Certified CMMC Professional (CCP)
Insight AssuranceAbout the role
Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.
We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.
Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.
Position Summary
We are seeking a knowledgeable and motivated Certified CMMC Professional (CCP) to support the delivery of CMMC readiness and advisory services for clients in the Defense Industrial Base (DIB). The CCP will work directly with organizations seeking to meet CMMC 2.0 and NIST SP 800-171 compliance requirements.
This role serves as a trusted advisor, assisting clients with documentation, gap assessments, remediation planning, and readiness activities in preparation for formal CMMC assessments conducted by Certified Third-Party Assessment Organizations (C3PAOs).
Key Responsibilities
-
Conduct CMMC readiness assessments and gap analyses against CMMC 2.0 practices and NIST SP 800-171 requirements.
-
Assist in developing and reviewing key compliance documents such as System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms).
-
Support clients in implementing cybersecurity controls and processes aligned with CMMC 2.0 Levels 1 and 2.
-
Collaborate with IT, security, and compliance teams to identify risks and track remediation efforts.
-
Provide expert guidance and interpretation of CMMC requirements, helping organizations understand their obligations under DFARS 252.204-7012/7019/7020.
-
Prepare clients for official CMMC assessments by reviewing evidence, policies, and technical configurations.
-
Stay current with updates from The Cyber AB, DoD, and NIST related to the CMMC 2.0 program.
-
Communicate findings and recommendations clearly through reports, presentations, and client meetings.
-
Work closely with Certified CMMC Assessors (CCAs) or C3PAO partners to align client readiness efforts with official assessment standards.
Required Qualifications
-
Active Certified CMMC Professional (CCP) credential issued by The Cyber AB.
-
U.S. Citizenship (required for DoD and DIB-related engagements).
-
3–5+ years of experience in cybersecurity, compliance, risk management, or audit.
-
Strong understanding of CMMC 2.0, NIST SP 800-171, and related DoD cybersecurity regulations.
-
Experience performing gap analyses, security documentation reviews, and compliance consulting.
-
Excellent communication and analytical skills with the ability to explain technical concepts to non-technical audiences.
-
Ability to work independently and manage multiple client engagements in a fast-paced environment.
Preferred Qualifications
-
Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or a related field (or equivalent experience).
-
Additional certifications such as Security+, CISSP, CISA, or CAP.
-
Experience supporting defense contractors or working in environments handling Controlled Unclassified Information (CUI).
-
Familiarity with Microsoft GCC High, AWS GovCloud, or other compliant cloud environments.
-
Prior experience working with or for a Certified Third-Party Assessment Organization (C3PAO).
BENEFITS
Flexible Paid Time Off and paid Holidays
Quarterly Performance Bonuses
100% Remote
Competitive salary and benefits package.
Opportunities for professional growth and development.
Collaborative and innovati
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s