Home
/
Comprehensive
/
Cybersecurity Compliance Specialist - 300001346691863
Cybersecurity Compliance Specialist - 300001346691863-March 2024
Pittsburgh
Mar 31, 2026
About Cybersecurity Compliance Specialist - 300001346691863

  Cybersecurity Compliance Specialist - 300001346691863

  DESCRIPTION/RESPONSIBILITIES:Howmet Aerospace is currently in search of a Cybersecurity Compliance Specialist to join our Global Information Services (GIS) team in Pittsburgh, PA.

  This position has global (domestic and international) accountabilities for all location operating units as well as GIS worldwide. Primary purpose is to provide professional-level support for the company's cyber security initiatives, projects, and ongoing activities.

  Major Activities/Key Challenges: * Partner with Cybersecurity Maturity Model Certification (CMMC) Senior Operations Manager in all aspects of CMMC Operations Management * Facilitate design, plan and manage overall assessments including logistics and documentation release during assessments including various Compliance Assessments (self, scheduled, and on-demand), CMMC (CyberAB/Certified 3rd Party Assessment Organization (C3PAO)), Defense Industrial Base Cybersecurity Assessment Center (DIBCAC), State Dept. etc. In partnership with Corporate Communications, validate Controlled Unclassified Information (CUI)/Federal Contract Information (FCI), ensuring CUI/FCI is not within externally facing communications * Lead the quarterly Authorization to Operate (ATO) and Assessment and Authorization (A&A) meetings * Proactively plan and support CMMC control changes/updates/realignments and review the controls for applicability or re-implementation * Track and facilitate Policy/Standard/Procedure review and update cadence * Store and manage limited CUI (e.g., Assessment Results, out briefs, Reclama forms/submissions, etc.) * Track Plan of Action and Milestones (POA&Ms) and Risk, Actions, Issues & Decisions (RAID) items * Perform cybersecurity and CMMC Risk Management and Risk tracking as needed * Maintain and update Corporate Commercial and Government Entity (CAGE) code and Supplier Performance Risk System (SPRS) reporting * Manage and facilitate continuous monitoring of CMMC controls (10+ controls/month) * Provide guidance to Business Unit Assessments in collaboration with the Sr. CMMC Operations Manager * Stay up to date with cyber security policies and trends, developing mappings between different compliance program requirements and National Institute of Standards and Technology (NIST) special publications Provide expertise and interpretation of requirements (NIST, Defense Federal Acquisition Regulation Supplement (DFARS), CMMC, etc.) to different Resource Units and Business Units * Coordinate continuous monitoring of controls and updates with different technology areas (Applications, Infrastructure, Network, Security, etc.) and functional areas (Compliance, Human Resources, Internal Audit, Legal, Physical Security, Procurement, etc.) regarding CMMC * Perform other duties as assigned, aligned to attain and maintain Cybersecurity Maturity Model Certification (CMMC)

  Skills: * Leadership, Organizational skills, and discipline to build, manage, and maintain structured plans * Able to build and maintain strong, trusting collaborative relationships * Ability to create and think through complex technical problems and identify/resolve gaps * Solid decision-making skills to swiftly and objectively view and assess cyber security alternatives * Interpersonal skills to manage often difficult or highly technical conditions * Self-motivated, results driven and accountable for their actions. Capable of taking initiative to proactively problem solve and identify solutions with minimal oversight * Agile and flexible, able to pivot and react quickly and effectively to new and high priority needs * Works equally well whether independently or as part of a physical or virtual, global team * Ability to work with data of highest sensitivity in complete confidence * A team player, value working as part of a diverse workforce and inclusive work environment

  Basic Qualifications * Bachelor's degree in com uter science, Information Systems or Cybersecurity from an accredited institution or an Associate's degree with 5 years of experience in IT, with a minimum 3 years of that in cyber security disciplines * Minimum 2 years of experience with DFARS 7012, NIST 800-171 and other NIST publications * Minimum 1 year of experience with various data types such as Controlled Unclassified Information (CUI), Controlled technical Information (CTI), Federal Contract Information (FCI), International Traffic in Arms Regulations (ITAR), or Export Administration Regulation (EAR99) * Employees must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of Hire. Visa sponsorship is not available for this position

  Preferred Qualifications: * Demonstrated experience in and exposure to Compliance programs especially CMMC and DIBCAC * Experience managing security in a manufacturing environment * Security related Certifications such as CISSP, Security+, CISA * CMMC Certifications such as CMMC-RP and/or CMMC CCP * Experience with and/or robust understanding of POA&Ms, assessment processes, risk management, procedure analysis * Experience successfully implementing NIST 800-171 / CMMC / ITAR / Sarbanes-Oxley Act (SOX) security controls

  Salary Range: $110 - 125k/year approximation (Actual compensation is subject to variation due to factors such as education, experience, skillset, and/or location).

  We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Associate Director, FP&A
Description At Audible, we believe stories have the power to transform lives. It’s why we work with some of the world’s leading creators to produce and share audio storytelling with our millions of g
Quality Engineer
Description: Quality Engineer that will work with our Operational quality team. This individual will own all quality activities for their assigned product lines and may be working on multiple differe
Cloud Security Engineer (Identity Access Management/AWS/GCP/Azure)
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work
Property Manager - Commercial Property Management
The Rock Family of Companies is made up of nearly 100 separate businesses spanning fintech, sports, entertainment, real estate, startups and more. We’re united by our culture – a drive to find a bett
Sterile Processing Technician II - Sterile Processing - Full Time 12 Hour Nights (Non-Exempt) (Union)
Sterile Processing Technician II - Sterile Processing - Full Time 12 Hour Nights (Non-Exempt) (Union)Apply Keck Medicine of USC Hospital Los Angeles, California Under general supervision of the Steri
Clinical Service Assistant (US)
WARNING: Please beware of phishing scams that solicit interviews or promote work-at-home opportunities, some of which may pose as legitimate companies. Elevance Health requires a completed online app
Account Executive- CounselLink
About our Team LexisNexis® CounselLink® is the leading enterprise legal management solution designed to help corporate legal departments gain 100% visibility into their work, matters, contracts, and
Administrative Assistant
Description If your dream job is heavy on mail merging, pivot tables, and presentation design, this could be the Administrative Assistant job for you! If you're results-oriented, you might be the Adm
National Sales Lead – Ethicon US LLC
National Sales Lead – Ethicon US LLC - 2406163648W Description The National Sales Lead (NSL) will: Serve as a clinical product portfolio (primary focus on Biosurgery, Energy, Endomech) liaison on beh
Assembler I
Colder Products Company (CPC) is the leading provider of quick disconnect couplings, fittings and connectors for plastic tubing. At CPC, we believe that fluid handling should be safe and easy. We eng
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved