CMMC / NIST Consultant / Analyst
Location
United States
Posted
87 days ago
Salary
0
Seniority
Mid Level
No structured requirement data.
Job Description
CMMC / NIST Consultant / Analyst
Hotman Group
Hotman Group is seeking a CMMC / NIST Consultant / Analyst to support client projects involving CMMC, SSP development, NIST SP 800-171, NIST SP 800-53, FedRAMP, evidence collection, control documentation, and remediation tracking. This is a contract role that may be structured as part-time or full-time based on project needs and candidate availability. We are looking for a mid-level practitioner who can contribute to active client delivery work, produce strong documentation, and help move projects forward in a remote consulting environment. What You’ll Do - Support client engagements related to CMMC readiness, implementation, and documentation - Develop, update, and maintain System Security Plans (SSPs) - Assist with NIST SP 800-171, NIST SP 800-53, and FedRAMP documentation, control mapping, and related deliverables - Gather, organize, and review evidence supporting control implementation - Draft and refine control narratives, policies, procedures, and related compliance documentation - Identify gaps and support development of POA&Ms and remediation tracking - Work with client stakeholders to collect information, validate details, and keep deliverables moving - Contribute to readiness efforts tied to assessments, documentation, and ongoing compliance activities What we're looking for - 3-5 years of relevant experience in GRC, cybersecurity compliance, or related consulting work - Hands-on experience with CMMC-related work (Required) - Experience working with SSPs, policies, procedures, evidence collection, and remediation documentation (Required) - Familiarity with NIST SP 800-171, NIST SP 800-53, and FedRAMP - Strong writing and documentation skills - Ability to work independently in a remote environment - Strong organization, follow-through, and professionalism in client-facing work - Comfort stepping into active projects and supporting delivery work with minimal hand-holding Nice to Have - Experience supporting CMMC Level 2 efforts - Experience with CUI scoping, enclaves, or boundary discussions - Familiarity with POA&Ms, assessment readiness, and control crosswalks - Certifications such as CCP, CCA, CISSP, CISM, or CISA Requirements - Authorized to work in the U.S. - Able to pass a background check - Reliable high-speed internet and a secure remote work setup About Hotman Group Hotman Group is a remote boutique cybersecurity and GRC firm supporting clients across a range of industries and compliance needs. We value strong writing, quality work, collaboration, sound judgment, and practical execution. This role is a strong fit for someone who wants to contribute to meaningful CMMC project work in a contract capacity, whether that means part-time project support or full-time contract availability.
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
• Manage India regulatory activities for medical devices, including registrations, renewals, variations, labelling compliance and lifecycle management • Compile and submit registration documents, liaise with regulatory authorities and consultants to ensure timely approvals • Assess regulatory impact of post-approval changes including design changes, labeling changes, warehouse changes, supplier or manufacturing site changes • Support post‑market regulatory activities, including Adverse Event reporting, Field Safety Corrective Action (FSCA)/Recall • Monitor and communicate regulatory intelligence and assess impact; maintain regulatory documentation and databases, utilize Regulatory Information Management Systems (Veeva RIM) • Support assigned regulatory activities across ASEAN markets to enable compliance and business objectives
Role Description Labcorp is seeking an Ecotoxicology Regulatory Expert Consultant to join our Regulatory Crop Protection and Chemical (CPC) team on a Part-Time, Casual basis. The role is remote, aligned with our Huntingdon site. - Keep abreast of new regulatory and scientific developments in your area of expertise, to help develop Labcorp’s Crop Protection & Chemicals services. - Ensure an understanding of the client’s regulatory strategy and objectives and lead discussions during the design of projects to meet regulatory requirements. - Be responsible for high level regulatory arguments and interpretations. - Provide expert specialist skills in key areas of dossier preparation such as hazard characterization and risk assessment, whilst being fully accountable for meeting quality and deadline demands for designated projects. - Manage financial aspects of designated projects and plan and monitor the progress of programs to ensure agreed timelines are achieved. - Provide key program and strategic issue management advice to both clients and in-house departments. - Actively support and train other team members in specialist skills areas. - Be the thought-leader in the discipline for the business. Qualifications - BSc in Environmental Science, Biological Sciences or Environmental Chemistry / Analytical Science. Requirements - Strong technical understanding and experience in ecotoxicology along with regulatory knowledge. - Excellent communication skills with the ability to lead and engage with customers, regulatory authorities or other internal project team members working within a quality focused environment. - Ability to deliver against agreed timelines whilst managing workloads and resources to ensure targets are met. Company Description Labcorp is proud to be an Equal Opportunity Employer. Labcorp strives for inclusion and belonging in the workforce and does not tolerate harassment or discrimination of any kind. We make employment decisions based on the needs of our business and the qualifications and merit of the individual. Qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), family or parental status, marital, civil union or domestic partnership status, sexual orientation, gender identity, gender expression, personal appearance, age, veteran status, disability, genetic information, or any other legally protected characteristic. Additionally, all qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law. We encourage all to apply. If you are an individual with a disability who needs assistance using our online tools to search and apply for jobs, or needs an accommodation, please visit our accessibility site or contact us at Labcorp Accessibility. For more information about how we collect and store your personal data, please see our Privacy Statement.
• Conduct thorough investigations on all FPNs understanding the root cause allowing for identification of trends and themes, allowing improvements to be identified. • Utilise systems, mainly big change to receive and/or send details of FPNs and other street works information. • Collaborate with operations sharing details of failures, sharing successes and implementing process changes to drive future improvements. • Conducting training for new employees and/or any refresher training required within the current team in relation to street work management. • Clear understanding of process, with the ability to identify initiatives and improvements that demonstrate efficiency. • Manage and share reporting to the wider functions, additional upward management reporting will be required. • Knowledge of SLA’s and KPI’s in line with the contract to actively manage the team to meet contractual requirements and preventing penalties. • Liaise where required with local authorities to ensure smooth coordination and resolution of disputes. • Monitor, agree and ensure completion and timely return to the client all Defect charges within the required SLA period. • Work closely with the Street work and compliance manager to implement positive change, reducing both volumes and costs of all associated fines, assisting in other workloads where required. • Reviewing all fixed penalty notices (FPNs) within a set timescale, using knowledge to accept, dispute or reject the fine based on information from thorough investigation.
• Lead the implementation and management of compliance programs aligned with RPAA, card network requirements (e.g., Visa), and relevant lending licensing or registration needs • Oversee day-to-day controls and monitoring for the Banking and Credit Card compliance programs • Serve as the internal subject-matter expert for payments regulation, licensing, and risk controls related to safeguarding, operational risk, and program governance • Lead to internal training and awareness to strengthen payment regulatory knowledge across teams • Partner with Product, Engineering, and Operations teams to embed compliance into product development and lifecycle management • Draft and maintain policies, procedures, and internal guidance for applicable compliance requirements • Support regulatory reporting and audit readiness, including regulator inquiries, risk assessments, and network attestations • Identify and triage compliance risks related to payment program expansions or enhancements • Leverage automation tools (e.g., Notebook LM) to streamline program execution and reduce overhead • Collaborate with cross-functional teams to scale programs efficiently and support junior team member enablement



