Job Summary :
Mission Multiplier is seeking a detail-oriented Junior GRC CMMC Analyst to support our CMMC 2.0 Level 2 readiness and compliance initiatives. The analyst will assist in maintaining our GCC enclave documentation, control evidence packages, and compliance tracking to support internal governance and our clients' compliance needs. This is an entry-level role with strong mentorship from senior GRC staff and exposure to real-world Department of Defense (DoD) cybersecurity requirements.
Job Description :
- Support the development, review, and maintenance of System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), and CMMC evidence packages.
- Assist with collection, review, and organization of technical control evidence (screenshots, audit logs, policy documents).
- Maintain the compliance dashboard and update control status as remediation is completed.
- Coordinate with IT, Security Operations, and Engineering to document configuration baselines and enforce change management processes.
- Support quarterly access reviews, device inventory checks, and privileged account audits.
- Help facilitate tabletop exercises and track incident response documentation.
- Research CMMC / NIST 800-171 updates and maintain compliance library with current regulations.
- Assist in preparing for self-assessments, DIBCAC High assessments, and customer audits.
- Draft and edit policy & procedure documents under guidance of senior staff.
- Participate in customer scoping calls and capture compliance requirements
Qualifications :
Bachelor's degree in Cybersecurity, IT, or related field (or equivalent work experience).Familiarity with NIST SP 800-171, CMMC 2.0, or other compliance frameworks.Basic understanding of security principles : access control, logging, encryption, vulnerability management.Proficiency with Microsoft 365 GCC tools (SharePoint, Teams, Word, Excel, PowerPoint).Strong attention to detail and organizational skills.Excellent written and verbal communication skills.Experience with GRC tools (e.g., IntelliGRC, eMASS, or similar) preferred.Knowledge of Azure security features, Microsoft Defender, and Intune preferred.Familiarity with FedRAMP, DFARS 252.204-7012, and DoD RMF process preferred.CompTIA Security+ or ISC2 CC certification (or willingness to obtain within 6 months) preferred.Additional Details :
NoneABOUT MISSION MULTIPLIER
Mission Multiplier is a certified small business headquartered in Huntsville, Alabama. We multiply the impact that clients can make against their mission objectives by providing cybersecurity subject matter expertise and thought leadership. Our goal is to multiply the successes that our clients achieve against their respective missions, while simultaneously enabling the missions of our employees – with the end result of securing and enriching the communities we serve – through the delivery of innovative cybersecurity solutions.
EEO STATEMENT
Mission Multiplier is community-focused first and commits to being an EEO employer. Because of this we do not and will never discriminate on the basis of race, color, religion, sex (including pregnancy), sexual orientation, gender identity, national origin, age (40 or older), disability, genetic information, or any other protected class characteristic protected by federal, state, or local law. If you require an accommodation, please email our Human Resources department at .
BENEFITS
Mission Multiplier offers a wide range of benefits, including :
Group Life InsuranceVoluntary Life / AD&D InsuranceMedical InsuranceSecondary / GAP InsuranceDental CoverageVision CoverageShort-Term Disability InsuranceLong-Term Disability InsuranceAccident InsuranceCritical Illness Insurance401k (w / employer match) after six (6) months of continuous serviceMission Multiplier is committed to doing our due diligence in the job application process. Job applicants should be aware that background checks might be performed in order to receive subsequent employment with the company.
Job Posted by ApplicantPro