Practice Manager, Director, Principal (NIST/CMMC)

2 hours, 4 minutes ago
Full-time
Lead
Cybersecurity
Ascera

Ascera

Ascera provides next-gen cyber compliance software that automates evidence collection and status reporting in CMMC, DFARS, and NIST-based compliance. The software cuts time and effort in half by boosting productivity through automated data collection a...

Internet Software & Services

Description

  • Lead and scale 112Cyber’s CMMC compliance practice across advisory and C3PAO services.
  • Own customer delivery outcomes, client satisfaction, and ongoing compliance partnership.
  • Oversee senior consultants delivering cybersecurity compliance engagements and ensure consistent quality and methodology.
  • Provide advisory oversight for DFARS, CMMC, FedRAMP, NIST CSF, and NIST SP 800-171 initiatives.
  • Partner with client leadership to align regulatory requirements with business goals and risk tolerance.
  • Review assessment approaches, control testing strategies, and evidence packages for readiness and certification efforts.
  • Build repeatable delivery processes and help develop consultants to strengthen practice capability.
  • Advise the ASCERA product team on changing compliance requirements and rule interpretations to inform software development.
  • Manage practice capacity, resource allocation, utilization, delivery timelines, and customer priorities.
  • Oversee formal CMMC assessments and ensure adherence to C3PAO requirements, accreditation standards, and assessment methodology.

Requirements

  • 5–8+ years of experience in IT security controls testing and documentation, including managing client control testing efforts.
  • 5+ years of experience leading and coordinating external and internal audit activities, including DFARS, CMMC, NIST 800-53, or similar regulatory assessments.
  • 5+ years of experience producing technical documentation, compliance deliverables, and executive-level reports.
  • 3+ years of practice leadership experience, including consultant performance management, capacity planning, delivery quality, and continuous improvement.
  • Current or former experience leading and growing a successful professional services organization in the cyber risk and compliance domain.
  • Experience across both advisory and attestation work is ideal.
  • Self-directed leader with strong ownership and accountability for outcomes.
  • Ability to engage executive stakeholders, build trusted relationships, and influence decision-making.
  • Exceptional communication skills with the ability to translate complex technical and regulatory concepts for non-technical audiences.
  • Active Lead CMMC Certified Assessor (CCA) credential strongly preferred, or willingness to obtain it.
  • One or more certifications such as CISSP, CISM, CISA, CRISC, or equivalent preferred.

Benefits

  • Competitive salary and bonus plan.
  • Long-term opportunity for equity interest in the company.
  • Comprehensive medical, mental, and vision plans.
  • 401(k) with company match.
  • 30 days of annual paid time off.
  • Significant training, development, and certification support.
  • Opportunity for long-term career advancement.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Middleware Operations Lead

Qualysoft 251-1K Internet Software & Services

Qualysoft Group is seeking a Middleware Operations Lead in Budapest to oversee enterprise middleware platform operations and drive reliable service delivery across client environments.

Apache Bash Python
4 minutes ago

Director of E-Commerce - Health & Wellness - REMOTE

Stonehenge Health is hiring a remote, California-based Director of E-Commerce to own and scale its Shopify Plus direct-to-consumer storefronts, driving revenue growth, conversion, and the overall shopping experience.

Google Analytics Power BI SEO Shopify
19 minutes ago

ブラウンダスト2 日本ファンダム事業 Operations PM(未経験/経験者)

NEOWIZ 251-1K Internet Software & Services

NEOWIZ GameOn is hiring an Operations PM to lead Japanese market marketing and fandom initiatives for Brown Dust 2, with a focus on planning and executing community-driven campaigns for anime-style collectible games.

19 minutes ago

Traffic Monitoring Manager

dLocal 251-1K Diversified Financial Services

dLocal is seeking a Traffic Monitoring Manager to join its newly formed Strategic Governance team and oversee payments and financial flows across the company’s emerging-market network.

19 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers