Fortreum is a trusted leader in cloud and cybersecurity services, ranked among the Top 5 FedRAMP Third Party Assessment Organizations (3PAO). With the addition of Kovr.AI, we have expanded our capabilities to include advanced cyber risk quantification and analytics, enabling organizations to better understand, measure, and communicate risk. Together, we deliver independent, third-party, vendor-agnostic regulatory assessment and advisory services, alongside advanced cybersecurity offensive and compliance technical solutions. Our comprehensive service portfolio spans regulatory compliance frameworks including FedRAMP, CMMC, FISMA, SOC, PCI, ISO, and HIPAA.
Working with Fortune 500 companies and leading cloud service providers, weâve built our reputation on service-delivery excellence and an unwavering commitment to client success. Our continued rapid growth creates exceptional opportunities for driven professionals to make their mark in the cybersecurity industryâguided by our core values: quality above all, a customer-driven mindset, autonomy, and personal accountability.
The Opportunity
On our team, you will have the opportunity to work with the best and brightest in the field. Fortreum team members have supported the biggest cloud providers in the world, and you will have the opportunity to work with the best. We are growing rapidly and are looking for candidates with a background in performing security assessments in support of CMMC, FedRAMP and NIST-based frameworks to support our growing customer base.
Key Responsibilities
This role will specialize in CMMC and NIST 800-171, both in advisory capacity and assessment activities. Specifically, you would work closely with all members of the team supporting one or all the following work activities:
Conducting interviews of key stakeholders and technical personnelÂ
Performing technical tests alongside security engineersÂ
Recording meeting minutes and maintain work papersÂ
Maintain a consistent writing style and approach to documenting the results of the security assessmentÂ
Collaborate with delivery team members to drive customer satisfaction and meet project deliverablesÂ
Ensure quality products and services are delivered on time and within allotted hoursÂ
Establish and maintain positive collaborative relationships with clients and stakeholdersÂ
Continuous professional development in pursuing industry specific certificationsÂ
Consistently work to improve assessment interviewing techniques to establish efficiencies in gathering required informationÂ
Prepare deliverables and conduct peer-review of team memberâs deliverablesÂ
Perform project out-briefs with clients to notify them of the outcome of their compliance activitiesÂ
Manage priorities, tasks, and assigned hours on projects to achieve delivery utilization targetsÂ
This is a customer facing role. Travel is expected to be limited in nature; however, you may be required to travel to client locations and deliver professional services.Â
Basic Qualifications
Bachelorâs Degree or equivalent job experience
5+ years of professional services experience
3 years of assessment experience leveraging NIST SP 800-171
Have an Active DoD Secret Clearance  or a fully adjudicated T3
Proficient in Microsoft 365 product suite
CMMC LCCA or CCA certification
One of the following certifications:
Certified Penetration Testing Engineer (CPTE)
Certified Information Security Manager (CISM)
Certified Chief Information Security Officer (CCISO)
Certified Information Systems Security Professional, Information Systems Security Engineering Professional (CISSP-ISSEP)
Federal IT Security Professional-Auditor (FITSP-A)
GIAC Cloud Security Automation (GCSA)
GIAC Security Leadership Certification (GSLC)
Cybersecurity Analyst (CySA+)
GIAC Systems and Network Auditor (GSNA)
Certified Information Systems Auditor (CISA)
Certified Information System Security Professional (CISSP)
Certified Information Systems Security Officer (CISSO)Â
Preferred Skills
Ability to quickly take on new technologies and concepts
Ability to manage multiple priorities simultaneously
Proven analytical and problem-solving skills
Ability to develop and maintain strong relationships with team members and clients
Comfortable supporting fast-paced team environments
Advanced technical certifications, such as: AWS solutions architect, Google cloud engineer, Microsoft solutions architectÂ
What Fortreum Offers
We offer a competitive compensation package, where you will be rewarded based on your performance/outcomes and recognized for the value you bring to our business. Our benefits package includes medical insurance, dental insurance, vision insurance, 401K plan with a 4% match, company paid short-term disability, company paid long-term disability, company paid AD&D and life insurance, flex time off, annual bonuses, training stipends, certification reimbursements, access to over 30,000 free online training courses, personal cell phone allowance, new hire and annual home office stipend, spot awards and eleven paid holidays.
An Affirmative Action and Equal Opportunity Employer
Fortreum is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If youâd like to view a copy of the companyâs affirmative action plan or policy statement, please email hr@fortreum.com. If you have a disability and you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please e-mail hr@fortreum.com or call 703-594-1460. This email and phone number is created exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. Only messages left for this purpose will be returned. Messages left for other purposes, such as following up on an application or technical issues not related to a disability, will not receive a response.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
fortreum