1

Cmmc Audit Jobs in Indiana (NOW HIRING)

Support internal audits, external audits, and third-party certification assessments (e.g., CMMC, ISO 27001, NIS2). Conduct control walkthroughs, interview stakeholders, and gather supporting ...

Support internal audits, external audits, and third-party certification assessments (e.g., CMMC, ISO 27001, NIS2). Conduct control walkthroughs, interview stakeholders, and gather supporting ...

Support internal audits, external audits, and third-party certification assessments (e.g., CMMC, ISO 27001, NIS2). Conduct control walkthroughs, interview stakeholders, and gather supporting ...

... our DNA across our audit, tax, and consulting groups. That's why we continuously invest in ... CMMC, etc.), and/or Data Privacy * Possess technical writing skills using Microsoft Office (Word ...

Cybersecurity Intern

Indianapolis, IN ยท On-site

$27 - $42/hr

... our DNA across our audit, tax, and consulting groups. That's why we continuously invest in ... CMMC, etc.), and/or Data Privacy * Possess technical writing skills using Microsoft Office (Word ...

... our DNA across our audit, tax, and consulting groups. That's why we continuously invest in ... CMMC, etc.), and/or Data Privacy * Possess technical writing skills using Microsoft Office (Word ...

... our DNA across our audit, tax, and consulting groups. That's why we continuously invest in ... CMMC, etc.), and/or Data Privacy * Possess technical writing skills using Microsoft Office (Word ...

Cmmc Audit information

What is a CMMC audit?

A CMMC audit is a formal assessment conducted to determine if an organization meets the cybersecurity requirements outlined in the Cybersecurity Maturity Model Certification (CMMC) framework. This framework was developed by the U.S. Department of Defense to safeguard sensitive information within the defense industrial base. During the audit, a certified third-party assessor evaluates the organization's policies, processes, and technical controls to ensure compliance with the specific CMMC level required for their contracts. Successfully passing a CMMC audit is mandatory for contractors and subcontractors working with the DoD. The audit process helps organizations identify gaps in their cybersecurity posture and implement necessary improvements.

What are the key skills and qualifications needed to thrive as a CMMC auditor?

To thrive as a CMMC Auditor, you need a deep understanding of cybersecurity frameworks, risk management, and compliance standards, often supported by related degrees and cybersecurity certifications such as CISA, CISSP, or CMMC Provisional Assessor. Familiarity with audit management software, NIST SP 800-171 controls, and CMMC assessment tools is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for interpreting requirements and engaging with clients. These skills ensure accurate, thorough assessments and help organizations achieve and maintain compliance with CMMC requirements.

What are some common challenges faced by professionals conducting a CMMC audit, and how can they be addressed?

CMMC auditors often encounter challenges such as varying levels of cybersecurity maturity across organizations, incomplete documentation, and resistance to change within client teams. To address these, auditors need strong communication skills to clearly explain requirements, collaborate closely with client stakeholders, and adapt auditing approaches to different organizational structures. Staying up-to-date with evolving CMMC standards and maintaining meticulous records also help ensure a thorough and efficient audit process.

What is the difference between Cmmc Audit vs Cmmc Consultant?

AspectCmmc AuditCmmc Consultant
CertificationsRequires CMMC Auditor CertificationRequires CMMC Consultant Certification
Work EnvironmentConducts assessments, audits, and compliance reviewsProvides advisory, gap analysis, and implementation support
Employer & Industry UsagePrimarily in government contracting firms needing auditsConsulting firms and contractors seeking CMMC guidance

While both roles focus on CMMC compliance, Cmmc Auditors primarily perform assessments and audits to verify compliance, whereas Cmmc Consultants offer strategic advice and support for achieving CMMC standards. Understanding these differences helps organizations choose the right professional for their cybersecurity needs.

How to become a CMMC auditor?

To become a CMMC auditor, individuals typically need a background in cybersecurity, information technology, or related fields, along with experience in security assessments. They must complete specific CMMC auditor training and certification programs approved by the CMMC Accreditation Body (CMMC-AB), which include passing exams and demonstrating knowledge of CMMC requirements and assessment procedures.

Who performs CMMC audits?

CMMC audits are performed by certified third-party assessment organizations (C3PAOs) authorized by the Cybersecurity Maturity Model Certification Accreditation Body. These auditors are trained to evaluate a company's cybersecurity practices and compliance with CMMC requirements, often requiring specific certifications and experience in cybersecurity and auditing. The process involves a thorough review of security controls, documentation, and implementation to ensure adherence to CMMC standards.

What are popular job titles related to Cmmc Audit jobs in Indiana?

For Cmmc Audit jobs in Indiana, the most frequently searched job titles are:

What job categories do people searching Cmmc Audit jobs in Indiana look for?

The top searched job categories for Cmmc Audit jobs in Indiana are:

What cities in Indiana are hiring for Cmmc Audit jobs?

Cities in Indiana with the most Cmmc Audit job openings:

Infographic showing various Cmmc Audit job openings in Indiana as of August 2026, with employment types broken down into 100% Full Time. Highlights an 91% In-person, and 9% Remote job distribution.

Manufacturing Compliance & CMMC/CPCSP Manager

ThyssenKrupp Materials NA, Inc.

South Bend, IN โ€ข On-site

$100 - $150/hr

Other

Medical, Dental, Vision, PTO

Posted 9 days ago


Job description

Job SummaryThe Manager of Manufacturing Compliance & Cybersecurity Maturity Model Certification (CMMC) / Canadian Program for Cyber Security Certification CPCSC) is responsible for developing, implementing, and sustaining regulatory compliance programs across Manufacturing, Distribution, and Value Add operations throughout the United States and Canada.This role serves as the organization's operational compliance subject matter expert, translating complex regulatory requirements into practical business processes, standard work, training, and day-to-day operational practices. The position bridges the gap between regulatory language and business execution by ensuring compliance requirements are understood, implemented, and consistently followed throughout the organization.Working cross-functionally with Operations, Engineering, Facilities, Human Resources, Trade Compliance, Information Technology, and Quality, this individual develops compliance programs, prepares facilities for certification and customer audits, conducts internal compliance audits, and drives continuous compliance readiness.This role focuses on operational compliance and implementation rather than technical cybersecurity infrastructure or Quality Management System ownership.Job DescriptionKey Accountabilities:Compliance Program ManagementLead the development, implementation, and continuous improvement of enterprise compliance programs.Translate complex regulatory requirements into practical business processes and operational procedures.Develop implementation roadmaps and ensure consistent deployment across all manufacturing, distribution, and value-added facilities.Serve as the primary business resource for interpreting compliance requirements and their application to daily operations.Monitor changes to applicable regulations and implement required business process updates.CMMC / CPCSP Program ManagementLead operational implementation and sustainment of the organization's CMMC/CPCSP compliance program.Coordinate certification readiness activities for U.S. and Canadian facilities.Prepare sites for C3PAO assessments and customer audits.Develop implementation plans and monitor overall compliance readiness.Partner with Information Technology on technical cybersecurity controls while owning the operational and facility-level implementation.Track certification milestones and ensure ongoing compliance.ITAR / CPG / EAR Operational ComplianceDevelop and implement operational processes supporting compliance with:ITAR (International Traffic in Arms Regulations)CPG (Controlled Products/Compliance Program Governance, as applicable)EAR (Export Administration Regulations)Controlled Unclassified Information (CUI) handling requirementsEnsure employees understand and properly apply export control and controlled information requirements.Develop business procedures supporting secure handling of regulated information throughout manufacturing operations.Physical Security ControlsDevelop and maintain operational standards for:Facility access controls:Physical protection of Controlled Unclassified InformationPhysical document securityVisitor management:Media protection and secure storageEmployee handling of regulated informationRestricted production areas:Document retention and destructionFacility compliance walkthroughs and operational assessmentsCompliance Internal Audit ProgramDevelop and manage the enterprise compliance audit program.Conduct internal audits supporting CMMC/CPCSP, ITAR, EAR, and other regulatory requirements.Track audit findings through corrective action and verification of effectiveness.Coordinate certification readiness assessments.Develop audit schedules and compliance metrics.Support external regulatory and customer audits.ISO 9001 / AS9100 Internal Audit SupportPartner with the Quality organization to support ISO 9001 and AS9100 internal audit activities.Provide regulatory compliance expertise during integrated audits.Assist in identifying opportunities to align compliance requirements with existing operational processes.Support audit preparation and corrective action activities related to regulatory compliance.Compliance Training & Organizational ReadinessDevelop and deliver compliance training programs for employees, supervisors, and leadership.Translate regulatory language into practical, easy-to-understand training materials.Develop work instructions, visual standards, job aids, and awareness materials.Coach site compliance champions and functional leaders.Promote a culture of compliance through communication and employee engagement.Ensure compliance training remains current with evolving regulatory requirements.Leadership & CommunicationCommunicate compliance status, risks, and readiness to executive leadership.Develop compliance dashboards and executive reporting.Coordinate enterprise compliance initiatives across multiple business functions.Build strong partnerships with Operations, Engineering, Facilities, Trade Compliance, Human Resources, Information Technology, and Quality.Meets TKMNA Employee Attributes / CompetenciesThe above is intended to describe the general content of and requirement for the performance of this job. It is not to be construed as an exhaustive statement of duties, responsibilities or requirements.Qualifications:Minimum Requirements:Bachelor's degree in Business, Manufacturing, Engineering, Operations, Compliance, or a related field.7+ years of experience in regulatory compliance, manufacturing operations, auditing, or regulated industries.Experience implementing and managing enterprise compliance programs.Knowledge of CMMC/CPCSP, NIST SP 800-171, ITAR, EAR, and Controlled Unclassified Information (CUI) requirements.Experience conducting internal compliance audits.Demonstrated ability to interpret regulatory requirements and translate them into practical business processes.Experience developing procedures, work instructions, and employee training programs.Excellent project management, organizational, and communication skills.Experience managing controlled documentation (SharePoint or similar).Ability to travel approximately 30โ€“40% throughout the United States and Canada.Preferred RequirementsCMMC Certified Professional (CCP)Experience supporting defense, aerospace, or government-contract manufacturing.ISO 9001 or AS9100 Internal or Lead Auditor certification.Experience leading multi-site compliance programs.Knowledge of Canadian Controlled Goods Program (CGP), if applicable to your operations.Job Compensation$100k-$150kBenefits OverviewWe offer competitive company benefits to eligible positions, such as:Medical, Dental, Vision InsuranceLife Insurance and DisabilityVoluntary Wellness Programs401(k) or RRSP programs with Company MatchPaid Vacation and HolidaysTuition ReimbursementAnd more!Benefits may vary based on job, country, union role, and/or company segment. Please work with your recruiter or tk representative for applicable benefits information.DisclaimerThis is to notify the general public that some individuals/entities are using the thyssenkrupp (โ€œTKโ€) name, trademark, domain name, and logo without authorization. They are posing as employees, representatives, or agents of TK and its associated/group companies. These individuals/entities are fraudulently offering jobs online through texts, websites, telephone calls, emails, or by issuing fake offer letters. They are also soliciting jobseekers to deposit money in certain bank accounts or providing jobseekers with fraudulent checks to obtain banking information.TK does not ask, solicit, or accept any monies in any form from candidates, job applicants, or potential jobseekers, who have applied to or wish to apply to TK, whether online or otherwise as a pre-employment requirement. TK bears no responsibility for money being deposited/withdrawn therefrom in response to such fake offers.Equal opportunity employer, including people with disabilities and veterans.Applicants with disabilities may be entitled to reasonable accommodation under the Americans with Disabilities Act and certain state or local laws. For those requiring assistance completing the application or the application process and request information relating to the need for accommodation, please contact reasonableaccommodation@thyssenkrupp.com.TK does not:1. Send job offers from free email services like Gmail, Rediffmail, Yahoo mail, etc.;2. Request payment of any kind from prospective jobseekers or candidates for employment;3. Authorize anyone to collect money or agree to any monetary arrangement in return for a job at TK;4. Send checks to job seekers; or5. Make job offers through third parties. In the event TK uses professional recruitment services through a third party, offers are always made directly by TK and not by any third parties.PLEASE NOTE:1. TK strongly recommends that potential jobseekers do not respond to such fake solicitations, in any manner;2. TK will not be responsible to anyone acting on an employment offer that is not directly made by TK;3. Anyone making an employment offer in return for money is not authorized by TK; and4. TK reserves the right to take legal action, including criminal action, against such individuals/entities.TK follows a formal recruitment process through its own HR department and applications are evaluated by its HR department through pre-defined processes. Please visit our official careers website at https://jobs.thyssenkrupp.com/en to view authentic job openings at TK.If you receive any unauthorized, suspicious, or fraudulent offers or interview calls, please email us at tkmna.employee.care@thyssenkrupp-materials.com. #J-18808-Ljbffr