Job Description
Work 100% remote helping DoD contractors pass CMMC audits and ship audit-ready documentation.
Role: Cybersecurity Compliance Consultant
Location/Type: U.S. • Remote
Pay: $100,000–$125,000
Schedule: Full-time
What you’ll do
- Lead CMMC policy development across all 14 domains
- Write SSPs and manage POA&Ms end-to-end
- Run compliance sprints with 5–10 clients (clear ownership)
- Map evidence to NIST 800-171 controls (audit-ready)
- Manage GRC platform and client progress dashboards
- Translate technical controls into clear client actions
- Coordinate evidence collection with technical teams
Must-haves
- 3–5 years cybersecurity GRC, IT audit, or IA
- Deep NIST 800-171 + CMMC knowledge
- Security+ certification
- Strong technical writing (audit-defensible docs)
- Manage multiple clients at once
- U.S. Citizenship required
Nice to have
- CCP or RP certification (or ability to obtain fast)
- Experience with FutureFeed, Apptega, or Purview
- Prior C3PAO audit support
- SSP or POA&M ownership
Perks & pay
- Pay: $100,000–$125,000
- Benefits: health, dental, vision, 401(k), PTO
- Fully remote work setup
- Work on real CMMC audits (not theory)
- Growth with a scaling GovCon consulting team
Schedule & setup
- Full-time, remote
- U.S. time zones
- No travel required
- Tools: GRC platforms, documentation-heavy workflows
Impact & growth
Your work gets clients audit-ready.
You turn messy systems into compliant, defensible environments.
Own documentation and client outcomes from day one.
Motivation fit
You like clear ownership.
You can manage multiple clients without hand-holding.
At Urrly, fairness matters. We use AI to review every application against the same clear requirements for the role. This means every candidate is evaluated on job-related factors like skills, certifications, and experience—not on personal attributes such as gender, race, age, or background. Our goal is to create a more objective, consistent, and equal opportunity hiring process for all applicants.
Apply Today to work remotely while owning real CMMC compliance work end-to-end.











