Ascera

SP6 is a niche consulting and software firm with expertise in two overlapping yet distinct domains: Security and cyber compliance

Private Company
ShareTweet

Open Positions3

RemoteFull-TimeCybersecurity CompliancePosted
  • Lead cybersecurity gap assessments aligned with NIST SP 800-171 and CMMC.
  • Support day-to-day engagements for external clients in the Cyber Risk & Compliance practice.
  • Assist clients with FedRAMP, DFARS 7012, CMMC, and NIST 800-171 compliance initiatives.
  • Consult with clients to gather requirements and advise on security solutions to mitigate risks.
  • Translate complex regulatory requirements into business processes and security controls.
  • Articulate and defend IT controls testing approach and perform testing of design effectiveness.
  • Conduct formal assessments of organizations using the CMMC assessment process (CAP).
  • Interview key personnel to understand implementation of cybersecurity practices.
  • Evaluate sufficiency and adequacy of evidence to verify implementation.
  • Prepare all documentation for eMASS submission for certification.
Risk Management
Showing 1 of 3 positions

About Ascera

SP6 is a niche consulting and software firm with expertise in two overlapping yet distinct domains: Security and cyber compliance. SP6’s legacy expertise is with log management and security analytics, as well as analytics for technology operations. SP6 emerged as one of the leading North American partners of Splunk, recognized by Gartner as the leader in log management, security analytics (including SIEM), and data analytics. SP6 is also a CMMC Third-Party Assessor Organization accredited by the Cyber AB home to Certified CMMC Professionals & Assessors regarded as experts in their field. With a deep knowledge of CMMC/DFARS and other relevant security frameworks, our team offers personalized consulting that meets your organization wherever it is in maturity. ASCERA by SP6 is next-generation compliance software focused on leveraging automation to minimize the pain of manual, administrative, and time-consuming tasks associated with security compliance. Our solution isn’t a GRC, it’s superpowers for your GRC. With ASCERA you can: ✅ Save hundreds of hours collecting evidence with automated, nearly real-time collection of evidence for 59% of controls. ✅ Significantly increase the likelihood of passing your CMMC C3PAO assessment with ASCERA’s built-in guidance features. ✅ Automatically pull critical security-related information from your SIEM to assess and continuously monitor your compliance status.

Similar Companies