See all roles

CMMC Compliance Analyst

Work from home Full-time role Hiring

Sentinel Blue is looking for a CMMC Compliance Analyst to join our Operations team. This role is ideal for someone with a strong attention to detail and a passion for helping organizations meet regulatory and security standards. Our ideal candidate is a clear communicator who can translate technical concepts into plain language, work well with both executives and engineers, and approach compliance with a collaborative mindset. This role will support our clients by reviewing documentation, validating technical configurations, assessing environments against compliance objectives, and helping build repeatable processes that lead to assessment readiness. This is a full-time position that is fully remote. Due to the nature of our work, you must be a U.S. citizen with eligibility for a clearance. No exceptions. A day in the CMMC Compliance Analyst role: The CMMC Compliance Analyst is a growth role built for someone who wants to learn the craft of compliance from the inside out. You will support active client engagements by reviewing documentation, helping validate technical controls against CMMC and NIST requirements, and building the core artifacts that drive audit readiness. Your day will include assisting with evidence collection, participating in client interviews, updating POA&Ms, and helping maintain System Security Plans, policies, and procedures. You will learn how to evaluate technical areas like access control, logging, backups, and segmentation by working alongside experienced IT and Security team members. You will not be expected to know everything on day one. You will shadow senior staff, follow established playbooks, receive hands-on coaching, and steadily take on more responsibility as your skills grow. Over time, you will develop into a confident compliance professional capable of leading assessments and advisory work. Responsibilities:

  • Receive, triage, and analyze compliance-related requests, documentation, and assessment findings, and work to resolve issues through research, evidence collection, and stakeholder coordination.
  • Support the development and maintenance of System Security Plans (SSPs), POA&Ms, policy sets, procedures, and control documentation across client environments.
  • Review client technical configurations (e.g., access controls, logging, encryption, segmentation, backup strategies) against NIST/CMMC compliance objectives and document gaps or remediation actions.
  • Communicate with clients through email, chat, meetings, and interviews to gather evidence, clarify processes, and maintain progress visibility on compliance deliverables.
  • Assist in the management, implementation, and validation of compliance controls across CMMC, NIST 800-171, and/or DFARS 7012.
  • Contribute to internal compliance documentation templates, client-facing guidance materials, and evidence repositories that streamline audit readiness.
  • Support the creation of compliance reports, risk assessments, briefs, and executive presentations that translate findings into clear business narrative. What We Can Offer: Sentinel Blue is a young company with a focused mission: We’re bringing enterprise-class cybersecurity to small and medium sized businesses. Frankly, we’re pushing the envelope of how things are done and constantly seeking innovative ways to meet that mission. The pace is fast, and we’re always learning new things. This is a great place if you want to expose yourself to new and emerging technologies, want to be challenged, and want to build your skills. Further, success in this role can quickly transition into a team leadership role. The right person will find themselves in a fun, dynamic environment, working on interesting problems and making a real difference. You will be required to achieve a Security+ certification in the first 2 months of hire; we’ll cover your certification costs and provide paid time for you to study! Requirements:
  • U.S. citizenship - by nature of our work with the defense industry, all employees must be eligible for a Secret clearance.
  • 2-5 years of experience in information security, IT compliance, cybersecurity auditing, GRC, or similar roles.
  • Demonstrated ability to lead and make decisions on compliance-related matters, including interpreting control intent, assessing evidence, and determining whether control requirements have been met.
  • Experience reviewing and developing policies, procedures, SSPs, POA&Ms, risk assessments, or similar compliance documentation.
  • Working knowledge of technical environments such as IAM, endpoint protection, logging/monitoring, vulnerability management, segmentation, and backup/recovery strategies.
  • Strong written and verbal communication skills, especially when translating technical information into actionable compliance guidance.
  • Ability to work independently, manage multiple client tasks, and follow structured workflows to drive compliance activities to timely completion.
  • CompTIA Security+ certification is required in the first

Apply tot his job Apply To this Job

You might like

[Remote] Security Engineer - Infrastructure - (Remote in Pittsburgh)

Work from home Full-time role

Security Engineer - Product & Production Infrastructure​/Product Security Remote

Work from home Full-time role

Senior Data Security Engineer, Big ID Deployment Lead

Work from home Full-time role

Software Engineer, Defensive Security Agent Engineering

Work from home Full-time role

Senior Security Operations Center (SOC) Manager, Remote (copy)

Work from home Full-time role

Staff/Principal Software Engineer, Lead (Defense & Security) (Remote)

Work from home Full-time role

Specialist SEM & Paid Search

Work from home Full-time role

Lead Application Penetration Tester (DC, MD, VA)

Work from home Full-time role

Senior Software Engineer, Security Products

Work from home Full-time role

Senior Consultant - Commercial Content

Work from home Full-time role

[Remote] Project Manager Supervisor (Legal Operations)

Work from home Full-time role

Entry Level AP/AR Specialist

Work from home Full-time role

Graphic Designer | Red Sage Communications Inc. | Handshake

Work from home Full-time role

Technical Product Manager (Data Modernization)

Work from home Full-time role

Corporate Trainer​/Instructor - Onsite; remote Warwick, RI

Work from home Full-time role

Experienced Hurricane Disaster Relief Customer Service Representative – Remote Opportunity with blithequark

Work from home Full-time role

Cell Therapy Manufacturing Specialist

Work from home Full-time role

User Experience Athlete - Call Support, Night Shift (Remote)

Work from home Full-time role

SR ASSOC, INTERNAL AUDIT

Work from home Full-time role

Cyber Incident Response Analyst, 3rd Shift

Work from home Full-time role