> Markdown version of [/jobs/ext/972749-cybersecurity-project-manager](https://www.wearedevelopers.com/jobs/ext/972749-cybersecurity-project-manager). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Project Manager - **Company:** S&K GLOBAL SOLUTIONS LLC - **Location:** Blue Bell, PA, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Cyber Security, RAID, PRINCE2, Scrum Methodology, Information Technology, Tools for Reporting - **Published:** June 13, 2026 - **Apply:** https://www.dice.com/job-detail/62bc924a-bc6a-4d3a-be1c-7e4d13d16eff ## About the Role · Bachelor's degree in Information Technology, Cybersecurity, Business, Project Management, or a related field, or equivalent practical experience. · 5+ years of project or program management experience leading complex cross-functional initiatives. · Direct experience supporting CMMC 2.0, NIST SP 800-171, DFARS cybersecurity requirements, or comparable regulated compliance programs. · Strong understanding of CMMC Level 2 expectations, including protection of CUI, assessment readiness, evidence management, and remediation planning. · Experience building and managing integrated project plans with multiple workstreams across technical and non-technical teams. · Demonstrated ability to manage risks, dependencies, budgets, timelines, and stakeholder communication in a highly regulated environment. · Strong written and verbal communication skills, including the ability to translate technical compliance requirements into clear business actions. · Proficiency with project management methods, reporting tools, and governance processes. Preferred Qualifications · PMP, PRINCE2, Certified ScrumMaster, or similar project management certification. · Experience working with defense contractors, government suppliers, or organizations handling CUI. · Familiarity with C3PAO assessment preparation, SPRS submissions, and continuous compliance practices. · Knowledge of related frameworks such as NIST SP 800-171A, NIST SP 800-53, FedRAMP, ISO 27001, or risk management frameworks. · Experience coordinating cybersecurity, infrastructure, identity, endpoint, and policy remediation workstreams. · Background in audit readiness, compliance documentation, or regulated control testing. Core Competencies · Program leadership and cross-functional coordination · Compliance planning and execution discipline · Risk and issue management · Executive communication and stakeholder management · Documentation governance and evidence organization · Problem-solving and decision-making · Attention to detail and follow-through · Change management and organizational alignment Success Measures · Program milestones achieved on schedule. · Documented reduction of control gaps and timely closure of remediation items. · Assessment artifacts are complete, organized, and audit-ready. · Stakeholders are aligned on scope, ownership, and compliance priorities. · The organization achieves and sustains CMMC Level 2 readiness or certification with minimal disruption to operations. ## Description The CMMC Level 2 Project Manager leads the planning, coordination, and execution of initiatives required to achieve and maintain Cybersecurity Maturity Model Certification (CMMC) Level 2 compliance. This role partners across Information Security, Infrastructure, Application teams, Legal, HR, Procurement, and business stakeholders to deliver a structured compliance program aligned to NIST SP 800-171 requirements, Controlled Unclassified Information (CUI) protection expectations, assessment readiness, and ongoing certification maintenance., · Lead the end-to-end CMMC Level 2 program, including scope definition, project planning, governance, dependency management, risk tracking, issue resolution, and executive reporting. · Coordinate cross-functional implementation of controls aligned to NIST SP 800-171 and CMMC Level 2 requirements for systems that store, process, or transmit CUI. · Develop and maintain the integrated project plan, milestone schedule, RAID log, resource plan, and status reporting cadence. · Partner with control owners to assess current-state maturity, identify gaps, prioritize remediation activities, and track closure of deficiencies. · Drive development and maintenance of required compliance artifacts, including policies, procedures, system security plans, evidence inventories, diagrams, and assessment support documentation. · Coordinate readiness activities for internal reviews, mock assessments, self-assessments, or C3PAO-led assessments, including interview preparation and evidence validation. · Facilitate scoping decisions, boundary definition, enclave planning, and system inventory alignment to support defensible assessment readiness. · Monitor POA&M items, remediation timelines, and control implementation progress to ensure readiness targets are met. · Support SPRS-related coordination, affirmation preparation, and documentation needed for ongoing compliance activities, where applicable. · Manage vendor, consultant, and assessor engagement activities related to the compliance program. · Establish program governance forums and provide concise updates to leadership on schedule, risks, costs, dependencies, and certification readiness. · Promote sustainable compliance by embedding repeatable processes, ownership clarity, and continuous monitoring practices after certification. ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Less Is More: How Lagom and Agile Can Create Harmonious Workflows](https://www.wearedevelopers.com/videos/1993-less-is-more-how-lagom-and-agile-can-create-harmonious-workflows) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)