Skip to main content
Tallo logoTallo logo
Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

CMMC Compliance Analyst

Job

OREGON EMPLOYMENT DEPARTMENT

Remote

Part-Time

Posted 2 weeks ago (Updated 2 weeks ago) • Actively hiring

Expires 6/28/2026

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
72
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Job Listing ID:
4499012
Job Title:
CMMC Compliance Analyst Application Deadline:
Open Until Filled
Job Location:
Salem
Date Posted:
05/26/2026
Hours Worked Per Week:
Not Provided Shift:
Not Provided Duration of Job:
Either Full or Part Time, more than 6 months You may contact this employer directly. (Obtain the contact information to print or add to your jobs.)
Job Summary:
Lumen is the trusted network for the AI-powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high-performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities. At Lumen, you'll work on infrastructure customers rely on today and build for what's next, where performance, security, and resilience matter. This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you're ready to take ownership, deliver meaningful impact, and help shape the future of AI-ready connectivity, join us today. The Role The CMMC Compliance Analyst must have advanced practical experience in managing all phases of security integration to assist the Security Manager and Director with managing the personnel, physical, information, and information systems (IS) security requirements for DoD, SCI and SAP activities as applicable to the program supported. They will write all standard operating procedures, maintain fixed facility checklists (FFCs), and author systems security plans in accordance with ICDs, DCIDs, and NISPOM requirements. They will serve as a liaison to government program security officers (PSO), information systems security counterparts, and Lumen internal and external clients. Conduct initial and recurring training, prepare and process access requests, conduct indoctrinations and debriefings, and investigate and report security violations. Conduct self-inspections, maintain associated security paperwork and media control records, conduct virus scanning and computer security briefings, and provide data containment support, including coordinating clean-up efforts and reporting requirements. Location This is a remote opportunity open to candidates located anywhere in the U.S. The Main Responsibilities Execute continuous monitoring activities across a CMMC L2 enclave, ensuring ongoing compliance with
NIST SP 800-171
controls Maintain audit-ready evidence repositories, including policies, procedures, and technical artifacts Perform periodic control assessments, validation, and remediation tracking Support POA& M management, including identification, documentation, and closure of findings Leverage GRC tools to manage controls, track compliance status, and maintain evidence Collaborate with system owners, engineers, and ISSOs to ensure proper control implementation and sustainment Prepare for and support C3PAO assessments, surveillance reviews, and re-certification activities Track and report compliance status, risks, and metrics to leadership Assist in updating SSPs, network diagrams, data flow diagrams, and supporting documentation What We Look For in a
Candidate Required Qualifications:
CMMC Registered Practitioner Advanced (RPA) CMMC Certified Professional (CCP) certification within the first six months Demonstrated experience supporting a successful CMMC Level 2 C3PAO assessment Experience with continuous monitoring, audit preparation, and compliance documentation Strong working knowledge of
NIST SP 800-171
controls and assessment objectives Working knowledge of FAR, DFARS, and CMMC-related cybersecurity and contracting requirements for Defense Industrial Base contractors. Familiarity with evolving CMMC requirements Experience integrating GRC platforms into continuous monitoring workflows and reporting Familiarity with POA& M management and re...
Job Classification:
Information Security Analysts Access our statewide or regional occupation report for more information about wages, employment outlooks, skills, training programs, related occupations, and more. Compensation
Salary:
Not Provided Job Requirements
Experience Required:
 See Job Summary
Education Required:
None
Minimum Age:
N/A Gender:
N/A