
Cybersecurity Supply Chain Risk Analyst
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in United States.
• Evaluate cybersecurity supply-chain risks linked to vendors, products, services, software, and third-party dependencies.
• Document security requirements for the supply chain, risk assessments, mitigations, and acceptance decisions.
• Analyze supplier security evidence, software and hardware provenance data, vulnerability alerts, and remediation strategies.
• Collaborate with acquisition, engineering, security, legal, and program stakeholders on decisions related to third-party risks.
• Assist in the ongoing monitoring of supplier risks, emerging threats, and the status of corrective actions.
• A bachelor's degree in cybersecurity, information systems, supply-chain management, business, engineering, or a related discipline, or equivalent relevant experience.
• A minimum of five years of experience in cybersecurity, third-party risk management, supply-chain risk, GRC, security assessments, or a related field.
• Proven experience in conducting security assessments of vendors or products and documenting associated risks, controls, and remediation efforts.
• Familiarity with cybersecurity supply-chain risk management practices, NIST guidelines, software supply-chain risks, and third-party security controls.
• Excellent skills in risk analysis, documentation, stakeholder engagement, and decision-making.
• Candidates who are selected will undergo a security investigation and may need to fulfill eligibility criteria for access to classified information.
• Medical insurance
• Dental insurance
• Vision insurance
• Voluntary Life Insurance
• 401(k)
• Basic Life A&D
• STD
• LTD
• PTO
• Telehealth
• Paid holidays
• FSA
• HSA
• Employee Assistance Program (EAP)
• Traveling Assistance
Redwood Logistics
Grüns
SmithRx
HireHawk
Get handpicked remote jobs straight to your inbox weekly.