmarks
- Documents security controls inventory of client systems within the GRC portals.
- Conducts general cybersecurity Risk Assessments
- Provides tactical guidance aimed at helping clients meet compliance requirements across applicable security standards and frameworks
- Performs audit liaison activities, guiding and assisting clients with audit preparation, evidence identification and gathering, and responding to audit questions
- Manages compliance requirements across multiple clients in parallel
- Works with clients to identify opportunities for improvement for client’s security controls
- Builds internal company partnerships and collaborates with team leaders to determine the company's services, delivery criteria, and solutions for issues that may arise
- Supports evidence collection for internal Abacode/Thrive audits
- Identifies and makes suggestions for improvements when problems and/or opportunities arise
- Keeps up to date with developments in the cybersecurity, privacy, and GRC areas of specialization
Basic Qualifications
- Bachelor's Degree in related field or relevant work experience
- 2-4 years of experience conducting and documenting security risk assessments
- Experience working in a client-facing consulting or service delivery capacityExperience managing multiple clients/projects in parallel
- Experience with general project management and customer success/service is strongly desired
- Demonstrated understanding of control frameworks and regulatory requirements for NIST 800-171, NIST-CSF, SOC-2, and ISO 27001
- Preferred experience with: HIPAA, PCI-DSS
- Good understanding of the Department of Defense CMMC ruling and implications for the Defense Industrial Base
- Proven ability to assess risks and controls and identify opportunities for improvement.
- Excellent written and verbal communication skills along with excellent interpersonal skills. Able to communicate confidently in a clear, concise, and articulate manner - verbally and written in the documentation produced
- Broad knowledge of information technology (basic networking principles), information security (such as identity and access management), and critical data protection practices (basic principles of encryption and sensitive data protection) is highly desirable.
- Preferred prior experience working with GRC systems/tools.
- Preferred prior experience with general IT and Security auditing.
- Self-motivated, positive attitude, and a team player.
- Ability to work independently and with minimal supervision.
Recommended Jobs
Flatbed CDL A Truck Driver
Join the dedicated Flatbed fleet at HMD Trucking. With 23 years of experience in the business, we pride ourselves on our well-maintained fleet of 500+ Peterbilt 579/567 trucks and a friendly, people-…
Structural Engineer (EIT / PE) - Post-Tensioning & Concrete Systems
PTE Systems International is a leader in post-tensioning and concrete systems engineering, known for its commitment to technical excellence and rapid professional growth. The company offers a dynamic…
Physician - Pediatric Nocturnist Hematologist/Oncologist
Johns Hopkins All Children’s Hospital (JHACH) is seeking a dedicated and compassionate Pediatric Nocturnist Hematologist/Oncologist to join our highly respected team. At JHACH, our physicians and l…
Investment Advisor
At Capital Investment Advisors (CIA), we strive to help clients reach their goals by focusing on our specialty: Income Investing. We are a fee-only financial advisory and portfolio management firm he…
Associate Center Clinical Director
ChenMed, a leader in providing integrated healthcare services tailored for seniors with complex conditions, seeks a dynamic Associate Center Clinical Director to enhance its mission of delivering supe…
Au Pair
Get hired for Christina's aupair Job in Bonita Springs, FL. Live-in or Nanny Job Available! Full Time or Part Time. Find aupair care work in Bonita Springs.
HIRING IMMEDIATELY: Lawn Care Technicians - No Mowing, No Landscaping!
Lawn Doctor is seeking experienced lawn care professionals dedicated to providing high-quality, customer-focused lawn care services. We are looking for individuals with hands-on experience in lawn ca…
Warehouse Associate - FT
Dal-Tile is currently seeking an exceptional Warehouse Associate to join our TEAM! As the Warehouse Associate, we need someone who will own a variety of material handling duties such as receiving, lo…
Remote Team Associate | Entry Level | Hiring Now |Start ASAP
Join Globe Life AO : Build a Thriving Career from Anywhere! Join our fast-growing team at Globe Life AO. We provide full training, flexible hours, and uncapped bonuses. Apply now and get hired i…
Zaxby's South Orange Blossom Trail - Manager
We are hiring Assistant Managers and want you to join the team! Starting at $15-18+ per hour based on availability and experience + Great benefits! As the team at Zaxby’s expands, we are saving a s…