SIGN IN
Lead CMMC Certified Assessor jobs in United States
info-icon
This job has closed.
company-logo

Bayforce · 1 month ago

Lead CMMC Certified Assessor

Bayforce is seeking experienced CMMC Certified Assessors to support a growing portfolio of formal CMMC Level 2 certificate assessments for DoD contractors. The role involves leading and executing assessment procedures, evaluating control implementations, and documenting findings to ensure compliance with C3PAO standards.
Information TechnologyMarketing
check
Comp. & Benefits
check
H1B Sponsor Likelynote

Responsibilities

Lead and execute interview, examination, and test procedures for assigned CMMC Level 2 practice areas in accordance with the CAP and NIST SP 800-171A assessment objectives
Evaluate and document the sufficiency of control implementation evidence, including System Security Plans, policies, procedures, configuration baselines, and system-generated artifacts
Assess organizational, system, and technical controls across all 14 CMMC Level 2 domains, applying consistent methodology to determine MET, NOT MET, or NOT APPLICABLE findings
Conduct stakeholder interviews with technical and non-technical personnel to validate control implementation and gather corroborating evidence
Perform hands-on technical testing where required, including configuration review, log inspection, and access control validation
Document assessment findings with sufficient specificity and evidentiary linkage to support defensible, audit-ready reporting
Collaborate with the assessment team lead and other CCAs to ensure coverage consistency, resolve ambiguous findings, and maintain assessment integrity
Adhere to CyberAB and C3PAO conflict of interest, independence, and code of professional conduct requirements throughout each engagement

Qualification

CMMC Certified Assessor (CCA) certificationInterview proceduresExamination proceduresTest proceduresNIST SP 800-171 Rev 2NIST SP 800-171A assessment objectivesSystem Security Plans (SSPs) evaluationPlan of Actions and Milestones (POA&Ms) evaluationMicrosoft 365 GCC/GCC HighOn-premises infrastructureEndpoint management platformsCloud service configurations

Required

Active CMMC Certified Assessor (CCA) certification in good standing with the CyberAB
Demonstrated ability to execute interview, examine, and test procedures as the primary assessment methodology across technical and non-technical CMMC practice areas
Working knowledge of all 110 NIST SP 800-171 Rev 2 security requirements and corresponding 800-171A assessment objectives
Experience evaluating SSPs, POA&Ms, policies, and system-level documentation for adequacy and completeness in an assessment or audit context
Familiarity with common DIB technology environments including Microsoft 365 GCC/GCC High, on-premises infrastructure, endpoint management platforms, and cloud service configurations
Strong written communication skills sufficient to produce clear, evidence-linked finding narratives meeting C3PAO documentation standards

Preferred

Lead CCA (LCCA) certification
Experience as a formal assessment team member on one or more completed C3PAO-led CMMC assessments
Background in FedRAMP, RMF, NIST 800-53, or FISMA assessment and authorization activities
Familiarity with eMASS, Archer, or similar GRC or assessment management platforms

Company

Bayforce

twitterlinkedincrunchbase
company-logo
Bayforce is an information technology company that provides ERP, CRM, and cloud solutions.

H1B Sponsorship

Bayforce has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
100%
Represents job field similar to this job
Engineering and Development
Trends of Total Sponsorships
*2023 (2)

Funding

Current Stage
Growth Stage
Company data provided by crunchbase