CMMC GRC Consultant

Danvers, MA


Apply Save

Type: Contract-to-Hire

Category: Information Technology

Reference ID: 10081623

Shortcut: http://addisongroup.gosnaphop.com/7Pflcx


Role: CMMC GRC Consultant

Industry: Cybersecurity / Managed Services / Consulting

Location: Remote – U.S. Based

Assignment Type: 4–6 Month Contract-to-Hire

Conversion Salary: $95,000 – $115,000 / year

Travel: Limited – Approximately 1–2 Team Meetings per Year + Occasional Client Travel

Start Date: ASAP

Benefits: This role is eligible for medical, dental, vision and 401k.


About the Opportunity

Our client, a growing IT and cybersecurity services organization, is seeking a CMMC GRC Consultant to join its Governance, Risk, and Compliance team.

This is a client-facing cybersecurity compliance consulting role focused heavily on helping organizations prepare for and achieve CMMC and NIST 800-171 compliance. The Consultant will manage multiple client engagements while conducting readiness assessments, developing SSPs and POA&Ms, identifying compliance gaps, coordinating remediation efforts, and preparing clients for audits.

The ideal candidate has approximately 3–5 years of Information Security, GRC, or cybersecurity compliance experience and has already worked directly with CMMC and/or NIST 800-171.

An active CMMC CCP or CCA certification is required for consideration.

This position is well suited for an earlier-to-mid-career GRC professional who has strong CMMC knowledge, enjoys working directly with clients, and wants to continue developing within a collaborative consulting environment.

Key Responsibilities

·      Conduct CMMC readiness and gap assessments for client environments.

·      Guide clients through CMMC and NIST 800-171 compliance initiatives.

·      Develop, maintain, and deliver System Security Plans (SSPs).

·      Create and manage Plans of Action & Milestones (POA&Ms).

·      Identify compliance gaps and coordinate remediation activities.

·      Perform cybersecurity and compliance risk assessments.

·      Support clients throughout audit-readiness and assessment-preparation activities.

·      Manage multiple client compliance engagements simultaneously.

·      Establish project milestones, deliverables, timelines, and priorities.

·      Develop and maintain cybersecurity policies, procedures, governance documentation, and compliance frameworks.

·      Work directly with clients to understand their environments, compliance requirements, risks, and remediation priorities.

·      Lead client meetings and communicate project status, findings, risks, and next steps.

·      Prepare and present client-facing compliance reports and assessment findings.

·      Coordinate client onboarding and compliance-engagement activities.

·      Partner with technical teams to ensure security-control implementations align with CMMC and NIST requirements.

·      Assist clients with risk-mitigation and remediation planning.

·      Track compliance deliverables through completion.

·      Maintain awareness of evolving CMMC requirements, cybersecurity regulations, and industry best practices.

·      Contribute to internal GRC process improvements, documentation standards, and knowledge sharing.

Required Qualifications

·      Active CMMC CCP or CCA certification required.

·      3–5 years of experience within Information Security, Cybersecurity, GRC, Risk, or Compliance.

·      Hands-on experience supporting CMMC and/or NIST 800-171 compliance initiatives.

·      Experience managing and executing cybersecurity compliance projects.

·      Experience conducting readiness assessments, gap assessments, or risk assessments.

·      Hands-on experience developing or maintaining SSPs and POA&Ms.

·      Strong understanding of cybersecurity controls and compliance requirements.

·      Experience supporting audit-readiness and remediation initiatives.

·      Ability to manage multiple compliance engagements and competing deadlines simultaneously.

·      Strong understanding of Microsoft 365 environments.

·      Familiarity with Microsoft Entra ID / Azure AD.

·      Understanding of Windows-based enterprise environments.

·      Strong project-management and organizational skills.

·      Excellent written and verbal communication.

·      Strong client-facing and presentation skills.

·      Ability to translate complex cybersecurity and compliance requirements into understandable recommendations for clients.

·      Ability to collaborate effectively with both technical and non-technical stakeholders.

Preferred Qualifications

·      CMMC RPA certification.

·      CompTIA Security+ or comparable cybersecurity certification.

·      Experience within an MSP, MSSP, cybersecurity consulting, or professional-services environment.

·      Experience supporting multiple external clients simultaneously.

·      Knowledge of additional regulatory and security frameworks such as:

o  ISO 27001

o  HIPAA

o  HITRUST

o  GDPR

·      Familiarity with endpoint detection and response (EDR) technologies.

·      Vulnerability-management experience.

·      Understanding of threat-protection technologies.

·      Strong policy-writing experience.

·      Experience developing and improving compliance processes and documentation.

·      Bachelor’s degree in Cybersecurity, Information Technology, Information Security, or a related discipline, or equivalent professional experience.

What We’re Looking For

This is not a purely internal GRC role.

The successful candidate will work directly with clients and needs to be comfortable taking ownership of a compliance engagement from assessment through remediation and audit preparation.

You should be able to confidently discuss:

·      CMMC

·      NIST 800-171

·      SSPs

·      POA&Ms

·      Readiness Assessments

·      Gap Assessments

·      Risk Assessments

·      Audit Preparation

·      Policy & Procedure Development

·      Security Controls

·      Microsoft 365

·      Entra ID / Azure AD

·      Remediation Planning

Just as importantly, you should be able to sit in front of a client, explain what you’ve found, communicate what needs to change, establish realistic priorities, and keep the engagement moving toward compliance.

Ideal Background

The ideal candidate has already spent several years working within cybersecurity compliance or GRC and is looking for an opportunity to deepen their CMMC expertise.

We’re particularly interested in candidates who have personally:

·      Participated in CMMC readiness engagements

·      Worked with NIST 800-171 controls

·      Created or maintained SSPs

·      Developed and tracked POA&Ms

·      Conducted gap or risk assessments

·      Helped organizations prepare for audits

·      Written cybersecurity policies and procedures

·      Coordinated remediation with technical teams

·      Presented findings directly to clients

·      Managed multiple compliance projects at the same time


A highly experienced senior-level GRC leader is not necessary for this position. The focus is on finding someone with a strong CMMC foundation, the required certification, client-facing ability, and room to continue developing within the organization.


Work Environment

·      Fully remote within the United States

·      Collaborative GRC and cybersecurity consulting team

·      Reports into CMMC Compliance leadership

·      Multiple concurrent client engagements

·      Approximately 1–2 team meetings per year requiring travel

·      Occasional client-site travel may be required

Additional Details

·      4–6 month contract-to-hire opportunity

·      Conversion strongly preferred

·      Conversion salary approximately $100,000–$115,000 / year

·      ASAP start

·      Two-step interview process:

o  Technical interview

o  Leadership interview

·    Upon a conditional offer of employment, the position requires a background check

·      CMMC CCP or CCA certification is required

Benefits

Eligible consultants may receive:

·      Medical and prescription drug coverage

·      Dental insurance

·      Vision insurance

·      Health Savings Account (HSA)

·      Flexible Spending Accounts (FSA)

·      Short-Term and Long-Term Disability Insurance

·      Supplemental Life Insurance

·      401(k)

·      Weekly pay

If you’re a CMMC-certified GRC professional with hands-on experience supporting CMMC/NIST 800-171 readiness, SSPs, POA&Ms, risk assessments, and client compliance engagements, apply today to learn more.


Addison Group is an Equal Opportunity Employer. Addison Group provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. Addison Group complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. Reasonable accommodation is available for qualified individuals with disabilities, upon request.



  • Cybersecurity Network Engineer

    Houston, TX

    Role: Cybersecurity / Network Engineer Location: Houston, TX (Hybrid) Pay Range: $120,000 - $125,000 / year Benefits: This position is eligible for medical, dental, vision and 401(k) About the Role We are seeking a Cybersecurity / Network Engineer to t...

    Recommended

  • Senior Information Security Lead

    Woodland Hills, CA

    Title: Senior Information Security Lead Location: Woodland Hills, CA Salary: $125 - 165k This position is not eligible for sponsorship Benefits: health insurance disability insurance life insurance retirement plans (like a 401(k)) paid time off (PTO) i...

    Recommended

  • Cybersecurity Engineer

    Phoenix Metro Area, Arizona

    Title: Cybersecurity Engineer Location: Phoenix, AZ (Onsite) Contract: 12 month Schedule: Monday-Friday | 8:00 AM-5:00 PM Benefits: This position is eligible for medical, dental, vision, and 401(k). Pay: 55$ - 63$ an hour Position Summary We are seekin...

    Recommended

  • Senior Business Development Partner

    Dallas, TX

    Business Development Partner Location: Dallas, TX Work Arrangement: Hybrid (Field-Based) Travel: Moderate travel required About the Opportunity Addison Group is partnering with an innovative professional services organization that helps enterprise clie...

    Recommended

  • Workday Security Operations Engineer

    Oklahoma City, OK

    Job Title: Workday Security Operations Engineer Location (City, State): Oklahoma City, OK Assignment Type: Direct Hire - Must be authorized to work in the United States now and in the future without assistance. Pay: $115,000–$140,000 annually, plus a 1...

    Recommended

  • Technical Project Manager, Security

    Bentonville, AR

    Position: Technical Project Manager Duration: 3–6-month contract Remote: 100% remote **Must be located in the United States** - working CST hours Pay: $60-65/HR This position is eligible to enroll in medical, dental, vision after 60 days. In addition, ...

    Recommended

  • Senior Network Security Engineer

    Chicago, IL

    CONFIDENTIAL SEARCH – Senior Network Security Engineer Location: Chicago – Onsite Pay: $130 - $145K Base Benefits: This position is eligible for Medical, Dental, Vison, and 401(k) Confidential search for a Senior Network Security Engineer for a highly ...

    Recommended

  • Interim IT Director - Onsite 5 Days a Week in DC

    Washington, DC

    Position Title: Interim IT Director Location: Washington DC- 5 Days onsite - No relocation Assignment Type: Long term contract Pay Rate: $70.00 - $95.00 / Per Hour Work Schedule: Onsite, Monday - Friday Benefits: This position is eligible for medical, ...

    Recommended

  • Senior Automation & Controls Engineer

    Forney, TX

    Job Title: Senior Automation & Controls Engineer Location (City, State): Forney, TX Assignment Type: Direct Hire Pay: $125-140K Work Schedule: Full-Time | Monday–Friday Benefits: This position is eligible for medical, dental, vision, and 401(k). About ...

    Recommended

  • Fire & Emergency Services PM

    District of Columbia

    Role: Fire & Emergency Services PM Location: Washington, DC (Hybrid) Pay Rate Range: $100,000 - $110,000 / year Internal Job ID: 10080297 Are you looking for a growth opportunity for a reputable company with a positive work environment? Our client is l...

    Recommended

  • Lead Cyber Security Threat Operations Engineer

    Anywhere

    Title - Lead Cyber Security Threat Operations Engineer Location REMOTE IN THESE STATES ONLY (Colorado, Florida, Georgia, Illinois, Maryland, New Jersey, New York, North Carolina, Ohio, Pennsylvania, Tennessee, Texas, Virginia, and West Virginia, plus t...

    Recommended

  • HR Specialist

    Danvers, MA

    Job Title: HR Specialist Industry: Cybersecurity Services Location: Remote – Eastern Time Zone Preferred Assignment Type: Temp-to-Hire Pay: $35 – $40 / hour | $80,000 salary upon conversion Work Schedule: Monday – Friday, 8:00 AM–5:00 PM EST Benefits: ...

    Recommended

  • Workplace Tech Microsoft Platforms Manager

    Dallas Metro Area, Texas

    Title: Workplace Tech Microsoft Platforms Manager Location: Dallas, TX - Onsite 1 day a week Salary: $140k Benefits: This role is eligible for health, welfare, 401(k) savings plan with dollar-for-dollar match up to 5%, tuition reimbursement and 27 days...

    Recommended

  • Director of Accounts Payable and Accounts Receivable

    Yorba Linda, CA

    Position Title: Director of Accounts Payable & Accounts Receivable Location: Brea, CA – On-Site Assignment Type: Permanent Hire Compensation: $120,000 – $160,000 / year Work Schedule: M-F 9-5 Benefits: This position is eligible for Medical, Dental, Vis...

    Recommended

  • Energy Resiliency PM

    District of Columbia

    Role: Energy Resiliency PM Location: Washington, DC (Hybrid) Pay Rate Range: $100,000-$110,000/year Benefits: This role is eligible for medical, dental, vision and 401k. Internal Job ID: 10080296 Are you looking for a growth opportunity for a reputable...

    Recommended

  • Senior Tax Accountant or Tax Manager

    Mercer Island, WA

    Job Title: Senior Tax Accountant or Tax Manager Industry: Public Accounting Location: Greater Seattle area Employment Type: Full-Time Work Environment - hybrid after first 90 days in office Compensation: $125k - 150k base Benefits: This position is eli...

    Recommended

  • Director of Safety

    Houston, TX

    Director of Safety About the Opportunity Our client is seeking an experienced safety leader to oversee health and safety initiatives across multiple operational sites. This individual will partner with executive leadership and field teams to strengthen...

    Recommended

  • Director of Environment, Health, and Safety

    Cypress, TX

    Title: Director of Environmental, Health & Safety (EHS) Status: Exempt/Direct Hire | Full-Time Compensation: $120,000 - $150,000 Base Salary + Annual Bonus Location: Greater Houston, TX (Onsite) Position Overview Our client is seeking an experienced Di...

    Recommended

  • Environmental Health and Safety Manager

    Itasca, IL

    Job Title: Environmental Health & Safety Manager Industry: Manufacturing Location (city, state): Wood Dale, IL Assignment Type: Direct Hire Pay: $85 - $95K based on experience plus bonus Work Schedule: Full-Time | Onsite Benefits: This position is elig...

    Recommended

  • Commercial Loan Portfolio Manager

    Fort Worth, TX

    Job Title: Commercial Loan Portfolio Manager Industry: Financial Services Location (city, state): Fort Worth, TX Assignment Type: Full-time, Direct Hire Pay: $85,000 to $95,000 annually Work Schedule: Monday through Friday, 8:00 AM to 5:00 PM | Hybrid ...

    Recommended

  • Octopus Deploy Governance Consultant

    REMOTE, IL

    Role: Octopus Deploy Governance Consultant Location: 100% Remote Pay: $90/hr Duration: 5 Week Contract Internal Job ID: 10077519 Benefits: Benefits are available the 1st day of the month following 60 days of employment. The following benefits available...

    Recommended

  • Remote Inpatient Medical Coder

    Texas

    Job Title: Remote Inpatient Medical Coder Location: Remote, USA Industry: Healthcare Revenue Cycle / Health Information Management Pay: $41.00 / Per Hour (potential flexibility for highly qualified candidates) Benefits: This position is eligible for me...

    Recommended

  • Senior Internal Auditor

    Issaquah, WA

    Job Title: Senior Internal Auditor Industry: Retail / Consumer Services Location: Greater Seattle area Assignment Type: Full-Time, Direct Hire Pay: $110k base - $125k base Work Schedule: Hybrid (3 days in office) after 90 days fully onsite. Benefits: T...

    Recommended

  • Director, Global Payroll

    Culver City, CA

    Job Title: Director, Global Payroll Location: Los Angeles Area (Hybrid, 2 days/week) — OT required Industry: Fast-growing Entertainment company Pay Range: $130,000 – $200,000/ year Type: Temp-to-Hire (immediate start needed) Reports To: SVP, Accounting...

    Recommended

  • Director of Enterprise Business Development

    Chicago, IL

    Director, Enterprise Business Development Reports to: General Manager | Full-time | Hybrid | Chicago | Senior Individual Contributor About the Role This is a national, enterprise-level origination role for a seller who sells the full continuum of our c...

    Recommended

  • Interim Director of Human Resources

    Washington-Arlington-Alexandria Metro Area, District of Columbia

    Job Title: Interim Director of Human Resources Industry: Nonprofit / Public Private Partnership Location (city, state): Washington, DC (fully remote with preference for candidates local to Washington DC) Assignment Type: Contract with potential to conv...

    Recommended

  • Landscape Branch Manager

    Reno, NV

    Title: Landscape Branch Manager Location: Reno, Nevada Industry: Facilities & Environmental Services, Commercial Landscaping Compensation: $95,000 –$115,000 / Annually depending on experience, performance based bonus program Benefits: This position is ...

    Recommended

  • Branch Manager - Operations-Landscaping

    Elmhurst, IL

    Title: Branch Manager - Operations Location: Elmhurst, IL Industry: Commercial Landscaping, Facilities & Environmental Services Compensation: $90,000 – $110,000 / Annually depending on experience. Performance-based bonus program Benefits: Medical, dent...

    Recommended

  • Client Success Manager

    Danvers, MA

    Job Title: Client Success Manager – Managed IT Services Industry: Information Technology / Managed Services Location: Remote – EST/CST candidates preferred Pay: $85,000 - $95,000 Benefits: This position is eligible for Medical and prescription drug cov...

    Recommended

  • Training Specialist (Transportation)

    Woodlawn, MD

    Job Title: Training & Workforce Development Specialist Industry: Transportation Location (city, state): Landover Hills, MD Assignment Type: Contract, 1+ year Pay: $48–$52/hour (based on experience) Work Schedule: Monday–Friday, 9:00 AM–5:00 PM; full-ti...

    Recommended