--- title: 'Chief Information Officer (CIO) – CMMC Compliance (Part-Time) at Horizon Industries' canonical: 'https://feeny.ai/job/chief-information-officer-cio-cmmc-compliance-part-time-horizon-industries-8p6hmzw8zzs5' type: 'job' last_seen: '2026-09-14' --- # Chief Information Officer (CIO) – CMMC Compliance (Part-Time) at Horizon Industries - **Company:** Horizon Industries - **Location:** Remote - **Work type:** remote - **Posted:** 2026-09-09 - **Last confirmed live:** 2026-09-14 - **Apply:** https://job-boards.greenhouse.io/horizonindustrieslimited/jobs/5419749008 ## Job description Chief Information Officer (CIO) – CMMC Compliance (Part-Time) Location: Remote with periodic onsite support as required Employment Type: Part-Time Consulting / Fractional Executive Reports To: President and Executive Leadership Team Expected Time Commitment : Approximately 20–40 hours per month, depending on compliance activities and assessment schedule. Position Overview Horizon Industries is seeking an experienced Part-Time Chief Information Officer (CIO) to provide executive leadership and operational oversight for the company’s Cybersecurity Maturity Model Certification (CMMC) Level 2 program and Microsoft GCC High environment. The CIO will serve as the executive owner of the organization's CMMC compliance posture, ensuring that cybersecurity controls, governance processes, technical implementations, risk management activities, and assessment preparation efforts remain compliant, sustainable, and audit-ready. This position is ideal for a senior technology executive with deep experience in NIST SP 800-171, CMMC, Microsoft GCC High, federal government contracting, and cybersecurity governance. ## Key Responsibilities Executive Leadership & Governance - Serve as Horizon's designated CIO for all CMMC-related activities. - Act as executive owner of systems that process, store, or transmit Controlled Unclassified Information (CUI). - Ensure cybersecurity initiatives align with business objectives, contract requirements, and federal regulations. - Provide strategic technology guidance to executive leadership regarding compliance, security, and risk management. - Participate in executive compliance reviews and readiness briefings. - Support annual affirmations and executive attestations relating to CMMC certification readiness. CMMC Program Oversight - Provide executive oversight of Horizon's CMMC Level 2 program. - Review and approve CMMC policies, procedures, plans, and compliance artifacts. - Ensure alignment among the System Security Plan (SSP), CUI Management Plan, POA&M, Risk Register, and supporting evidence repositories. - Review compliance metrics, remediation activities, and audit findings. - Support preparation for self-assessments, mock assessments, and formal C3PAO assessments. - Participate in assessor interviews and executive-level discussions during audits. Technical & Security Oversight - Provide executive oversight of: - Microsoft GCC High environment - Entra ID / Identity & Access Management - Conditional Access and MFA - Endpoint security and device management - Security monitoring and incident response - Vulnerability management activities - Configuration and change management processes - Review security architecture and ensure alignment with CMMC control requirements. - Evaluate impacts of major technology changes on CMMC scope and security posture. Risk Management - Lead annual and periodic cybersecurity risk assessments. - Review risk treatment decisions and approve risk acceptance recommendations. - Ensure corrective actions and remediation plans are effectively managed. - Provide governance oversight for POA&M development and closure activities. - Monitor compliance risks affecting certification status and federal contract eligibility. Documentation & Audit Readiness - Review and approve: - System Security Plan (SSP) - Policies and Procedures - Continuous Monitoring Plan - Incident Response Documentation - Risk Assessment Reports - CUI Management Documentation - Evidence Management Processes - Ensure documentation accurately reflects implemented controls and operational practices. - Conduct periodic readiness reviews and executive quality checks on compliance artifacts. Vendor & External Stakeholder Engagement - Interface with: - C3PAOs - Compliance consultants - Managed Service Providers - Microsoft partners - Federal customer representatives as required - Review third-party service providers that affect CMMC compliance boundaries. - Support assessment planning and remediation activities with external partners. - Increased availability may be required during: - Mock assessments - Self-assessments - C3PAO certification assessments - Significant remediation initiatives Required Qualifications - Minimum 15 years of progressive IT leadership experience. - Previous experience serving as CIO, CISO, or equivalent executive role. - Demonstrated experience supporting CMMC Level 2 or NIST SP 800-171 compliance programs. - Experience operating within DoD, federal contractor, or defense-industrial-base environments. - Strong working knowledge of: - Microsoft 365 GCC High - Entra ID - Microsoft Defender - Microsoft Purview - Microsoft Sentinel - Intune - Identity and Access Management ## Preferred Qualifications - Successfully supported one or more organizations through CMMC certification. - Experience participating in DoD cybersecurity assessments. - Familiarity with DFARS 252.204-7012, 7019, 7020, and 7021. - Experience with SPRS submissions and executive affirmations. - Certifications such as: - CISSP - CISM - CGRC (formerly CAP) - CCSP - CMMC Certified Professional (CCP) - CMMC Certified Assessor (CCA) ## Key Deliverables The Part-Time CIO will be expected to: - Maintain executive oversight of Horizon's CMMC compliance program. - Conduct monthly compliance governance reviews. - Review and approve major compliance documentation. - Provide quarterly executive risk assessments. - Participate in internal audit and assessment preparations. - Support executive readiness for C3PAO assessments. - Validate SSP accuracy and compliance traceability. - Advise leadership on cybersecurity investments, risk acceptance, and CMMC sustainment strategies. This role is intended to provide Horizon with an experienced executive capable of serving as the accountable CIO for CMMC compliance while leveraging existing internal resources for day-to-day administration and technical operations. Horizon is an Equal Employment Opportunity employer, and it is our policy to consider all applicants for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin. EOE/Vet/Disabled ## About Horizon Industries ## Company Overview - **One-liner**: Horizon Industries delivers innovative IT and management consulting solutions, with a focus on low-code platforms, cyber security, and digital transformation for federal and enterprise clients. - **Entity Type**: Private (Privately Held) - **Headquarters**: Vienna, Virginia, United States (Tysons Corner area) - **Founded**: 1996 - **Founders**: Not publicly available ## Core Business - **Primary Industry**: IT Services and IT Consulting - **Target Customers**: U.S. Federal agencies (e.g., Department of State, Defense Threat Reduction Agency, Washington Headquarters Service), enterprise commercial clients, and global affiliates - **Mission**: “To help our clients achieve meaningful business outcomes by placing their goals at the center of everything we do. We deliver measurable results through innovative solutions, high-performing multidisciplinary teams, and the strategic use of cutting-edge technologies.” [hil.us](https://hil.us/about-us/) ## Products & Services - **Low-Code / Appian Development**: Full lifecycle support for Appian-based solutions including business strategy analysis, system development, deployment, and operations – heavily used for federal clients like DoS and DTRA. [hil.us/careers](https://hil.us/careers/) - **Cyber Security**: Lifecycle engineering support for cyber security technologies – evaluation, deployment, and operation of selected toolsets. [hil.us](https://hil.us/) - **Digital Transformation & IT Consulting**: End-to-end capabilities including data, automation, digital platforms, and strategic consulting to drive measurable outcomes. [hil.us/about-us](https://hil.us/about-us/) - **Management Consulting**: Business strategy analysis, business system development, and operations support. [hil.us](https://hil.us/) ## Market Standing - **Valuation**: Not disclosed - **Key Metrics**: Annual revenue of $7.7M (estimated from LinkedIn data) | Headcount: ~120 employees (+11.6% YoY growth) [linkedin.com](https://www.linkedin.com/company/horizon-industries-limited) - **Notable Investors/Partners**: Not publicly disclosed (privately held without reported funding rounds) - **Growth Signals**: 30+ years serving federal agencies with the same first client; 98% client satisfaction score; 6+ offices/affiliates globally (U.S., Romania, India, England); active hiring across multiple federal contracts ## Competitive Advantages - **Deep Federal Experience**: Three decades of trusted partnerships with U.S. government agencies, including long-term contracts. - **Appian Expertise**: Strong specialization in low-code Appian development for mission-critical government programs. - **Certifications & Awards**: Holds internationally recognized certifications (specifics not listed but emphasized) and a track record of quality and performance. - **Flexible Delivery Models**: Tailored solutions for each client’s unique environment, with remote and on-site support. ## Strategic Focus - **Digital Transformation for Government**: Expanding capabilities in low-code, RPA, AI, and network technologies to empower federal clients. - **Talent Investment**: Continuous learning and development programs to keep employees ahead of the curve and exceed client expectations. - **Global Reach**: Leveraging international affiliates (Romania, India, England) to deliver end-to-end services. ## Why Work Here - **Remote-First Culture**: Most roles are remote (e.g., Appian Associates supporting federal clients from anywhere in the U.S.) with flexible work schedules. [hil.us/careers](https://hil.us/careers/) - **Veteran-Friendly**: Actively seeks to hire veterans, transitioning service members, and military spouses. - **Benefits**: Comprehensive medical/dental/vision, HSA with company contributions, generous PTO and paid holidays, wellness reimbursement, 401(k) match, student loan assistance, paid parental leave, professional development allowance. [hil.us/careers](https://hil.us/careers/) - **Hiring Process**: Clear and streamlined – application, recruiter screen, 1–2 rounds of interviews (behavioral/technical/case-based), then offer and onboarding. - **Culture**: Values include selflessness, accountability, innovation, curiosity, teamwork, honesty, and passion – with a focus on continuous learning and client impact. ## Sources 1. [hil.us](https://hil.us/) 2. [hil.us/about-us](https://hil.us/about-us/) 3. [hil.us/careers](https://hil.us/careers/) 4. [linkedin.com/company/horizon-industries-limited](https://www.linkedin.com/company/horizon-industries-limited) 5. [job-boards.greenhouse.io/horizonindustrieslimited](https://job-boards.greenhouse.io/horizonindustrieslimited) ## Other roles at Horizon Industries - [Trainer/SME(DISA)](https://feeny.ai/job/trainer-sme-disa-horizon-industries-remote-r86maxctcbrj) - [TOPM (DISA)](https://feeny.ai/job/topm-disa-horizon-industries-remote-z1e188fepjh2) - [Senior System Administrator (DISA)](https://feeny.ai/job/senior-system-administrator-disa-horizon-industries-remote-3ymqddm51jnq) - [Senior Appian Associate (DISA)](https://feeny.ai/job/senior-appian-associate-disa-horizon-industries-remote-9ykhpkpkd9g0) - [Quality Analyst/ Tester (DISA)](https://feeny.ai/job/quality-analyst-tester-disa-horizon-industries-remote-vc1r2t8ghqjk) - [Lead Appian Associate (DISA)](https://feeny.ai/job/lead-appian-associate-disa-horizon-industries-remote-q0gcd72dd1md) - [Documentation Specialist(DISA)](https://feeny.ai/job/documentation-specialist-disa-horizon-industries-remote-xz19xe3jp379) - [Cybersecurity Specialist (DISA)](https://feeny.ai/job/cybersecurity-specialist-disa-horizon-industries-remote-jeytwaj4pxg2) - [Business Analyst (DISA)](https://feeny.ai/job/business-analyst-disa-horizon-industries-remote-0grdhjyx9nj4) - [Appian Consultant (DISA)](https://feeny.ai/job/appian-consultant-disa-horizon-industries-remote-t9yp46ybk1mx)