✦ Luna Orbit — Cybersecurity

Senior Cybersecurity Analyst - CMMC & DoD Compliance

at General Motors

📍 2 Locations Hybrid Posted March 14, 2026
Type Full-Time
Experience mid
Exp. Years 5+ years
Education Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or equivalent practical experience
Category Cybersecurity

This role involves leading CMMC compliance efforts for government contracts, working with cross-functional teams to ensure security controls are implemented and audit-ready evidence is maintained.

  • Lead government cybersecurity compliance
  • Execute self-assessments and audits
  • Coordinate control validation with teams
  • Manage security exceptions and POA&Ms
  • Build audit-ready evidence packages

The position requires expertise in cybersecurity frameworks such as CMMC, NIST SP 800-171, and DFARS, with experience in security control implementation, audit preparation, and evidence collection across on-premises and cloud environments.

The ideal candidate is a mid-level cybersecurity analyst with at least 5 years of experience supporting government and regulated cybersecurity environments. They possess strong knowledge of security frameworks like CMMC and NIST, and have experience managing audit evidence and compliance efforts.

Cybersecurity experience in regulated environmentsSupporting federally regulated cybersecurity requirementsPreparing for government assessmentsUnderstanding of security frameworks (CMMCNISTDFARSFAR)Control implementation and audit evidence collection
Security clearanceCloud securityAudit readiness toolsSecurity compliance frameworks
GRC toolsAudit management platformsSecurity information and event management (SIEM)
CybersecurityCMMCNIST SP 800-171DFARSFARDoD cybersecurity requirementsIAMRBACMFAWindows securityLinux securityFirewall rulesetsVPNZTNANACDNS securityEDRVulnerability managementSIEMLog management
CMMCCybersecurityNIST SP 800-171DFARSFARDoD cybersecurity requirementsIdentity & Access ManagementIAMRBACMFAWindows securityLinux securityGPOIntunefirewall rulesetsVPNZTNANACDNS securityEDRVulnerability managementSIEMLog managementAudit readiness
CommunicationTeam coordinationAnalytical thinkingRemediation managementAudit preparation
Industry Government/Public Sector
Job Function Cybersecurity compliance and audit readiness for government contracts
Role Subtype Cybersecurity
Tech Domains Cybersecurity
Clearance Required Obtained security clearance
Visa Sponsorship Not Specified
CybersecurityCMMCNIST SP 800-171DFARSFARDoD cybersecurity requirementsAudit readinessControl implementationGRCIAMRBACMFAWindows securityLinux securityFirewall rulesetsVPNZTNANACDNS securityEDRVulnerability managementSIEMLog managementDoD cybersecurity

Lack of experience in regulated government environments, No security clearance, Insufficient knowledge of CMMC or NIST frameworks, Unwillingness to work in hybrid mode

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile