Careers
Work with Us
No one knows healthcare cybersecurity and compliance like Clearwater. Joining our team is an opportunity to work with the best in the industry.
Our Culture
Ours is a serious business—we wouldn’t have it any other way.
The implications of cyber threats to the health and safety of patients are profound, and we take them seriously. Our methodologies are sound, and we bring our best to what we do every day.
We operate with deep, mutual respect for our colleagues and hold professionalism in high regard.
With diverse backgrounds, we appreciate how that informs and builds our excellence as a team.
Employment Benefits
Competitive Salaries
Medical/RX
401K Benefit Programs
Disability
Flexible Time Off (FTO) policy
Life/ADD Insurance
Open Positions
Are you ready to help healthcare organizations move to a more secure, compliant, and resilient state? We’re looking for talented people who know their craft and care deeply about the success of clients, colleagues, and the healthcare industry.
Accepting Resumes
CCA Consultant
Job Type
Full-time
ABOUT US
Redspin, a division of Clearwater, is a leading provider of cybersecurity, compliance, consulting, and managed services for the Defense Industrial Base. Our solutions enable organizations to avoid preventable breaches, protect Department of Defense contractors and their data, meet regulatory requirements, and optimize cybersecurity investments.
Redspin is a recognized leader in the CMMC space. We were the first Authorized C3PAO and the first to conduct a passing JSVAP assessment. We are a trusted partner for the Fortune 500, and small to mid-size businesses.
POSITION SUMMARY
We are seeking a highly qualified and experienced Cybersecurity Maturity Model Certification (CMMC) Certified Assessor to join our team. This position is responsible for ensuring our organization meets the stringent cybersecurity standards set by the Department of Defense (DoD) in the United States. The ideal candidate will have a thorough understanding of the CMMC framework and will utilize this knowledge to facilitate comprehensive cybersecurity solutions for our company.
SPECIFIC JOB RESPONSIBILITIES
- Conduct comprehensive assessments of Defense Industrial Base (DIB) organizational networks and systems to identify any vulnerabilities and to confirm they meet the necessary CMMC level requirements.
- Work with organizations to design and implement security measures and controls, in line with CMMC standards, to protect sensitive data and systems from infiltration and cyber-attacks.
- Coordinate with various teams within an organization to develop and implement the action plans necessary to achieve CMMC compliance.
- Assist organizations with the review and update of existing security policies and procedures to align with evolving CMMC requirements and best practices in cybersecurity.
- Prepare detailed reports on the status of an organization’s CMMC compliance.
- Keep abreast of the latest cybersecurity threats and trends, as well as updates to the CMMC framework.
- Achieve utilization targets, complete projects on time and budget, and meet quality standards.
- Study, learn, test, document, execute and seek to continuously improve scalable consulting services processes to effectively deliver customer engagements while achieving a high level of customer satisfaction.
- Execute project planning, scheduling, and other coordination of internal and customer resources to conduct interviews, meetings, and presentations.
- Prepare and deliver thoughtful, insightful, and professional presentations to customers and internal Redspin stakeholders.
- Create, review and edit findings, observations, and recommendations reports.
- Become knowledgeable of Redspin’s solution and service offerings, sales process, marketing materials, contract and SOW structure, methodologies, delivery standards, work tools, and processes.
- Pursue additional education and stay current on best practices, technical skills, and tools related to the position’s duties.
- This position has significant interaction with internal and external stakeholders, including colleagues, customers, partners, subcontractors, and potential investors. This position requires a strong customer service orientation and the ability to:
- Work independently on a variety of projects simultaneously,
- Exercise good judgment and initiative to manage priorities,
- Quickly develop trusting relationships with a variety of Defense Industrial Base compliance and information system professionals,
- Pose questions and listen to customer responses effectively to draw out essential facts, data, business process descriptions, sensitivities, and perspectives, and
- Demonstrate strong organizational abilities, effective writing skills, and communications skills.
- Develop presentations with clear messages, and effective slides, and deliver these presentations to senior executives
- Lead teams of internal and external stakeholders to drive security projects forward
- Identify and manage client engagement risks and issues
Requirements
In addition to technical cybersecurity experience and skills, the qualified candidate must have demonstrated through experience that she/he has the soft skills required to drive engagement with customers. She/he must have experience successfully managing projects, meeting deadlines, and achieving high levels of quality based on standards.
QUALIFICATIONS, SKILLS, & KNOWLEDGE
- Bachelor’s degree in information technology, Computer Science, or 4+ years of equivalent experience in IT security, risk management, or compliance.
- Current certification as a Certified CMMC Professional (CCA) is preferred, or the ability to achieve CCA credential under the CMMC version 2.0 framework is required.
- Proven experience in a role focused on IT security, risk management, or compliance.
- In-depth knowledge of the CMMC framework, NIST SP 800-171, DFARS 252.204-7012 and associated Department of Defense (DoD) regulations.
- Excellent problem-solving skills and the ability to function effectively under pressure.
- Superior communication skills with the ability to explain complex security concepts to non-technical staff.
- Ability to lead projects and drive them to completion.
- Advanced knowledge of various cybersecurity technologies and solutions.
- Drive to constantly improve what and how we deliver value to our customers
- Self-starters who can work independently, seek out and leverage internal resources when needed, proactively take ownership of their work and career, and drive engagements to provide the value our customers expect
- Relevant experience and prior success leading and delivering consulting engagements
- Relevant technical training, project management training, and certifications such as CISSP
- Excellent analytic and problem-solving skills, especially in the information systems, security, and privacy space
- Highly effective verbal communications and presentation skills in a customer setting
- Excellent technical written communication skills, in particular, regarding information system, security and privacy subject matter, policies and procedures
- Experience with creating and executing repeatable work processes and procedures
- Experience with providing technical/product support services within a sales process
- Ability to learn new subject matter and context quickly and to maintain market and subject matter awareness
- Ability to understand SOWs, customer proposals, project notes, deliverables, and final reports; assimilate previous experience, relevant subject matter, data, facts, and results; and develop relevant questions of colleagues to hasten understanding scenarios, methodologies, processes, and “lessons learned.”
- Demonstrated ability to work effectively with internal and external stakeholders, including colleagues, customers, partners, subcontractors, and potential investors.
COMPENSATION & BENEFITS
- Base Salary
- Participation in Company’s Medical/RX, Disability, Life/ADD Insurance, and 401K benefit programs.
- Flexible Time Off (FTO) vacation policy
CMMC Consultant, CCP
Job Type
Full-time
ABOUT US
Redspin, a division of Clearwater, is a leading provider of cybersecurity, compliance, consulting, and managed services for the Defense Industrial Base (DIB). Our solutions enable organizations to avoid preventable breaches, protect Department of Defense contractors and their data, meet regulatory requirements, and optimize cybersecurity investments.
Redspin is a recognized leader in the CMMC space. We were the first Authorized CMMC Third-Party Assessor Organization (C3PAO) and the first to conduct a passing Joint Surveillance Voluntary Assessment Program (JSVAP) assessment. We are a trusted partner for the Fortune 500, and small to mid-size businesses.
POSITION SUMMARY
We are seeking a highly qualified and experienced Cybersecurity Maturity Model Certification (CMMC) Certified Professional to join our team. This position is responsible for ensuring organizations meet the stringent cybersecurity standards set by the United States Department of Defense (DoD). The ideal candidate will have a thorough understanding of the CMMC framework and will utilize this knowledge to facilitate comprehensive cybersecurity solutions for our company.
Applicant must meet the requirements of Department of Defense (DoD) Manual 8140.03: Applicable 612 Certifications (At minimum, must posses 1 Intermediate Certification).
SPECIFIC JOB RESPONSIBILITIES
- Conduct comprehensive assessments of Defense Industrial Base (DIB) organizational networks and systems to identify any vulnerabilities and to confirm they meet the necessary CMMC level requirements.
- Work with organizations to design and implement security measures and controls, in line with CMMC standards, to protect sensitive data and systems from infiltration and cyber-attacks.
- Coordinate with various teams within an organization to develop and implement the action plans necessary to achieve CMMC compliance.
- Clearly articulate the CMMC program to an organization’s employees at all levels to ensure understanding and adherence to cybersecurity best practices.
- Assist organizations with the review and update of existing security policies and procedures to align with evolving CMMC requirements and best practices in cybersecurity.
- Prepare detailed reports on the status of an organization’s CMMC compliance.
- Keep abreast of the latest cybersecurity threats and trends, as well as updates to the CMMC framework.
- Achieve utilization targets, complete projects on time and budget, and meet quality standards.
- Study, learn, test, document, execute and seek to continuously improve scalable consulting services processes to effectively deliver customer engagements while achieving a high level of customer satisfaction.
- Execute project planning, scheduling, and other coordination of internal and customer resources to conduct interviews, meetings, and presentations.
- Prepare and deliver thoughtful, insightful, and professional presentations to customers and internal Redspin stakeholders.
- Create, review, and edit findings, observations, and recommendations reports.
- Become knowledgeable of Redspin’s solution and service offerings, sales process, marketing materials, contract and statement of work (SOW) structure, methodologies, delivery standards, work tools, and processes.
- Pursue additional education and stay current on best practices, technical skills, and tools related to the position’s duties.
- This position has significant interaction with internal and external stakeholders, including colleagues, customers, partners, subcontractors, and potential investors. This position requires a strong customer service orientation and the ability to:
- Work independently on a variety of consulting projects simultaneously,
- Exercise good judgment and initiative to manage priorities,
- Quickly develop trusting relationships with a variety of Defense Industrial Base compliance and information system professionals.
- Pose questions and listen to customer responses effectively to draw out essential facts, data, business process descriptions, sensitivities, and perspectives.
- Demonstrate strong organizational abilities, effective writing skills, and communications skills.
- Develop presentations with clear messages, and effective slides, and deliver these presentations to senior executives
- Lead teams of internal and external stakeholders to drive security projects forward
- Identify and manage client engagement risks and issues
Requirements
In addition to technical cybersecurity experience and skills, the qualified candidate must have demonstrated through experience they possess the soft skills required to drive engagement with customers. The candidate must have experience successfully managing projects, meeting deadlines, and achieving high levels of quality based on standards.
QUALIFICATIONS, SKILLS, & KNOWLEDGE
- Bachelor’s degree in information technology, Computer Science, or 4+ years of equivalent experience in IT security, risk management, or compliance.
- Current certification as a Certified CMMC Professional (CCP) is preferred, or the ability to achieve CCP credential under the CMMC version 2.0 framework is required.
- The ability to achieve a Certified CMMC Assessor (CCA) credential under the CMMC version 2.0 framework is required.
- In-depth knowledge of the CMMC framework, NIST SP 800-171, and DFARS 252.204-7012 regulations.
- Excellent problem-solving skills and the ability to function effectively under pressure.
- Superior communication skills with the ability to explain complex security concepts to non-technical staff.
- Ability to lead projects and drive them to completion.
- Advanced knowledge of various cybersecurity technologies and solutions.
- Self-starters who can work independently, seek out and leverage internal resources when needed, proactively take ownership of their work and career, and drive engagements to provide the value our customers expect
- Relevant experience and prior success leading and delivering consulting engagements
- Relevant technical training, project management training, and certifications such as CISSP
- Excellent analytic and problem-solving skills, especially in the information systems, security, and privacy space
- Highly effective verbal communications and presentation skills in a customer setting
- Excellent technical written communication skills, in particular, regarding information system, security and privacy subject matter, policies and procedures
- Ability to learn new subject matter and context quickly and to maintain market and subject matter awareness
- Ability to understand SOWs, customer proposals, project notes, deliverables, and final reports; assimilate previous experience, relevant subject matter, data, facts, and results; and develop relevant questions of colleagues to hasten understanding scenarios, methodologies, processes, and “lessons learned.”
- Demonstrated ability to work effectively with internal and external stakeholders, including colleagues, customers, partners, subcontractors, and potential investors.
JOB BENEFITS
- Health, dental, and vision insurance with an employer contribution
- Flexible paid time off
- A generous 401(k) plan
- Certification reimbursement
- Learning and Development programs
- Social and Cultural Initiatives