CMMC Auditor
Koop Technologies
CMMC Auditor (Compliance Expert)
Company: Koop Technologies
Position: CMMC Compliance Expert
Type: Full-Time
Location: New York, NY (in-person or hybrid)
Who We Are:
Koop Technologies (“Koop”) helps trailblazing tech companies commercialize faster by taking care of compliance, security, and insurance requirements in a single, seamless GRC platform. Startups in AI & Software 2.0, Robotics, Energy & Climate, Aerospace & Defense, Manufacturing, and more verticals rely on Koop daily to satisfy contractual requirements from customers and the government.
This decade will be defined by Deep Tech. As Aerospace & Defense, dual-use, and federal-adjacent startups scale, they face increasingly stringent cybersecurity requirements — especially under CMMC and NIST 800-171. These requirements are complex, resource-intensive, and often misunderstood.
Koop’s mission is to simplify compliance for the most technically ambitious companies in the world while protecting society from a new generation of risks.
We are post-product-market-fit, growing rapidly, and expanding our compliance team to support product development and customer success in the CMMC space. We value strong work ethic, first-principles thinking, creative problem-solving, excellent communication skills, and technical depth.
Job Description:
We are looking for a senior CMMC Compliance Expert / Manager who will play a pivotal role in both:
- Supporting customers pursuing CMMC certification, and
- Building CMMC automation capabilities into Koop’s GRC platform.
This is a hybrid IC + Manager role. You will directly manage customer engagements and oversee a growing team of CMMC analysts, while also shaping how CMMC is operationalized and automated inside our product.
Working closely with Product, Engineering, Sales, and Leadership, you will:
- Lead end-to-end CMMC readiness engagements for Aerospace & Defense and federal-adjacent customers
- Guide customers through NIST SP 800-171 implementation, SSP development, POA&Ms, gap assessments, and audit preparation
- Interpret and operationalize CMMC Level 1 and 2 requirements into scalable, repeatable workflows
- Manage and mentor a team of CMMC analysts
- Design standardized methodologies, templates, and playbooks for CMMC implementation
- Translate regulatory requirements into product specifications for automation within Koop’s GRC platform
- Collaborate closely with Engineering to embed CMMC workflows, control tracking, evidence collection, and reporting into the product
- Act as a subject matter expert in CMMC and defense compliance frameworks
- Support go-to-market initiatives by contributing to thought leadership, webinars, customer conversations, and product collateral
- Stay current with CMMC rulemaking, DoD guidance, and evolving assessment standards
You will join a team of product builders, engineers, and compliance professionals building the pioneering GRC platform for Deep Tech and Defense startups.
Job Requirements:
- Deep hands-on experience with CMMC Level 1 and 2 and NIST SP 800-171 implementation
- Experience building and managing SSPs, POA&Ms, and performing readiness assessments
- Strong familiarity with DFARS 252.204-7012 and related DoD cybersecurity requirements
- Experience preparing organizations for third-party C3PAO assessments
- Proven experience managing compliance engagements and mentoring junior analysts
- Ability to translate regulatory language into practical, implementable controls
- Strong documentation skills and attention to detail
- Founder mindset, strong ownership, and ability to operate in a fast-paced startup environment
- Excellent written and verbal communication skills
Qualifications:
- 8+ years of cybersecurity or compliance experience, with significant exposure to defense or federal contracting environments
- Prior experience in a consulting, advisory, or in-house compliance leadership role
- Bachelor’s or Master’s degree in Cybersecurity, Information Systems, Engineering, or related field
- Relevant certifications preferred (e.g., CISSP, CISM, CCP, CCA, or equivalent)
- Experience working with early-stage or high-growth companies is a strong plus
Administrative:
- In-person or hybrid role in New York City
- Competitive salary and generous equity
- Health, dental, and vision package
- Flexible time off and paid holidays
- Paid professional development (courses, certifications, conferences)
- Tremendous growth opportunity (professionally, personally, and financially)
Why Koop Technologies?
- A rare opportunity to shape how CMMC compliance is automated for the next generation of Aerospace & Defense startups
- Direct impact on product development and customer success at an early-stage, high-growth company
- Work with an energetic, high-caliber team across product, engineering, compliance, and sales
- Help define best practices for CMMC automation and defense cybersecurity compliance
- Join a mission-driven company protecting the world from a new generation of technological risks
How to Apply:
Please apply on our website or on LinkedIn. For additional information, please contact talent@koop.ai.
Equal Opportunity:
Koop Technologies is an equal opportunity employer, inclusive of people from all walks of life who are willing and able to commit themselves fully to the role.