CMMC Security Engineer

Apply Now β†—
🌍 RemoteπŸ“ Los Angeles, CAFULL TIME

About this role

We are looking for a CMMC Security Engineer is responsible for implementing, maintaining, and leading cybersecurity efforts to ensure compliance with the Cybersecurity Maturity Model Certification (CMMC) standards, focusing on protecting Controlled Unclassified Information (CUI) for organizations in the Defense Industrial Base (DIB).

Key Responsibilities

  • Design, implement, and monitor security controls aligned with CMMC requirements, including access controls, encryption, endpoint protection, and secure configurations.
  • Lead vulnerability assessments, scan remediation tracking, and continuous risk management across hybrid and cloud environments.
  • Support incident response, threat hunting, and forensic analysis for cybersecurity events.
  • Prepare for and facilitate CMMC assessments (self and third-party), maintain certification documentation (SSP, POA&M), and address audit findings.
  • Collaborate with compliance managers, legal/data protection officers, and operations teams to ensure continuous alignment with NIST SP 800-171/DFARS controls.
  • Oversee CMMC continuous monitoring programs and identify compliance gaps in workflows.
  • Provide security awareness training and promote a culture of cybersecurity vigilance across departments.

Required Skills

  • Deep understanding of CMMC 2.0 framework, NIST SP 800-171, and DFARS requirements.
  • Experience conducting technical assessments, vulnerability management, and implementing FedRAMP Moderate or equivalent systems for CUI.
  • Strong documentation skills for policies, procedures, and audit support.
  • Ability to communicate technical findings to both technical and non-technical stakeholders.
  • Knowledge of cloud (e.g., Azure, Microsoft 365) and on-premise security technologies.

Typical Qualifications

  • Bachelor’s degree in Information Security, Computer Science, or a related field.
  • Professional certifications such as CISSP, CISM, GIAC, or CCA/CCP (CMMC-specific certifications preferred).
  • Experience supporting DoD compliance or federal contracts is highly valued.

Job Purpose

The role ensures a secure and compliant enclave for CUI, mitigates cybersecurity risks, leads compliance projects, and prepares for third-party assessments and audits under the evolving CMMC 2.0 regulations.

Frequently Asked Questions

Is the salary disclosed for the CMMC Security Engineer position at Red Cup IT, Inc.?
The salary for this CMMC Security Engineer role at Red Cup IT, Inc. is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Is the CMMC Security Engineer job at Red Cup IT, Inc. remote?
Yes, this CMMC Security Engineer position at Red Cup IT, Inc. is remote, with team members based in Los Angeles, CA. You can work from home or anywhere in the supported regions.
Is the CMMC Security Engineer role at Red Cup IT, Inc. full-time or part-time?
This is listed as a FULL TIME position. It is posted as a CMMC Security Engineer role at Red Cup IT, Inc..
How do I apply for the CMMC Security Engineer position at Red Cup IT, Inc.?
Click the "Apply Now" button on this page. You will be redirected to Red Cup IT, Inc.'s official application portal hosted on breezy where you can submit your application directly.
When was the CMMC Security Engineer job at Red Cup IT, Inc. posted?
This CMMC Security Engineer position at Red Cup IT, Inc. was posted on Sep 6, 2026. Apply as soon as possible β€” early applications are often reviewed first.
CMMC Security Engineer
Red Cup IT, Inc.
Apply for this role β†—

You'll be redirected to Red Cup IT, Inc.'s official application page on breezy.