Terracon · 1 hour ago
Senior Project Manager
Terracon is a 100 percent employee-owned multidiscipline consulting firm focused on solving engineering and technical challenges. The CMMC Program Manager for Level 2 Cybersecurity leads compliance efforts with NIST SP 800-171 and CMMC Level 2 requirements, overseeing projects and ensuring readiness for assessments.
Responsibilities
Serve as the primary liaison between corporate leadership, Operations, and technical teams regarding CMMC Level 2 requirements
Lead the development, execution, and maintenance of the organization’s CMMC compliance roadmap
Establish governance structures, reporting mechanisms, and project controls to ensure sustained compliance
Oversee cross‑functional project teams, set priorities, assign tasks, and ensure milestones are met
Collaborate with Operations to determine whether proposals, projects, or pursuits involve CUI
Ensure all CUI‑related activities follow NIST SP 800‑171 controls and CMMC Level 2 requirements
Guide operational teams through required cybersecurity processes, documentation, and evidence collection
Manage implementation of the 110 NIST SP 800‑171 security requirements across people, processes, and technology
Coordinate with IT and security teams to ensure technical controls (e.g., MFA, logging, access control, encryption) are properly deployed and maintained
Track Plan of Action & Milestones (POA&M) items and ensure timely remediation
Ensure third‑party vendors, subcontractors, and service providers meet CMMC Level 2 requirements
Review contracts, validate vendor compliance, and manage supply chain cybersecurity risks
Prepare documentation, artifacts, and evidence required for internal reviews and external C3PAO assessments
Lead mock assessments, gap analyses, and readiness reviews
Maintain continuous compliance posture and ensure audit findings are addressed promptly
Partner with HR to ensure employees working with CUI meet eligibility and screening requirements
Develop and deliver cybersecurity awareness and role‑based training programs
Promote a culture of security across the organization
Identify cybersecurity risks, evaluate impact, and recommend mitigation strategies
Provide regular updates to leadership on compliance status, risks, and project progress
Maintain documentation, policies, and procedures aligned with federal cybersecurity standards
Qualification
Required
Bachelor's degree in technical discipline practices by the Firm including Engineering, Environmental Science or Geology and a minimum of 10 years' related experience. Or in lieu of a degree, a minimum of 14 years' related experience
Extensive program or project management experience leading complex, cybersecurity initiatives
Deep knowledge of CMMC Level 2, NIST SP 800‑171, and related frameworks (e.g., NIST CSF)
Experience supporting cybersecurity compliance for federal contracts or defense‑related projects
Travel up to 50%
Strong understanding of audit processes, evidence collection, and risk analysis methodologies
Experience preparing for or participating in C3PAO assessments
Ability to influence and collaborate with stakeholders across technical and non‑technical teams
Excellent communication, leadership, and organizational skills
Valid driver's license with acceptable violation history
Preferred
Experience with organizational change management is beneficial
Benefits
Medical
Dental
Vision
Life insurance
401(k) plan
Paid time off
Holidays
Education reimbursement
Various bonus programs
Company
Terracon
Terracon is a 100 percent employee-owned consulting engineering firm providing quality services to clients.
H1B Sponsorship
Terracon has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (39)
2024 (32)
2023 (36)
2022 (24)
2021 (23)
2020 (16)
Funding
Current Stage
Late StageRecent News
Business Journals
2023-05-17
Globe Newswire
2023-02-10
Business Journals
2023-01-25
Company data provided by crunchbase