Point your AI agent at freehire and let it find you a job.

Get the CLI →

Cybersecurity & Compliance Lead

Discussion

Summary

Oversee CMMC certification readiness (NIST 800-171/800-53, DFARS) and manage enterprise security infrastructure operations including firewalls, VPNs, and EDR in an on-site defense contractor environment.

Cybersecurity & Compliance Lead

Position Overview

One of our clients is seeking a Cybersecurity & Compliance Lead to oversee CMMC management and security infrastructure operations.

Key Responsibilities

1. CMMC Management

  • Lead CMMC Level 2 certification readiness and operational management by complying with NIST SP 800-171, NIST SP 800-53, and DFARS requirements

  • Validated and enhance system architectures and technical security controls to ensure compliance with CMMC standards for protecting CUI (Controlled
    Unclassified Information)

  • Design and manage a supply chain cybersecurity risk assessment framework to identify, evaluate, and mitigate third-party security risks

2. Security Infrastructure & Operations

  • Deploy and operate enterprise security solutions (e.g., Firewalls, VPNs, EDR, etc.)

  • Establish and manage the lifecycle of security policies

  • Proactively manage vulnerabilities and conduct real-time log monitoring to detect and respond to security threats

Key Qualifications

  • Citizenship: U.S. Citizen with the ability to obtain and maintain a U.S. Government Security Clearance (Secret or above), as required by defense contract obligations

  • Education: Bachelor’s degree in cybersecurity, computer science, or a related IT field

  • Experience: 10+ years of experience in cybersecurity

  • Technical Competence: High-level understanding of enterprise security tools (e.g., Firewalls, VPNs, EDR, etc.) and architectures

Preferred Skills

  • Certifications: Cybersecurity certifications (e.g., CISSP, CISA) and CMMC-related credentials (e.g., CCA, CCP)

  • Industry Experience: Prior work experience within the Defense Industrial Base (DIB) or with major federal and defense contractors

  • Cloud Expertise: Hands-on experience building and securing defense security architectures within cloud environments (e.g., AWS GovCloud, Microsoft GCC High)

  • Audit Experience: Proven experience successfully undergoing and completing official CMMC C3PAO audits

Additional Information

  • Employment Type: Full-Time, On-site

  • Location: Arlington, Virginia

Interview Process

Resume Screening → Interview (1st/2nd) → Reference Check → Conditional Offer → Background Check → Final Hire

Why work at BTI?

We’re committed to creating a workplace where employees feel valued, supported, and empowered to grow. Our team benefits from competitive compensation, comprehensive health and wellness offerings, and opportunities for professional development. We are proud to be an equal opportunity employer and make all employment decisions without regard to race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, genetic information, veteran status, or any other legally protected status.

We comply with all applicable federal, state, and local employment laws, including those related to fair hiring practices, pay transparency, workplace safety, and reasonable accommodations. We are dedicated to maintaining an inclusive environment where everyone has the opportunity to succeed and contribute meaningfully.

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available