2

Cmmc Remote Jobs in Georgia (NOW HIRING)

... a remote contract engagement. In this role, you will serve as the primary driver of the ... Manage audit and assessment activities including SOC 2, ISO 27001, NIST CSF, CMMC, or equivalent ...

This is a fully remote position open to Contract or Full-Time candidates. Key Responsibilities ... NIST CSF, NIST 800-53, ISO 27001, SOC 2, or CMMC * Demonstrated experience supporting audit cycles ...

AWS Cloud Engineer

Atlanta, GA ยท Remote

$53.50 - $71.75/hr

Remote About the Role: Merci Technologies is seeking an AWS Cloud Engineer to design, build, and ... Experience working in compliance-driven environments (SOC 2, CMMC, HIPAA) a plus What You Will ...

Lead Engineer (Azure)

Atlanta, GA ยท On-site +1

$98K - $132K/yr

Join a recognized leader in government and cloud security (FedRAMP 3PAO, CMMC C3PAO, Microsoft ... remote and hybrid options What's in it for you: - Working with an industry leader : Be part of a ...

... CMMC, FedRAMP, NIST CSF, and GDPR. * Develop draft policies and procedures, reports, and other ... remote and hybrid options What's in it for you: - Working with an industry leader : Be part of a ...

Cmmc Remote information

What are the key skills and qualifications needed to thrive as a CMMC Remote assessor?

To thrive as a CMMC Remote Assessor, you need a strong understanding of cybersecurity frameworks, auditing principles, and the CMMC (Cybersecurity Maturity Model Certification) requirements, often supported by relevant certifications such as CMMC-AB Certified Assessor or similar credentials. Familiarity with compliance management tools, secure file-sharing platforms, and remote assessment technologies is essential. Excellent communication, attention to detail, and analytical thinking are critical soft skills for interpreting complex security controls and collaborating with client organizations. These skills ensure accurate, thorough remote assessments and help organizations achieve and maintain required cybersecurity standards.

What is the difference between Cmmc Remote vs Cmmc Onsite?

AspectCmmc RemoteCmmc Onsite
Work EnvironmentRemote, from any locationOn-site, at designated facilities
CertificationsSame CMMC certifications requiredSame CMMC certifications required
Employer & Industry UsageUsed by organizations with remote teams in cybersecurity and complianceUsed by organizations requiring on-site security assessments
Work TasksRemote compliance assessments, documentation, and auditsOn-site security evaluations and physical assessments

The main difference between Cmmc Remote and Cmmc Onsite lies in the work environment. Cmmc Remote professionals perform compliance tasks from any location, offering flexibility, while Cmmc Onsite roles require physical presence for assessments. Both roles demand the same certifications and serve similar industry needs, but the work setting varies based on client requirements and job specifics.

What is a CMMC Remote?

A CMMC Remote job refers to a position in which professionals work remotely to help organizations achieve and maintain compliance with the Cybersecurity Maturity Model Certification (CMMC) standards. These jobs typically involve assessing cybersecurity practices, preparing documentation, conducting virtual assessments, and advising on compliance strategies for contractors in the defense supply chain. Remote CMMC roles can include consultants, assessors, project managers, or compliance specialists, and enable organizations to access expertise regardless of geographic location. The work is essential for companies aiming to meet Department of Defense (DoD) cybersecurity requirements.

What are the most common challenges faced by professionals working in a remote CMMC compliance role?

Professionals in remote CMMC compliance roles often encounter challenges related to communication and collaboration, especially when coordinating with multiple departments to ensure cybersecurity standards are met. Remote work can make it more difficult to access sensitive systems securely and to conduct in-person assessments or interviews with stakeholders. Staying updated on evolving CMMC requirements and maintaining clear documentation can also be challenging without direct office resources. Successful candidates typically leverage secure collaboration tools, proactive communication, and well-structured workflows to overcome these obstacles.
What cities in Georgia are hiring for Cmmc Remote jobs? Cities in Georgia with the most Cmmc Remote job openings:
Infographic showing various Cmmc Remote job openings in Georgia as of August 2026, with employment types broken down into 3% As Needed, 90% Full Time, 3% Part Time, and 4% Contract. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution.

GRC Manager

Merci Technologies - Talent

Atlanta, GA โ€ข Remote

Full-time

Re-posted 15 days ago


Job description

About the Role

Merci Technologies is seeking an experienced GRC Manager to lead governance, risk, and compliance initiatives for one of our enterprise clients on a remote contract engagement. In this role, you will serve as the primary driver of the organization's GRC program — overseeing policy development, risk assessments, audit readiness, and regulatory compliance across a complex technology environment.

The GRC Manager will work closely with legal, IT security, operations, and executive leadership to ensure the organization maintains a strong and defensible compliance posture while enabling business objectives.

Responsibilities

  • Lead the design, implementation, and ongoing management of the enterprise GRC program including policies, standards, and procedures
  • Conduct and oversee enterprise risk assessments, identify control gaps, and develop risk treatment plans aligned to business priorities
  • Manage audit and assessment activities including SOC 2, ISO 27001, NIST CSF, CMMC, or equivalent frameworks
  • Develop and maintain the organization's risk register, tracking remediation progress and reporting status to senior leadership
  • Collaborate with IT, legal, and business teams to ensure compliance with applicable regulations including GDPR, CCPA, HIPAA, or industry-specific requirements
  • Oversee third-party vendor risk management activities including assessments, due diligence, and ongoing monitoring
  • Develop and deliver security awareness and compliance training programs for internal stakeholders
  • Prepare executive-level reports, dashboards, and presentations on risk posture, compliance status, and program maturity
  • Mentor and guide junior GRC analysts and contribute to team capability development
  • Stay current on emerging regulatory developments and industry best practices and translate them into actionable program updates

Required Qualifications

  • 7–10 years of experience in GRC, information security, or risk management roles with at least 2 years in a leadership or management capacity
  • Deep knowledge of GRC frameworks and standards including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CIS Controls
  • Hands-on experience managing compliance programs across regulated industries such as healthcare, finance, energy, or government
  • Strong understanding of third-party and vendor risk management practices
  • Experience leading internal and external audit engagements from preparation through closure
  • Excellent written and verbal communication skills with demonstrated ability to present to executive and board-level audiences
  • Strong project management skills with ability to manage multiple concurrent initiatives in a remote environment
  • Must be legally authorized to work in the United States without employer sponsorship

Preferred Qualifications

  • Active certifications such as CISA, CRISC, CISM, CISSP, or ISO 27001 Lead Auditor
  • Experience with GRC platforms such as ServiceNow GRC, Archer, OneTrust, or equivalent
  • Familiarity with CMMC, NERC CIP, or FedRAMP compliance requirements
  • Experience supporting M&A security due diligence or post-merger integration activities
  • Background working in a managed services or consulting environment